Skip to content

Privacy Policy

Last updated: 2026-09-18

This Privacy Policy explains how Advokato M. Kiškio kontora INVENT ("we") processes personal data in connection with the kiskis.eu website and direct communication.

Digital products. Product submissions (including uploaded documents) are processed in the office's intake system at paslaugos.kiskis.eu. The following processors are engaged: payment processing (Stripe), infrastructure and data transmission (Cloudflare), email delivery (Mailjet), automated document analysis (Anthropic). Every assessment is reviewed and approved by the lawyer. Documents of unpaid or discontinued submissions are deleted within 30 days; engaged matters follow the office's document retention rules.

1. Data controller

Advokato M. Kiškio kontora INVENT, Dariaus ir Girėno g. 21, LT-02189 Vilnius, Lithuania. Contact: [email protected], +370 630 30 630.

We process personal data in accordance with Regulation (EU) 2016/679 (GDPR) and the laws of the Republic of Lithuania applicable to legal services and advocate activity.

2. What data we process

  • Direct contact data: name, email address, phone number, the contents of your message, and any documents you choose to share.
  • Website technical data: standard server logs (IP address, user agent, requested URL, timestamp) used to keep the site running and secure. The site does not use analytics or advertising cookies.

Our own system counts public page views and clicks to the request form. We record the page path, referring domain and a limited source and campaign label. Source labels may be linked to a submitted request to understand how clients find the service. These measurements use no cookies, browser storage or persistent visitor identifier; analytics events do not contain full referring URLs or request text.

3. Purposes and legal basis

  • Responding to your inquiry — basis: pre-contractual measures or legitimate interest (GDPR art. 6(1)(b) / 6(1)(f)). Retained for as long as needed to respond and, where the inquiry leads to engagement, in line with attorney record-keeping obligations.
  • Providing legal services when an engagement agreement is signed — basis: contract (GDPR art. 6(1)(b)) and legal obligation under the Law on the Bar of the Republic of Lithuania.
  • Site security and abuse prevention — basis: legitimate interest (GDPR art. 6(1)(f)). Standard server logs are typically retained up to 12 months.

4. Confidentiality and attorney-client privilege

Information you share in the context of legal advice is protected by attorney-client privilege under Lithuanian law and is not disclosed except as required by law or expressly authorised by you.

5. Recipients

We may share data with: hosting and IT infrastructure providers; professional advisers when needed; competent authorities and courts where required by law. We do not sell personal data and we do not use it for advertising.

6. International transfers

Where service providers process personal data outside the European Economic Area, we rely on safeguards required under the GDPR (e.g., the European Commission's Standard Contractual Clauses or adequacy decisions).

7. Your rights

You have the right to access, rectify, erase, restrict the processing of, object to processing of, and (where applicable) port your personal data, and to lodge a complaint with the supervisory authority.

Lithuanian supervisory authority: State Data Protection Inspectorate (VDAI), L. Sapiegos g. 17, 10312 Vilnius, [email protected].

8. Changes

We may update this Privacy Policy from time to time. The current version is published on this page.

9. Contact

For data-related requests, contact us at [email protected].