Data Protection Notice

This notice is prepared under Article 10 of Turkish Personal Data Protection Law No. 6698 (KVKK). diji.pet, operated by MNG Digital Ltd, processes and protects personal data lawfully, fairly and in accordance with data-minimisation principles.

Data Controller

Legal name: MNG Digital Ltd
Brand: diji.pet
Company number: 17330055
Registered in: England and Wales
Istanbul office: Maslak Mah. AOS 55. Sk. 42 Maslak AVM Residence B, Sarıyer/İstanbul
Registered office: Office 403 Screenworks 22 Highbury Grove, London, United Kingdom, N5 2ER
Telephone: +90 850 840 45 61
Email: [email protected]

1. Purpose and Legal Basis

This notice is prepared under Article 10 of Turkish Law No. 6698 on the Protection of Personal Data (“KVKK”). diji.pet processes and protects personal data lawfully, fairly and in accordance with data-minimisation principles, and shares it only where legally required or with explicit consent.

2. Scope

This notice covers the diji.pet website, mobile apps and modules; pet owners, trainers, walkers, groomers, suppliers, boarding operators and other professionals; visitors, job applicants and suppliers.

3. Categories of Personal Data

CategoryExamples
Identity dataName, surname, national identity number where required, date of birth
Contact dataEmail, telephone, address and location data
Financial dataInvoices, payments, IBAN, Wallet balance and movements, top-ups, refunds, chargebacks and payment-provider references
Professional dataDiplomas, licences, certificates and work history
Pet dataName, species, breed, age, health history and vaccination records
Transaction-security dataIP address, device information, sessions and transaction logs
Visual or audio dataProfile images, documents, audio or video where consent applies
Message dataPlatform messages, notifications and support records

4. Purposes of Processing

  • Managing membership, identity verification and secure sign-in.
  • Providing appointments, advice, payments, sales and transfer services.
  • Managing invoices, Wallet top-ups, transactions, refunds, chargebacks and financial reconciliation.
  • Preventing fraud, reviewing disputes and auditing authorised administrative actions.
  • Facilitating communications between pet owners and professionals, customer support and satisfaction processes.
  • Establishing, performing and auditing contracts; maintaining system security and meeting legal obligations.
  • Sending campaigns or promotional messages only where explicit consent is available.

5. Legal Grounds

We process data where expressly required by law (KVKK Art. 5/2(a)), directly necessary to establish or perform a contract (Art. 5/2(c)), necessary for our legitimate interests (Art. 5/2(f)), or with your explicit consent (Art. 5/1). Data is not processed without consent where no legal obligation or legitimate interest applies.

6. Collection Methods

Data is collected through registration forms, support and email channels, contracted payment providers, mobile applications, GPS where enabled, cookies and logs, application forms and job-listing modules.

7. Recipients and Transfers

RecipientPurpose
Contracted payment providerCard payment, Wallet top-up, refund, chargeback, fraud prevention and reconciliation
Professional / Service ProviderAppointment, advice or service delivery
Supplier, manufacturer or logistics companyProduct delivery, insurance, shipping or transfer operations
Authorised public bodiesLegal obligation or valid request
Cloud service providersBackups and system security, including providers meeting EU-standard safeguards

We do not sell or share personal data with third parties for their own marketing purposes.

8. Retention and Destruction

Data typeRetention period
Membership dataWhile the account remains active, plus 2 years
Financial and invoice data, Wallet movements, contract acceptances and admin audit logs10 years under applicable Turkish commercial and tax rules
Log records1 year under Law No. 5651
Job application / HR data2 years
Anonymised analytics data1 year

At the end of these periods, data is securely deleted, destroyed or anonymised.

9. Security Measures

  • AES-256 encryption, TLS/SSL, firewalls and intrusion-detection systems.
  • Role-based access control and two-factor authentication.
  • Access-log monitoring, periodic penetration testing and staff privacy training.
  • Notification to the relevant authority and affected persons within 72 hours where required after a data breach.

10. Your Rights

Under KVKK Article 11, you may learn whether data is processed, request information, correction, deletion or anonymisation, learn recipients, object to automated decisions and seek compensation for unlawful processing. Send requests to [email protected] or in writing to our address above. We respond within 30 days.

11. Cookies

We use essential and analytics cookies to improve the Platform and security. Advertising or tracking cookies are enabled only with explicit consent. See the Cookie Policy.

12. Updates

This notice was updated on 16 July 2026 and may be updated for legal or technological changes. The current version is published on this page.