Déclaration de confidentialité
Privacy Statement
Last updated: September 11, 2026
MultiMedia Publishing Academic Journals (MPAJ) is the scholarly publishing platform operated by MultiMedia SRL, Romania, for the academic journals hosted within this Open Journal Systems (OJS) installation.
MultiMedia SRL processes personal data in accordance with Regulation (EU) 2016/679 – the General Data Protection Regulation (GDPR), applicable Romanian data-protection legislation, and other relevant legal requirements.
This Privacy Statement applies to the MPAJ platform as a whole. Individual journals hosted on the platform may also publish their own privacy policies containing additional information specific to their editorial activities, individual websites, and related services.
1. Data Controller
The controller of personal data processed through the MPAJ platform is:
MultiMedia SRL
Tax Identification Number: RO 14965117
Trade Register No.: J2021004636402
European Unique Identifier: ROONRC.J2021004636402
Lt. Radu Beller 3-5
011701 Bucharest, Sector 1, Romania
Email: office@multimedia.com.ro
For matters concerning a specific journal, users may also use the contact details published by that journal.
2. Scope
This statement applies to personal data processed through use of the MPAJ platform, including in connection with:
-
creation and management of user accounts;
-
manuscript submission;
-
editorial processes;
-
peer review;
-
activities of authors, editors, and reviewers;
-
editorial communications;
-
publication of articles and metadata;
-
technical administration and platform security;
-
scholarly services associated with publication.
3. Categories of Data Processed
Depending on the user’s role and activity, the platform may collect and process:
Identification and Contact Data
-
first and last name;
-
professional name;
-
email address;
-
telephone number, if provided;
-
username.
Academic and Professional Data
-
institutional affiliation;
-
academic title or position;
-
country;
-
fields of expertise;
-
professional biography;
-
ORCID iD;
-
other academic identifiers or profiles.
Editorial Data
-
manuscripts;
-
revised versions;
-
supplementary files;
-
submission metadata;
-
review reports;
-
editorial comments;
-
editorial decisions;
-
declarations of competing interests;
-
funding information;
-
data availability statements;
-
correspondence related to the editorial process.
Technical Data
The platform may process limited technical information necessary for operation and security, such as:
-
IP address;
-
browser information;
-
session data;
-
access logs;
-
error and security information.
4. Purposes of Processing
Personal data are processed only to the extent necessary for the operation of the academic journals hosted on MPAJ and related activities, including:
-
management of user accounts;
-
receipt and management of submissions;
-
screening and processing of manuscripts;
-
administration of peer review;
-
communication with authors, editors, reviewers, and other contributors;
-
management of editorial decisions;
-
preparation and publication of accepted works;
-
assignment and administration of DOIs;
-
generation and transmission of scholarly metadata;
-
indexing and discovery of publications;
-
preservation and archiving of scholarly content;
-
maintenance of the integrity and continuity of the scholarly record;
-
technical operation and security of the platform;
-
compliance with legal and administrative obligations.
5. Legal Bases for Processing
Depending on the specific activity, personal data may be processed on the basis of:
Performance of a Requested Service or Contractual Relationship
For example:
-
creation and use of an account;
-
submission of a manuscript;
-
management of the editorial process;
-
publication of an accepted work.
Legal Obligations
For example:
-
compliance with statutory requirements;
-
handling requests from competent authorities;
-
documentation of activities where required by law.
Legitimate Interests
For example:
-
administration of editorial processes;
-
preservation of the integrity of the scholarly record;
-
prevention of abuse;
-
security of information systems;
-
documentation of editorial decisions;
-
protection of the legitimate interests of the journals and publisher.
Consent
Where required by law, processing may take place on the basis of the user’s consent.
Consent may be withdrawn at any time without affecting the lawfulness of processing carried out before withdrawal.
6. Authors’ and Co-authors’ Data
Authors and co-authors provide data necessary for:
-
identification;
-
communication;
-
manuscript administration;
-
editorial processing;
-
publication;
-
creation and distribution of scholarly metadata.
For published works, certain professional information becomes part of the public scholarly record, including, where applicable:
-
author name;
-
affiliation;
-
country;
-
ORCID;
-
contribution;
-
bibliographic data relating to the article.
Such information may be retained and distributed long term as part of the scholarly record.
7. Reviewer Data
Reviewer data are used for:
-
selection and invitation of reviewers;
-
verification of expertise;
-
administration of peer review;
-
identification and management of competing interests;
-
preservation of editorial history.
Where a journal’s policy provides for anonymous review, reviewer identities are handled in accordance with that policy.
Under double-anonymous peer review, reviewer identities are not disclosed to authors.
8. Editors and Members of Journal Structures
Professional data relating to editors and members of journal academic structures may be used for:
-
administration of roles;
-
editorial communication;
-
transparency of journal structures;
-
publication of name, affiliation, country, and academic profile;
-
documentation of editorial activity.
Persons accepting a public role in a journal also accept publication of professional information relevant to their academic identification.
9. Publication and Sharing of Data
Data associated with unpublished submissions and peer-review activities are accessible only to persons who have a legitimate need for access for:
-
editorial;
-
technical;
-
administrative;
-
ethical;
-
legal purposes.
For accepted and published articles, certain information becomes public and may be transmitted to scholarly infrastructures.
This information may include:
-
authors’ names;
-
affiliations;
-
ORCID;
-
article metadata;
-
bibliographic information;
-
DOI;
-
other elements necessary for identification and citation of the work.
10. Scholarly Services and Metadata Recipients
Publication metadata may be transmitted, exposed, or harvested by services such as:
-
Crossref;
-
ORCID;
-
OpenAlex;
-
academic search engines;
-
databases and indexing services;
-
library catalogues;
-
repositories;
-
preservation services;
-
metadata aggregators;
-
OAI-PMH-compatible services;
-
other legitimate scholarly infrastructures.
The purpose of these transfers is identification, citation, indexing, preservation, and discovery of publications.
11. Sharing with Service Providers
Personal data may be accessed or processed by external providers only to the extent necessary for services such as:
-
hosting;
-
email;
-
security;
-
IT infrastructure;
-
maintenance;
-
DOI services;
-
scholarly services;
-
archiving.
Depending on the circumstances, providers may act as processors or independent controllers in accordance with applicable law.
12. International Transfers
Some scholarly or technical services may have infrastructure or recipients outside the European Economic Area.
Where the GDPR applies, international transfers are carried out using an appropriate legal mechanism, such as:
-
an adequacy decision;
-
Standard Contractual Clauses;
-
other legally recognized safeguards.
Scholarly metadata intended for publication are, by their nature, intended for international circulation.
13. Data Retention
Personal data are retained only for as long as necessary for the purposes for which they were collected and to comply with legal and scholarly obligations.
Retention periods may vary according to the type of data.
Editorial Process Data
These may be retained long term for:
-
documentation of decisions;
-
handling appeals;
-
investigation of integrity concerns;
-
corrections;
-
retractions;
-
preservation of scholarly history.
Publication Data
Authors’ names, affiliations, and publication metadata may be retained permanently, as they form part of the scholarly and bibliographic record of the work.
Technical Data
Technical and security logs are retained for reasonable periods appropriate to security, diagnostic, and abuse-prevention purposes.
14. Integrity of the Scholarly Record
Data-protection rights must be interpreted in the context of the journals’ obligation to maintain a stable and verifiable scholarly record.
For a published work, deletion of personal data does not automatically require removal of:
-
the author’s name;
-
bibliographic metadata;
-
DOI;
-
the article record;
-
necessary editorial history.
Corrections, retractions, or other changes to a publication are handled through applicable editorial procedures.
15. Cookies and Technical Data
MPAJ may use cookies and similar technologies necessary for:
-
authentication;
-
session management;
-
security;
-
platform operation;
-
storage of certain preferences.
Any optional analytics or other non-essential technologies, if implemented, will be used in accordance with applicable information and consent requirements.
16. Data Security
MultiMedia SRL uses reasonable technical and organizational measures to protect personal data against:
-
unauthorized access;
-
loss;
-
destruction;
-
alteration;
-
unauthorized disclosure;
-
misuse.
Measures may include:
-
secure connections;
-
access controls;
-
role management;
-
software updates;
-
security monitoring;
-
backups;
-
server-level protections;
-
limitation of user privileges.
Access to editorial information is restricted according to users’ roles and responsibilities.
17. Data Subject Rights
Subject to the conditions provided by the GDPR, individuals may have:
-
the right to information;
-
the right of access;
-
the right to rectification;
-
the right to erasure;
-
the right to restriction of processing;
-
the right to data portability;
-
the right to object;
-
the right to withdraw consent;
-
rights concerning automated decision-making, where applicable;
-
the right to lodge a complaint with a supervisory authority.
These rights are not absolute and may be limited in circumstances provided by law, including where continued retention is necessary for:
-
integrity of the scholarly record;
-
compliance with legal obligations;
-
exercise of freedom of expression and information;
-
establishment, exercise, or defence of legal claims.
18. Exercising Your Rights
Requests concerning personal data may be submitted to:
To protect personal data, verification of the identity of the person making the request may be necessary.
Requests will be handled within the time limits established by the GDPR.
Exercising data-protection rights is, in principle, free of charge, subject to exceptions provided by applicable law.
19. Automated Decision-Making
MPAJ does not normally use exclusively automated decision-making processes that produce significant legal effects for authors, reviewers, or other users.
In particular, acceptance or rejection of a manuscript is not decided exclusively by an automated system or artificial intelligence.
Automated tools may be used for technical support without replacing human editorial responsibility.
20. Personal Data Breaches
In the event of a security incident involving personal data, MultiMedia SRL will assess the risk and take the measures required under applicable law.
Where necessary, the incident will be notified to the supervisory authority and/or affected individuals.
21. Journal-Specific Privacy Policies
Each journal hosted on MPAJ may publish a more detailed privacy policy applicable to:
-
its own website;
-
specific editorial activities;
-
communications;
-
commercial services;
-
newsletters;
-
other journal-specific operations.
Where relevant, users should consult both this platform-level Privacy Statement and the privacy policy of the journal with which they interact.
22. Supervisory Authority
Individuals who believe that their personal data have been processed in breach of applicable law may lodge a complaint with:
National Supervisory Authority for Personal Data Processing – ANSPDCP
Bucharest, Romania
Website: www.dataprotection.ro
23. Contact
For questions or requests concerning personal data processed through MPAJ:
MultiMedia SRL
Lt. Radu Beller 3-5
011701 Bucharest, Sector 1, Romania
Email: office@multimedia.com.ro
For matters concerning a specific journal, the contact details published by that journal may also be used.
24. Changes to This Statement
This Privacy Statement may be updated to reflect:
-
legislative changes;
-
changes to the platform;
-
changes to services;
-
changes to service providers;
-
development of editorial practices;
-
changes to security measures.
The date of the latest update is displayed at the beginning of this document.