GDPR Policy
Introduction:
Welcome to DesireFX! This page outlines our commitment to ensuring the privacy and protection of your personal data in accordance with the General Data Protection Regulation (GDPR).
Data Controller:
Principles of Data Processing:
1. Lawfulness, Fairness, and Transparency:
We are committed to processing your personal data lawfully, ensuring fairness, and maintaining transparency in all our data processing activities.
2. Purpose Limitation:
Your data will only be collected for specified, explicit, and legitimate purposes and will not be further processed in a manner incompatible with those purposes.
3. Data Minimization:
We will only collect the data necessary for the intended purpose and nothing more.
4. Accuracy:
We strive to ensure that the personal data we hold is accurate and up-to-date. You have the right to request correction if any inaccuracies are identified.
5. Storage Limitation:
Your personal data will not be retained for longer than necessary for the purposes for which it was collected.
6. Integrity and Confidentiality:
We implement robust security measures to protect your personal data from unauthorized access or disclosure.
7. Accountability:
We demonstrate our commitment to GDPR principles and accountability by regularly reviewing and updating our privacy policies.
Rights of Data Subjects:
As a user of our website, you have the following rights:
-
- Right to Access:
- Right to Rectification:
- Right to Erasure (Right to be Forgotten):
- Right to Restriction of Processing:
- Right to Data Portability:
- Right to Object:
Data Protection Officer (DPO):
For any inquiries or concerns related to data protection, you can contact our Data Protection Officer at [email protected].
Data Breach Notification:
In the event of a data breach, we will notify the relevant supervisory authority within 72 hours, unless the breach is unlikely to result in a risk to individuals.
Compliance Checklist:
To ensure GDPR compliance, we:
-
-
Regularly review and update our privacy policies.
-
Conduct Data Protection Impact Assessments (DPIAs) for high-risk processing activities.
-
Keep records of processing activities.
-
Provide ongoing training to our staff on GDPR compliance.
Changes to this Policy:
This GDPR Site Policy may be updated from time to time. Any changes will be communicated to you through our website or other appropriate means.
Effective Date:
This policy is effective as of 14.12.2023.