GDPR Policy

Introduction:

Welcome to DesireFX! This page outlines our commitment to ensuring the privacy and protection of your personal data in accordance with the General Data Protection Regulation (GDPR).

Data Controller:

Principles of Data Processing:

1. Lawfulness, Fairness, and Transparency:

We are committed to processing your personal data lawfully, ensuring fairness, and maintaining transparency in all our data processing activities.

2. Purpose Limitation:

Your data will only be collected for specified, explicit, and legitimate purposes and will not be further processed in a manner incompatible with those purposes.

3. Data Minimization:

We will only collect the data necessary for the intended purpose and nothing more.

4. Accuracy:

We strive to ensure that the personal data we hold is accurate and up-to-date. You have the right to request correction if any inaccuracies are identified.

5. Storage Limitation:

Your personal data will not be retained for longer than necessary for the purposes for which it was collected.

6. Integrity and Confidentiality:

We implement robust security measures to protect your personal data from unauthorized access or disclosure.

7. Accountability:

We demonstrate our commitment to GDPR principles and accountability by regularly reviewing and updating our privacy policies.

Rights of Data Subjects:

As a user of our website, you have the following rights:
    1. Right to Access:
      • You can request access to your personal data and information about how it is processed.
    2. Right to Rectification:
      • You can request the correction of inaccurate or incomplete data.
    3. Right to Erasure (Right to be Forgotten):
      • You can request the deletion of your personal data under certain circumstances.
    4. Right to Restriction of Processing:
      • You can limit how your data is processed in certain situations.
    5. Right to Data Portability:
      • You can request your personal data in a machine-readable format for transfer to another data controller.
    6. Right to Object:
      • You can object to the processing of your data for certain purposes.

Data Protection Officer (DPO):

For any inquiries or concerns related to data protection, you can contact our Data Protection Officer at [email protected].

Data Breach Notification:

In the event of a data breach, we will notify the relevant supervisory authority within 72 hours, unless the breach is unlikely to result in a risk to individuals.

Compliance Checklist:

To ensure GDPR compliance, we:
    • Regularly review and update our privacy policies.
    • Conduct Data Protection Impact Assessments (DPIAs) for high-risk processing activities.
    • Keep records of processing activities.
    • Provide ongoing training to our staff on GDPR compliance.

Changes to this Policy:

This GDPR Site Policy may be updated from time to time. Any changes will be communicated to you through our website or other appropriate means.

Effective Date:

This policy is effective as of 14.12.2023.