GDPR Compliance Statement: TheEventeers.com ("we," "us," or "our") is committed to protecting the privacy and personal data of our users in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Lawful Basis for Data Processing: We ensure that all personal data processing activities carried out on TheEventeers.com are based on a lawful basis as defined under the GDPR. This includes obtaining user consent, fulfilling contractual obligations, complying with legal obligations, protecting vital interests, performing tasks in the public interest, and pursuing legitimate interests.
2. User Rights: We respect the rights of individuals regarding their personal data. Users have the right to access, rectify, erase, restrict processing, object to processing, data portability, and not be subject to automated decision-making. We provide mechanisms to exercise these rights and respond to user requests promptly.
3. Data Minimization and Purpose Limitation: We collect and process only the minimum necessary personal data required to fulfill specific purposes. We clearly specify the purposes for which data is collected and ensure that processing activities are limited to those purposes.
4. Data Security and Confidentiality: We implement appropriate technical and organizational measures to safeguard personal data against unauthorized access, accidental loss, or unlawful processing. We maintain confidentiality obligations with our employees and service providers who may have access to personal data.
5. Data Transfers: If personal data is transferred to third parties or outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as using standard contractual clauses, obtaining user consent, or relying on an adequacy decision.
6. Data Breach Notification: In the event of a personal data breach that poses a risk to individuals' rights and freedoms, we have procedures in place to detect, investigate, and report the breach to the relevant supervisory authority and affected individuals, as required by the GDPR.
7. Data Protection Officer: We have appointed a Data Protection Officer (DPO) responsible for overseeing our data protection practices and ensuring compliance with applicable laws and regulations. You can contact our DPO using the provided contact information on our website.
8. Third-Party Processors: When engaging third-party service providers or processors, we ensure they meet GDPR requirements and have appropriate data protection measures in place. We carefully select vendors who provide sufficient guarantees to implement appropriate technical and organizational measures.
9. Consent and Marketing Communications: We obtain explicit consent from users before processing their personal data for marketing purposes. Users have the option to opt-in or opt-out of receiving marketing communications, and we respect their choices.
10. Data Retention: We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, unless a longer retention period is required by law. We have data retention policies in place to ensure compliance with GDPR principles.
11. Complaints and Supervisory Authority: If you believe that we have violated your rights or failed to comply with GDPR requirements, you have the right to lodge a complaint with a supervisory authority. We encourage individuals to contact us first, and we will address any concerns promptly.
For more detailed information on our data protection practices and your rights, please refer to our Privacy Policy and related documents.
This GDPR Compliance Statement is part of our commitment to transparency and responsible data handling. We continuously review and update our practices to ensure ongoing compliance with applicable data protection laws and regulations.