Privacy and Data Protection
1. Data Controller and Data Processor:
Logiks Solutions ("Provider") acts as both a data controller and data processor under the General Data Protection Regulation (GDPR). As a data controller, Provider determines the purposes and means of processing personal data collected through the Service. As a data processor, Provider processes personal data on behalf of its users ("Data Subjects").
2. Lawful Basis for Processing:
Provider processes personal data for the following lawful purposes:
To perform the services and fulfill contractual obligations with Data Subjects.
To comply with legal obligations and regulatory requirements.
To pursue legitimate interests, provided such interests are not overridden by the rights and freedoms of Data Subjects.
3. Types of Personal Data Collected:
Provider may collect and process the following types of personal data:
Identification information (e.g., name, email address, contact details).
Account credentials and authentication data.
Usage data and analytics information.
Payment and billing information (if applicable).
Any other information voluntarily provided by Data Subjects.
4. Purpose of Processing:
Provider processes personal data for the following purposes:
To provide, maintain, and improve the Service.
To communicate with Data Subjects and respond to inquiries and requests.
To personalize and customize the user experience.
To analyze usage patterns and trends to enhance the functionality and performance of the Service.
To detect, prevent, and address technical issues, security vulnerabilities, and fraudulent activities.
5. Data Subject Rights:
Data Subjects have the following rights with respect to their personal data:
Right to access: Data Subjects have the right to request access to their personal data processed by Provider.
Right to rectification: Data Subjects may request the correction or update of inaccurate or incomplete personal data.
Right to erasure: Data Subjects have the right to request the deletion of their personal data under certain circumstances.
Right to restrict processing: Data Subjects may request the restriction of processing of their personal data under certain conditions.
Right to data portability: Data Subjects have the right to receive their personal data in a structured, commonly used, and machine-readable format and to transmit such data to another controller.
Right to object: Data Subjects may object to the processing of their personal data for direct marketing purposes or based on legitimate interests pursued by Provider.
Right to withdraw consent: Where processing is based on consent, Data Subjects have the right to withdraw their consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
6. Data Security and Confidentiality:
Provider implements appropriate technical and organizational measures to ensure the security, confidentiality, integrity, and availability of personal data processed through the Service. These measures include:
Encryption of personal data during transmission and storage.
Access controls and authentication mechanisms to prevent unauthorized access.
Regular monitoring, testing, and evaluation of security measures.
Employee training and awareness programs on data protection and security best practices.
7. Data Transfers:
Provider may transfer personal data to third parties, including affiliates, service providers, and subprocessors, located outside the European Economic Area (EEA) or to countries not recognized by the European Commission as providing an adequate level of data protection. In such cases, Provider shall ensure that appropriate safeguards are in place to protect the privacy and security of personal data, including the use of standard contractual clauses, binding corporate rules, or other approved transfer mechanisms.
8. Data Retention:
Provider retains personal data only for as long as necessary to fulfill the purposes for which it was collected, to comply with legal obligations, or to resolve disputes and enforce agreements. Data Subjects may contact Provider to request information about the specific retention periods applicable to their personal data.
9. Data Breach Notification:
In the event of a personal data breach that is likely to result in a risk to the rights and freedoms of Data Subjects, Provider shall notify the relevant supervisory authority and affected Data Subjects without undue delay, in accordance with the GDPR.
10. Contact Information:
If you have any questions or concerns about the privacy and data protection practices outlined in this section, or if you wish to exercise your rights as a Data Subject, please contact us at How to Contact Logiks Solutions.