Our Commitment to GDPR
fox-soar is committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR). This document outlines how we comply with GDPR requirements.
Lawful Basis for Processing
We process personal data under the following lawful bases:
- Consent: When you provide explicit consent for specific processing activities
- Contract: When processing is necessary to fulfill our contractual obligations
- Legal obligation: When we must process data to comply with legal requirements
- Legitimate interests: When processing serves our legitimate business interests without overriding your rights
Your GDPR Rights
Under GDPR, you have the following rights:
- Right of access: Request copies of your personal data
- Right to rectification: Request correction of inaccurate data
- Right to erasure: Request deletion of your personal data
- Right to restrict processing: Request limitation on how we use your data
- Right to data portability: Request transfer of your data to another service
- Right to object: Object to processing of your personal data
- Rights related to automated decision-making: Right not to be subject to automated decisions
Data Processing Activities
We process personal data for the following purposes:
- Responding to service inquiries and providing consultations
- Managing client relationships and service delivery
- Improving our website and services
- Complying with legal and regulatory requirements
Data Security Measures
We implement appropriate technical and organizational security measures including:
- Encryption of data in transit and at rest
- Access controls and authentication procedures
- Regular security assessments and updates
- Staff training on data protection
Data Retention
We retain personal data only as long as necessary for the purposes outlined or as required by law. When data is no longer needed, it is securely deleted or anonymized.
International Data Transfers
If we transfer your data outside the UK or EU, we ensure appropriate safeguards are in place to protect your information in accordance with GDPR requirements.
Data Breach Notification
In the event of a data breach that poses a risk to your rights and freedoms, we will notify you and relevant authorities within 72 hours as required by GDPR.
Exercising Your Rights
To exercise any of your GDPR rights or for questions about our data processing activities, please contact us at [email protected]. We will respond to your request within one month.
Complaints
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Information Commissioner's Office (ICO) or your local supervisory authority.