Orivesen Account and Real Estate Service LKV
This is the Registry and Privacy Statement of the Company under the EU General Data Protection Regulation (GDPR). Prepared dd.mm.yyyy. Last change dd.mm.yyyy.
Company, Address, 01234 Post office
Other contact information
First name Last name, e-mail, phone number
If your organization has a data protection officer, enter at least his or her contact information here. Otherwise any contact.
The company's customer register, marketing register, stakeholder register, online service user register, member register, employee register, etc.
The legal basis for the processing of personal data under the EU General Data Protection Regulation is
- consent of the person (documented, voluntary, individualized, informed and unambiguous)
- a contract to which the data subject is a party
- law (what)
– The performance of a public task (on which it is based), or
- the legitimate interest of the controller (eg pre-contractual customer relationship, employment relationship, membership).
The purpose of processing personal data is to communicate with customers, maintain a customer relationship, marketing, etc.
The data is not used for automated decision making or profiling.
The information stored in the register is: person's name, position, company / organization, contact information (phone number, e-mail address, address), website addresses, IP address of the network connection, IDs / profiles in social media services, information about subscribed services and their changes, billing information, other information related to the customer relationship and the services ordered.
If there are several groups of registrants (eg customer register and marketing register), list them and their main content.
If possible, also indicate the data retention period here. Also tell if, for example, the data will be anonymized after a certain period of time.
The IP addresses of the visitors of the website and the cookies necessary for the functions of the service are processed on the basis of a legitimate interest, e.g. to ensure data security and to collect statistics about visitors to the Site in cases where they may be considered personal data. If necessary, the consent of third-party cookies will be requested separately.
The information stored in the register is obtained from the customer e.g. Messages sent via web forms, e-mail, telephone, via social media services, contracts, customer meetings and other situations in which the customer discloses their information.
Contact information for companies and other organizations can also be collected from public sources such as websites, directory services, and other companies.
The information is not regularly disclosed to other parties. The information may be published to the extent agreed with the customer.
The data may also be transferred by the controller outside the EU or the EEA. Data will not be transferred to the United States without the express consent of the data subjects.
If you transfer personal data to different parties, please indicate here the potential recipients or groups of recipients (including processors / subcontractors), the purposes for which the personal data will be processed and the reasons for the transfer if the data is transferred outside the EU.
The register shall be handled with due care and the data processed by the information systems shall be adequately protected. When registry data is stored on Internet servers, the physical and digital security of their hardware is adequately addressed. The controller shall ensure that the data stored, as well as the access rights to the servers and other information critical to the security of personal data, are treated confidentially and only by the employees whose job description it belongs to.
Every person in the register has the right to check the information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check or request the rectification of data stored about him or her, the request must be sent in writing to the data controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the time limit set by the EU Data Protection Regulation (generally within one month).
A person in the register has the right to request the removal of his or her personal data from the register (“right to be forgotten”). Likewise, registrants have others Rights under the EU General Data Protection Regulation such as restricting the processing of personal data in certain situations. Requests must be sent in writing to the controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the time limit set by the EU Data Protection Regulation (generally within one month).