1. GDPR Framework
JP Technologies complies with the General Data Protection Regulation (GDPR) and treats the data of all European Union and European Economic Area residents in accordance with these regulations.
2. Legal Basis for Processing
We process personal data only when we have a valid legal basis:
- Consent: You have explicitly given consent
- Contract: Processing is necessary to fulfill a contract with you
- Legal obligation: We must comply with applicable laws
- Vital interests: Protection of your vital interests
- Legitimate interests: Our business needs (with safeguards)
- Public task: Necessary for public interest
3. Your GDPR Rights
You have the following rights under GDPR:
Right of Access
You have the right to obtain confirmation of whether we process your data and receive a copy of that data in a structured, commonly-used, machine-readable format.
Right to Rectification
You can request correction of inaccurate or incomplete personal data held about you.
Right to Erasure ("Right to be Forgotten")
You can request deletion of your personal data in certain circumstances, such as when:
- The data is no longer necessary for original purposes
- You withdraw consent
- You object to processing
Right to Restrict Processing
You can request limitation of processing in certain situations while we verify data or investigate disputes.
Right to Data Portability
You can request your data in a machine-readable format and transmit it to another service provider without hindrance.
Right to Object
You can object to processing for direct marketing or where processing is based on legitimate interests (except where overriding legitimate grounds apply).
Rights Related to Automated Decision-Making
You have the right not to be subject to automated decision-making that produces legal or similarly significant effects, except where necessary for contract performance or with your explicit consent.
4. Data Subject Rights Requests
To exercise any of these rights, submit a written request to:
- Email: j.peetz@outlook.ie
- Subject line: "GDPR Rights Request"
We will respond within 30 days. You may request an extension in certain cases.
5. Data Processing Agreements
Where required, we enter into Data Processing Agreements (DPA) with third parties who process your data on our behalf, ensuring GDPR compliance at all levels.
6. International Data Transfers
If we transfer your data outside the EEA, we ensure adequate safeguards through:
- Standard Contractual Clauses (SCCs)
- Adequacy decisions
- Explicit consent
7. Data Retention
We retain personal data only as long as necessary for the purposes stated in our Privacy Policy or as required by law. After that period, data is securely deleted or anonymized.
8. Data Breaches
In the event of a personal data breach, we will:
- Notify affected individuals without undue delay
- Notify the supervisory authority if required
- Document and investigate the breach
9. Supervisory Authority
You have the right to lodge a complaint with your local data protection authority if you believe we have violated your GDPR rights. The relevant authority for Ireland is:
- Data Protection Commission (DPC)
Phone: +353 (0)761 108 800
Email: info@dataprotection.ie
Website: www.dataprotection.ie
10. Contact Us
For GDPR-related questions or to exercise your rights:
- Email: j.peetz@outlook.ie
- Reference: GDPR Data Subject Request