Data Protection & Privacy Compliance
Our Commitment to Protecting Your Personal Data
1. Our Commitment to Data Protection
At Lua CRM, we dey committed to maintain di highest standards of data protection and privacy. Dis policy outline our comprehensive approach to dey safe your personal data in line with di General Data Protection Regulation (GDPR) and oda applicable data protection laws. We implement strong technical and organizational measures to ensure di security and confidentiality of your information.
2. Data Protection Principles
We stick to the following basic principles for our data processing activities:
- Lawfulness, fairness, and transparency in all data processing operations
- Purpose limitation and data minimization to collect only necessary information
- Accuracy and data quality maintenance through regular updates and verification
- Data storage limitation with defined retention periods and secure deletion procedures
- Integrity and confidentiality through advanced security measures
- Accountability and compliance through regular audits and assessments
- Technical and organisational security measures aligned with industry standards
3. Your Rights Under GDPR
Right to Access
You get the right to ask for access to your personal information and receive a full copy of the information we hold about you, including details about how we dey process and protect your data.
Right to Rectification
You fit request corrections to your personal data if e dey inaccurate or incomplete. We go promptly update your information and notify relevant third parties of any necessary changes.
Right to Erase
You get the right to request say make dem delete your personal information finish when e no dey necessary again for the reasons wey dem collect am, subject to legal requirements and our legitimate interests.
Right to Restriction
You fit request say dem no go process your personal data under some special circumstances, like when you say di data no be correct or when di processing be against di law.
4. Data Processing Information
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Your explicit consent for specific processing activities
- Contractual necessity for service provision and maintenance
- Legal obligations and regulatory compliance requirements
- Legitimate business interests, carefully balanced with your rights and freedoms
International Data Transfers
When we dey transfer your data internationally, we dey ensure say appropriate safeguards dey in place through:
- Standard contractual clauses approved by the European Commission
- Binding corporate rules for intra-group transfers
- Adequate data protection na di standard wey di European Union (EU) use to decide if one kontri fit receive personal data from di EU. Dis na based on di kontri's data protection laws and how dem dey implement am.
5. Security Measures
We implement comprehensive security measures to protect your personal data:
- Secure data encryption using standard industry protocols for data in motion and data at rest.
- Regular security assessments, penetration testing, and vulnerability management
- Multi-factor authentication and role-based access controls
- Secure data centers with physical security measures and environmental controls
- Comprehensive staff training on data protection and security best practices
6. Data Breach Notification
In the event of a personal data breach, we don don set up full procedures to:
- Carry out immediate risk assessment and impact analysis.
- Notify relevant supervisory authorities within 72 hours of discovery.
- Communicate with affected individuals without unnecessary delay when necessary.
7. Contact Information
For any questions regarding your personal data or to exercise your rights, please contact our dedicated privacy team at:
Email: [email protected]
Email: [email protected]
Fon: +374 95 505-300
Fon: +374 95 505-300
Address: 148, Pärnu Avenue, 2nd Floor Tallinn, Estonia
Fon: +372 4555-009
Data Retention
We keep your personal information only for as long as we need to achieve the reasons for which it was collected, including legal, accounting, or reporting requirements. We regularly review and update our retention periods to ensure we comply with applicable laws and industry standards.
Third-Party Processors
We carefully select and continuously monitor third-party processors wey dey handle your personal data. All processors dey bound by strict contractual obligations to maintain appropriate security measures and comply with data protection laws. We dey conduct regular audits to ensure compliance.
Updates to This Policy
We dey regularly review and update dis privacy policy to reflect changes for our practices, legal requirements, and technological developments. We go notify you of any material changes through appropriate channels and provide you with the opportunity to review the updated policy.