The General Data Protection Regulation (GDPR) came into effect across all EU member states on 25 May 2018. The GDPR provides one framework data protection law for Europe, representing a significant harmonisation of data protection requirements and standards across the EU. Further information.
It's intention is to enforce the principle of "Privacy by Design" by minimising data collection and retention and ensuring data is obtained only by consent and is available on a strict "need to know" basis. Data Collectors (companies like us) must analyse the risks to the data subjects (our customers and personnel) posed by processing the data (storing it, sharing it). Data Collectors must also provide data subjects with a "right to be forgotten".
Your privacy is of paramount importance to us.
Payment DataMost payments go via a third-party service e.g. Paypal or Stripe. In this case, we have NO access to the credit card data.
Risk: In the event of our webserver being hacked, no payment information would be available to the hacker.
CorrespondenceWe have copies of all email correspondence with our customers. Our email service is hosted by
hostingireland.ie.Risk: In the event of our webserver being hacked, no email correspondence would be available to the hacker.