GDPR Policy
This GDPR Policy outlines how personal data is processed in accordance with the General Data Protection Regulation (GDPR). It complements our Privacy Policy and focuses specifically on data protection rights and lawful processing principles.
1. Purpose of This Policy
This policy explains how personal data is handled, protected, and managed under GDPR when you interact with our online store, including browsing, placing orders, or communicating with customer support.
2. Definition of Personal Data
Under GDPR, personal data refers to any information that can identify an individual, directly or indirectly. This may include names, contact details, order information, online identifiers, and communication records.
3. Lawful Bases for Data Processing
Personal data is processed only when a valid legal basis applies, including:
-
Contract performance
Processing necessary to complete orders, manage payments, and deliver purchased products. -
User consent
Data processed after clear permission is given, such as subscription to optional communications. -
Legal compliance
Processing required to meet accounting, taxation, and regulatory obligations. -
Legitimate interests
Activities aimed at improving services, ensuring system security, and preventing misuse or fraud, provided these interests do not override individual rights.
4. Data Minimisation and Purpose Limitation
Only data that is relevant and necessary is collected. Personal information is not used for purposes unrelated to its original collection without proper legal justification or consent.
5. Storage and Retention
-
Personal data is stored securely using appropriate technical safeguards.
-
Information is retained only for as long as required to fulfill its intended purpose or meet legal obligations.
-
Once no longer needed, data is securely deleted or anonymised.
6. Data Subject Rights
In accordance with GDPR, individuals have the right to:
-
Access personal data held about them
-
Request correction of inaccurate or incomplete information
-
Request deletion of personal data where legally permitted
-
Restrict or object to certain processing activities
-
Withdraw consent at any time, where processing is based on consent
Requests are handled within a reasonable timeframe and verified for security purposes.
7. Data Transfers
Personal data is processed in a manner that maintains confidentiality and integrity. Any transfer or handling of data follows GDPR safeguards and applies appropriate protection measures.
8. Security Measures
Reasonable administrative, technical, and organizational measures are implemented to protect personal data against unauthorized access, loss, alteration, or misuse.
9. Relationship With Other Policies
This GDPR Policy should be read together with our Privacy Policy and Cookies Policy, which provide further details on data collection methods, cookies usage, and user choices.
10. Policy Updates
This policy may be updated to reflect changes in legal requirements or data processing practices. Updates will be made available on the website.
11. Contact Details
For GDPR-related questions or to exercise your data protection rights, please contact us using the details below:
Contact Address: 88 DANNY E NEFF DR,MIDDLEBOURNE,WV,26149,US
Customer Service Phone: +1(351)388-8636
Customer Service Email: quotehelp@formfocal.com
Business Hours: Monday to Saturday, 9:00–12:00 and 14:00–17:30 (Australian Time)