Jurmunpyora.fi
Privacy Policy
Prepared: 29.6.2024
Last change: 22.7.2024
1. Data Controller
Eino Jurmu Ky
Heteperäntie 5
2. Contact person responsible for the register
Johan Jurmu
Phone number: +358442415355
Email address: info(at)jurmunpyora.fi
3. Register name
Eino Jurmu Ky / Jurmu bicycle service customer register
4. Legal basis and purpose of processing personal data
The legal basis for processing personal data is:
- Consent given by the data subject to the processing of personal data
- Contractual relationship between the data subject and the data controller
- Legitimate interest of the controller
The purpose of processing personal data is to communicate with customers, maintain customer relationships, invoicing information, marketing, etc.
5. Regular sources of information
The personal data processed is obtained from the registered person himself/herself in accordance with the regulations. The information stored in the register is obtained from the customer, for example, from messages sent via www forms, responses to customer satisfaction surveys, by email, by telephone, via social media services, from contracts, customer meetings and other situations in which the customer provides their information. Information about contact persons of companies and other organizations can also be collected from public sources such as websites, directory services and other companies.
6. Data content of the register
The controller only collects personal data from data subjects that is relevant and necessary for the purposes described in this privacy policy.
The following information is processed about the data subjects:
- Name
- Company/organization
- Contact information
- Billing information
- IP address of the network connection
- Information about ordered services and their changes, as well as other related information
7. Regular data transfers and data transfers outside the EU or EEA
Data is not routinely transferred outside the EU or EEA.
8. Principles of register protection
The controller processes personal data in a manner that aims to ensure appropriate security of personal data, including protection against unauthorized processing and accidental loss, destruction or damage. The controller uses appropriate technical safeguards to ensure this goal.
9. Rights of the data subject
Every person in the register has the right to check their data stored in the register and to demand correction of any incorrect data or completion of incomplete data. If a person wishes to check the data stored about them or to demand correction, the request must be sent in writing to the controller. The controller may, if necessary, ask the person making the request to prove their identity. The controller will respond to the customer within the time period stipulated in the EU Data Protection Regulation (generally within one month).
10. Changing the privacy policy
The controller is constantly developing its operations and may therefore need to change and update its data protection practices as necessary. Changes may also be based on changes in data protection legislation. If the changes include new purposes for the processing of personal data or otherwise change significantly, the controller will notify you in advance and, if necessary, request consent.
11. Data retention period
The controller will only retain data for as long as is necessary for the purpose of the register and for the purposes of the legislation binding the controller. The need to retain the data subject's data for sales and marketing purposes and the accuracy of this data will be reviewed annually. Unnecessary and outdated data will be deleted when the accuracy of the data is reviewed and at other times as necessary.