GDPR Compliance
Your data protection rights under EU regulation
Our Commitment to GDPR
Riuscpront is fully committed to complying with the General Data Protection Regulation (GDPR) (EU) 2016/679. As a business operating within Ireland and the European Union, we take our obligations under data protection law seriously and have implemented measures to ensure compliance.
Data Controller
For the purposes of GDPR, Riuscpront acts as the data controller for personal data collected through this website and in the course of providing our services.
Contact details:
Email: [email protected]
Address: 14 Fitzwilliam Square South, Dublin 2, D02 YV88, Ireland
Lawful Basis for Processing
We process personal data only where we have a lawful basis to do so. The lawful bases we rely upon include:
Consent
Where you have given clear, affirmative consent to the processing of your personal data for one or more specific purposes. You have the right to withdraw consent at any time.
Contractual Necessity
Where processing is necessary for the performance of a contract to which you are party, or to take steps at your request prior to entering into a contract.
Legitimate Interests
Where processing is necessary for the purposes of our legitimate interests, except where such interests are overridden by your fundamental rights and freedoms. Our legitimate interests include operating and improving our services, marketing our services to existing and potential clients, and protecting our business.
Your Rights Under GDPR
The GDPR provides the following rights for individuals:
Right to Be Informed
You have the right to be informed about the collection and use of your personal data. This notice and our Privacy Policy fulfil this obligation.
Right of Access
You have the right to request a copy of the personal data we hold about you. We will provide this information free of charge within one month of your request.
Right to Rectification
You have the right to request that we correct any personal data that is inaccurate or incomplete.
Right to Erasure
You have the right to request the deletion of your personal data where:
- The data is no longer necessary for the purpose it was collected
- You withdraw consent and there is no other legal basis for processing
- You object to processing and there are no overriding legitimate grounds
- The data has been unlawfully processed
- The data must be erased to comply with a legal obligation
Right to Restrict Processing
You have the right to request that we limit the processing of your personal data in certain circumstances.
Right to Data Portability
You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit it to another controller.
Right to Object
You have the right to object to processing based on legitimate interests or for direct marketing purposes.
Rights Related to Automated Decision Making
You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal or similarly significant effects. We do not currently engage in such automated decision-making.
Exercising Your Rights
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month. This period may be extended by two further months where necessary, taking into account the complexity of the request.
Data Protection Authority
If you believe we have not complied with your data protection rights, you have the right to lodge a complaint with the Data Protection Commission (DPC), the supervisory authority in Ireland:
Data Protection Commission
21 Fitzwilliam Square South
Dublin 2, D02 RD28
Ireland
Data Security
We have implemented appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including:
- Encryption of personal data where appropriate
- Regular testing and evaluation of security measures
- Staff training on data protection
- Access controls and authentication measures
Data Breach Procedures
In the event of a personal data breach, we have procedures in place to:
- Investigate and contain the breach
- Assess the risk to individuals
- Notify the Data Protection Commission within 72 hours where required
- Communicate with affected individuals where there is a high risk to their rights and freedoms
Updates to This Information
We may update this GDPR information from time to time. Any changes will be posted on this page with an updated revision date.