GDPR Compliance
1. Introduction
If you are located in the European Economic Area (EEA), the General Data Protection Regulation (GDPR) provides you with additional rights regarding your personal data. This page explains how Kuizzo complies with GDPR and how you can exercise your rights.
For our complete privacy practices, please review our Privacy Policy.
2. Your GDPR Rights
Under GDPR, you have the following rights regarding your personal data:
- Right to Access: You have the right to request copies of your personal data that we hold. This includes information about what data we have, why we have it, and who we share it with.
- Right to Rectification: You have the right to request that we correct any inaccurate or incomplete personal data. If you notice any errors in your information, please contact us to have it corrected.
- Right to Erasure ("Right to be Forgotten"): You have the right to request that we delete your personal data under certain circumstances, such as when the data is no longer necessary for the purpose it was collected, or when you withdraw your consent.
- Right to Restrict Processing: You have the right to request that we restrict the processing of your personal data under certain circumstances. This means we can store your data but not use it.
- Right to Data Portability: You have the right to request that we transfer your personal data to another service provider in a structured, commonly used, and machine-readable format. This applies when processing is based on consent or a contract.
- Right to Object: You have the right to object to our processing of your personal data for certain purposes, including direct marketing and personalized advertising. You can also object to processing based on legitimate interests.
- Right to Withdraw Consent: If we process your personal data based on your consent, you have the right to withdraw that consent at any time. Withdrawing consent does not affect the lawfulness of processing that occurred before the withdrawal.
3. Exercising Your GDPR Rights
To exercise any of your GDPR rights, please contact our Data Protection Officer:
Email: privacy@kuizzo.com
Subject Line: GDPR Rights Request
When making a request, please include:
- Your full name and email address associated with your account
- A clear description of the right you wish to exercise
- Any additional information that may help us process your request
Response Time: We will respond to your request within one month of receipt. In complex cases, we may extend this period by up to two additional months, and we will inform you of any such extension.
Verification: For security purposes, we may need to verify your identity before processing your request. This helps ensure that personal data is not disclosed to unauthorized parties.
4. Legal Basis for Processing
We process your personal data based on the following legal bases under GDPR:
- Consent: We process your data when you have given clear consent for specific purposes, such as cookies and personalized advertising. You can withdraw your consent at any time.
- Performance of a Contract: We process your data to provide our services and fulfill our contractual obligations to you.
- Legitimate Interests: We process your data for our legitimate business interests, such as improving our services, preventing fraud, and ensuring security. We always balance these interests against your rights and freedoms.
- Legal Obligations: We process your data to comply with applicable laws and regulations.
5. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in our Privacy Policy, unless a longer retention period is required or permitted by law.
Retention Periods:
- Account data: Retained while your account is active and for a reasonable period after account closure
- Usage data: Retained for analytics purposes, typically for up to 26 months
- Marketing data: Retained until you opt out or withdraw consent
- Legal obligations: Retained as required by applicable laws
When we no longer need your personal data, we will securely delete or anonymize it in accordance with our data retention policies.
6. International Data Transfers
Your information may be transferred to and processed in countries outside the EEA. When we transfer your data internationally, we ensure that appropriate safeguards are in place to protect your data in accordance with GDPR requirements.
Safeguards We Use:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by the European Commission
- Other appropriate safeguards as recognized by GDPR
We work with service providers, including Google (for Analytics and Ads), who may process your data outside the EEA. These providers are required to maintain appropriate safeguards for your data.
7. Children's Privacy (GDPR)
In the European Economic Area, children under the age of 16 require parental consent for data processing. Kuizzo is committed to protecting the privacy of children and complies with GDPR requirements for children's data.
For more information about how we protect children's privacy, please see our COPPA Compliance page.
8. Complaints
If you believe that we have not adequately addressed your concerns or that we have violated your GDPR rights, you have the right to lodge a complaint with your local data protection authority.
How to File a Complaint:
- Contact your local data protection authority (DPA) in your EEA member state
- Provide details about the nature of your complaint and any correspondence with us
- The DPA will investigate your complaint and may take appropriate action
You can find a list of data protection authorities in the EEA at European Data Protection Board.
We encourage you to contact us first at privacy@kuizzo.com so we can address your concerns directly.
9. Contact Information
For any GDPR-related inquiries or to exercise your rights, please contact our Data Protection Officer:
Email: privacy@kuizzo.com
Subject Line: GDPR Inquiry
For general privacy questions, please review our Privacy Policy.