To safeguard the security and privacy of its client’s data, Adorack makes sure that it complies with national and international laws and standards. All of our solutions include GDPR-ready features to support our customers in adhering to compliance requirements. These features are made available by Adorack to all of our customers, not only those in the EU.
The General Data Protection Regulation, or GDPR, was created by the European Union to reinforce existing data protection rules and individual rights to privacy. Businesses processing the personal data of citizens of Europe must comply with the EU Regulation, which went into effect on May 25, 2018.
Our Promise: Assist You with Compliance and Data Protection
We Empower
Ensure the processing of customer data is fair and transparent, giving you visibility into how your data flows and how it is protected.
We Protect
Safeguard personal data through security by design, encryption at rest and in transit, and robust operational protocols across all products.
We Unite
Simplify compliance procedures to assist clients in fulfilling their regulatory requirements smoothly without friction.
The Seven Core Principles of GDPR
The GDPR urges companies to handle customer data responsibly. Businesses gain customers’ trust and improve their likelihood of improved consumer engagement by protecting the security and privacy of this data. A framework provided by GDPR enables organizations to define and regulate the security and privacy requirements that apply when using an individual’s data for business purposes.
1. Lawful, fair, and transparent processing
Emphasizes transparency for all people—corporations must be transparent about the purposes for which data will be used after it is obtained.
2. Purpose limitation
Collect data exclusively for the purposes for which it is required. Information gathered for a given purpose cannot be used in an incompatible way.
3. Data minimization
Ensure information collected is adequate, relevant, and limited to what is necessary in relation to the purposes for which they are processed.
4. Accurate and up-to-date processing
Maintain the accuracy and validity of data, taking every reasonable step to erase or rectify inaccurate data promptly.
5. Limitation of storage in a form that permits identification
Enforce strict data retention policies and isolate or delete data once the legitimate business purpose has concluded.
6. Confidential and secure
Implement technical and organizational security measures to protect personal data against accidental loss, destruction, damage, or unauthorized access.
7. Accountability and liability
Demonstrate compliance with these principles through clear records, Data Processing Agreements, audits, and documented processes.
Requesting a Data Processing Agreement (DPA)
If your organization processes personal data subject to European data protection regulations, Adorack offers an industry-standard Data Processing Agreement (DPA) containing the EU Standard Contractual Clauses (SCCs).
To execute a DPA or speak with our Data Protection Officer, please contact us at DPO@adorack.com or privacy@adorack.com.
