Guest
I would like to ask a question about how yo log the data when. customers accept the necessary legal documents regarding GDPR?
I am just looking further into our companies GDPR requirements and want to understand precisely what it is we need to be doing to ensure we are fully compliant throughout our business locations. Now that the UK are are no longer a member of the EU, I also need to know what impact that has on our compliance needs.
Can you provide any clarity?
Is the EU-US Privacy Shield GDPR compliant?
Let's say a contact registers for my event wherein, while they register i have clearly given them option to "opt out" of any communication that goes out through me. If they do not "opt out", then does that give me the consent to contact them? Is not opting out, considered as giving consent to contact or do we need to add in "opt in" options like how we have "opt out" options?
I am looking for clarification on the GDPR process for legal basis for collection of personal information.
I would like to know a how long I should hold on to personal details, for example. Financial and Health Declarations.
How does your documentation help with digital consent registration (for example, a user accepts the cookies on my website or subscribes to a newsletter)? Since the consent needs to be stored or registered somewhere, but I don’t see it anywhere in your documentation.
I would like to know more about what it looks like when a partner company obtains personal data for its own company.
I am initially assuming that the partner will then be responsible for data protection? And or how exactly does this have to be contractually clarified or formulated?
I would be very happy to receive a feedback.
I am selling tickets to my online event. Can I save my customers information in my CRM and email them about the event they purchased a ticket for?
I sent an email to my company's HR about some issues, who said they wish to know who I am (i.e., whether I am an employee, customer, relation to an employee etc.) in order to keep their response GDPR compliant. Is this in any way GDPR-relevant, and would it not risk being less compliant by asking for more personal detail where it is most likely irrelevant to do so?