Processing of Personal Data of Dynamix Digital Limited T/A Bionic’s
Customers and Website Users
Updated: 03 May 2018
We at Dynamix Digital Limited T/A Bionic (“we” or “us”) believe that protecting our customers’ and business partners’ privacy is crucial to our business and values. In the course of our business operations, we receive, collect, maintain, use and share personal data on customers and business partners. We are committed to protecting the privacy of individuals who visit our website (visitors), individuals who register to use our services (customers), and individuals who register to attend our corporate events (attendees) (collectively hereinafter “Data Subject(s)” or “User(s)”).
We act as a controller with respect to the information we process in connection with our business relationships. For example, we are the controller in relation to Data Subjects’ contact details and other commercial Personal Data. On the other hand, we may also act as a processor of Data Subjects’ Personal Data when our customer and business partners engage us to process Personal Data on their behalf, for example in connection with the provision of the Services. We may also act as a processor in certain circumstances when our customers use third party service providers in connection with our Services (e.g. Facebook). When we act as the processor, we process the data in accordance with applicable privacy laws and the data processing agreement entered into with the controller, where applicable. In such a case, please refer to the Privacy Policies of controllers for further information on the processing of Personal Data.
1. Processing of Personal Data
We process Personal Data of Data Subjects to offer the Services, including the processing and execution of demo requests relating to the Services, and to contact and market our
Services to the participants of our business events and to contact and send marketing material to the visitors of our websites who submit us their information in a form or otherwise with the intent to receive marketing or other information from www.wearebionic.com. In this context, Personal Data may be processed for market and customer analysis, reporting and statistical purposes, marketing purposes such as customised marketing, administration notices, database management and maintenance, product suggestions and offers, interaction with external social networks, access to third-party services' accounts and platforms, heat mapping and newsletters. Personal Data may be used for direct marketing, including, where applicable, by electronic means unless
objected by the Data Subject.
Further, Personal Data may be used for invoicing and to send important information to the Data Subject e.g. regarding changes of applicable fees, price list and conditions, or to contact the Data Subject and provide information customised Services according to the interests of the Data Subject.
Data Subject and provide information customised Services according to the interests of the Data Subject.
We process Personal Data on the following basis:
- for the performance of the contract between us and the Data Subject (Article 6.1(b) of the GDPR);
- for the purposes of our legitimate interests related to the customer and business relationships between us and the Data Subjects (Article 6(f) of the GDPR);
- to comply with legal obligations applicable to us (Article 6(c) of the GDPR, such as corporate and accounting).
We may ask for Data Subject’s consent for the processing of certain type of Personal Data (for example for a campaign). When collecting such consents, we inform the Data Subject of the respective purposes of processing and such processing is conducted only when appropriate consent is received.
We may ask for certain Facebook, or other Social Network Service’s (SNS), permissions allowing us to perform actions with the Data Subject’s Facebook or SNS’s account and to retrieve information, including Personal Data, from it. This allows our Services to connect with the User’s account on the Facebook social network, provided by Facebook Inc. In this context, the following permissions may be asked: About Me, Access Rights (including but not limited to Ad Account Access, Business Manager Access), App Notifications, Contact Email, Manage Advertisements, and Manage Pages. For more information about the Facebook permissions, refer to the Facebook permissions documentation and to the Facebook Data Policy. The equivalent information and permissions would be required for any other service being provided on any other SNS platform.
2. Personal Data we collect and use
We do not collect sensitive information (Personal Data of special categories).
3. Disclosure of Personal Data
Personal Data may be transferred outside the European Union and the European Economic Area (“EU/EEA”), including but not limited to, the United States of America, China, Australia, Singapore and Argentina as well as other locations and jurisdictions in which we conduct our business. Such transfers outside the EU/EEA are performed subject to appropriate safeguards such as standard data protection clauses adopted or otherwise approved by the EU Commission in accordance with the GDPR (“Standard Data Protection Clauses”).
The applicable Standard Data Protection Clauses are made available for review to the Data Subject upon request.
4. Retention Period
We retain Data Subject’s Personal Data for 3 years from Data Subject’s latest purchase or contact with us. Personal Data may be, wholly or in part, retained for longer or shorter term if required by applicable law or if there is other justified reason to retain or delete them. In such a case, Data Subject’s Personal Data shall be erased with no further delay after there is no longer any need for such a retention.
We evaluate the necessity and accuracy of the Personal Data on a regular basis.
5. Data Subjects’ Rights
Data Subject has a right to request from us:
- access to and rectification or erasure of Data Subject’s Personal Data;
- for restriction of processing concerning the Data Subject or to object to processing; and
- to receive, under certain preconditions, Data Subject’s Personal Data in a structured, commonly used and machine-readable format and to transmit those data to another controller.
Data Subject may exercise the aforementioned rights by sending a written request to us. Where the processing is based on consent, Data Subject has a right to withdraw such consent at any time. Please note that this will not affect the lawfulness of processing based on consent before its withdrawal.
In case the Data Subject considers that its rights under the data protection laws are infringed, the Data Subject may lodge a complaint with the supervisory authority of the Data Subject’s residence in the EU (e.g. in Finland the Finnish Data Protection Ombudsman).
6. Security Safeguards
Securing the integrity and confidentiality of Personal Data. We have taken adequate technical and organisational measures in order to keep Personal Data safe and to secure it against unauthorized access, loss, misuse or alteration by third parties, such as encryption, access controls and firewalls. Nevertheless, considering the cyber threats in modern day online environment, we cannot 100% guarantee that our security measures will prevent illegally and maliciously operating third parties from obtaining access to Personal Data and the absolute security of that information during its transmission or its storage on our systems.
8. Contact information of data controller