SenseOne Update
on the Protection of Personal Data in accordance with Regulation (EU) 2016/679 and the relevant Greek Legislation

 

As of 25.5.2018, the General Data Protection Regulation (EU) 2016/679, also known as GDPR, applies, which strengthens the framework for the protection of data subjects with regard to the processing of personal data in the European Union. SenseOne, with respect to personal data, complies with the GDPR in the context of its activity and purpose and takes the necessary technical and organizational measures for the effective protection of personal data, as provided for in the GDPR and the Greek legislation by extension.

Data Controller – Contact Details

SenseOne is a data controller with the following contact details:

Registered Office Address: Kondilaki 3, 15341, Agia Paraskevi, Athens     

E-mail: privacy@senseone.io                       

What personal data is collected and how?

The personal data collected and processed by SenseOne are only those that are necessary for the specific and clearly defined purpose and legal basis.

In this context, the processing that takes place concerns the personal data you provide to SenseOne in real interactive time when you use our official websites, services or interact with us, for example by filling out an application or registering, such as:

  • Identity Data (Full Name, ID)
  • Contact data (postal address, fixed and mobile phones, email address).
  • Biographical data

In those cases where processing is based on obtaining consent, SenseOne follows the procedures provided by law for obtaining it.   

For what purposes is the processing carried out and what is its legal basis?

Personal data is collected in accordance with the GDPR and applicable law, either at the beginning of your relationship with the company or subsequently and is processed on a legal basis:

  • Your consent, when required
  • The contract between us
  • The fulfillment of our legal obligations
  • Safeguarding vital interests
  • The performance of a duty for public interest
  • Safeguarding our legitimate interest

 

SenseOne may process your personal data for the following purposes per legal basis:

1. With your consent

  • To identify and contact you

2. To fulfil the contractual obligation in case of the conclusion of a contract with SenseOne or during the pre-contractual procedure

  • For communication during the pre-contractual procedure or during the performance of the contract

3. To fulfill our legal obligations 

  • To fulfill our obligations, imposed by applicable law, for our customers and staff.
  • To fulfill our obligations under applicable law towards public authorities and bodies (Supervisory, Independent, Police, Judicial). 

4. To safeguard a vital interest

5. For the performance of a duty in the public interest 

6. For reasons of our legitimate interest, as:

  • To develop and improve our services through your activities and interests.
  • Complaints management
  • For the protection and security of our IT systems
  • To manage risks from breaching the obligations arising from sponsorship contracts. 

Who are the recipients of my personal data?

Access to your personal data is granted to the company's staff, in the context of performing the tasks assigned to them by SenseOne as controller.

SenseOne is obliged or entitled to share your personal data with various third party recipients such as:

  • Public bodies
  • Independent authorities

subject to the observance in all cases of secrecy and the duty of confidentiality and secrecy.

How long is my data kept?

SenseOne retains your personal data only for the time required for the purposes of processing.  However, it must retain personal data for a period determined by the applicable legal and regulatory framework.

What are cookies and why does SenseOne collect them?

To ensure that our website functions properly, a small piece of data known as a cookie may sometimes be stored on your computer or mobile device when you visit our website. A cookie is a text file stored by a web server on a computer or mobile device.  The content of a cookie can only be retrieved or read by the server that creates the cookie. The text in a cookie often consists of identifiers, site names, and some numbers and characters. Cookies are unique to the browsers or mobile applications you use and allow websites to store data such as your preferences.

How is my data protected?

At SenseOne we work daily to ensure that the personal data we receive:

  • Are processed lawfully, fairly and in a transparent manner in relation to the data subject.
  • Are collected exclusively for specific and legitimate purposes.
  • Are adequate, related to the purpose for which we collect them and limited to what is necessary.
  • Are accurate and up to date.
  • Are kept exclusively within the specified time frame and no longer.
  • Are processed in a way as to ensure the necessary security of personal data

What are my rights?

The data subject shall have the following rights:

The right of access

You can at any time be informed by us about your personal data we hold, and have access to.

The right to rectification of data

You have the opportunity to contact us to correct data that is inaccurate or incomplete.

The "right to be forgotten"

In case we are not required by law to retain the data we hold and relate to you, you can ask us to delete them.

The right to data portability

You can ask us to transfer your data to another entity.

The right to object and restrict processing

If you disagree with the way we process your personal data, you can request the interruption or restriction of processing.

The right to withdraw consent

You have the right to withdraw your consent to the processing of your data at any time.


SenseOne will make every effort to respond to your request without delay and in any event within one month of receipt. This deadline is extended for two (2) more months, if necessary taking into account the complexity of the request and the number of requests. The company will inform you of this extension within one month of receipt of the request, as well as of the reasons for the delay. If you have made the request by electronic means, the information shall be provided, if possible, by electronic means, unless you request otherwise.

If SenseOne satisfies your request a) to restrict the processing of your data or b) to refuse to process your data or c) to delete your data from the company's records and if these are necessary for the preparation or continuation and execution of a contract, then this automatically entails either the termination by you of the respective contract or the inability to process your request.

SenseOne has in any case the right to refuse to satisfy your request for restriction of processing or deletion of your personal data, if such processing is necessary for the establishment, exercise or support of its legal rights or the fulfillment of its obligations.

The above services are provided free of charge. However, if your requests are manifestly unfounded, excessive or repetitive, the company may either impose a reasonable end, inform you or refuse to respond to them. 

Εxercise your rights here  Data Subject Request Form

Withdrawal of consent

You have the right to withdraw your consent at any time. The withdrawal of your consent does not affect the lawfulness of the processing based on it and took place before its withdrawal.

 Data Protection Officer

In case you have questions about the protection of your data and your rights, you can email privacy@senseone.io or write to the postal address: Kondilaki 3, 15341, Agia Paraskevi, Athens and we will respond to them as soon as possible and no later than one month.

Personal Data Protection Authority

You have the right to lodge a complaint with the Personal Data Protection Authority (www.dpa.gr), which is the competent supervisory authority for the protection of the fundamental rights and freedoms of natural persons with regard to the processing of their personal data, if you consider that your rights are violated in any way.

We encourage you to read our Privacy and Data Protection Policy