Last updated: 25.05.2018
Pepzen GDPR Compliance
Our data usage policy explains how personal information is collected, used and disclosed by Pepzen Ltd. with respect to your access and use of the Pepzen’s website at www.pepzen.com
or any other Pepzen tool or service, including those accessible through websites maintained, in whole or in part, by Pepzen, or through mobile devices, applications or software (collectively, the “Applications“) so you can make an informed decision about using Applications.
1. Applications of Pepzen Ltd.
User Provided Information
Applications obtain the information you provide when you download and register Applications. Registration with us is optional. However, please keep in mind that you may not be able to use some of the features offered by Applications unless you register with us.
When you register with us and use Applications, you generally provide (a) your name, email address, password and other registration information; (b) transaction-related information, such as when you make purchases, respond to any offers, or download or use applications from us; (c) information you provide us when you contact us for help; (d) information you enter into our system when using Applications, such as contact information and project management information.
We may also use the information you provided us to contact your from time to time to provide you with important information, required notices and marketing promotions.
Automatically Collected Information
In addition, Applications may collect certain information automatically, including, but not limited to, the type of mobile device you use, your mobile devices unique device ID, the IP address of your mobile device, your mobile operating system, the type of mobile Internet browsers you use, and information about the way you use Applications.
Applications do not collect precise information about the location of your mobile device.
Only aggregated, anonymized data is periodically transmitted to external services to help us improve Applications and our service. We will share your information with third parties only in the ways that are described in this privacy statement.
We may disclose User Provided and Automatically Collected Information:
• as required by law, such as to comply with a subpoena, or similar legal process;
• when we believe in good faith that disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or respond to a government request;
• with our trusted services providers who work on our behalf, do not have an independent use of the information we disclose to them, and have agreed to adhere to the rules set forth in this privacy statement.
You can stop all collection of information by Applications easily by uninstalling Applications. You may use the standard uninstall processes as may be available as part of your mobile device or via the mobile application marketplace or network.
Data Retention Policy, Managing Your Information
We will retain User Provided data for as long as you use Applications and for a reasonable time thereafter. We will retain Automatically Collected information for up to 36 months and thereafter may store it in aggregate. If you’d like us to delete User Provided Data that you have provided via Applications, please contact us at firstname.lastname@example.org
and we will respond in a reasonable time. Please note that some or all of the User Provided Data may be required in order for Applications to function properly.
We do not use Applications to knowingly solicit data from or market to children under the age of 13. If a parent or guardian becomes aware that his or her child has provided us with information without their consent, he or she should contact us at email@example.com
. We will delete such information from our files within a reasonable time.
We are concerned about safeguarding the confidentiality of your information. We provide physical, electronic, and procedural safeguards to protect information we process and maintain. For example, we limit access to this information to authorized employees and contractors who need to know that information in order to operate, develop or improve our Applications. Please be aware that, although we endeavor provide reasonable security for information we process and maintain, no security system can prevent all potential security breaches.
2. Pepzen website
Our Company Pepzen Ltd. operates www.pepzen.com
(the "Site"). This page informs you of our policies regarding the collection, use and disclosure of Personal Information we receive from users of the Site. We use your Personal Information only for providing and improving the Site. By using the Site, you agree to the collection and use of information in accordance with this policy.
Information Collection And Use
While using our Service, we may ask you to provide us with certain personally identifiable information that can be used to contact or identify you. Personally identifiable information may include, but is not limited to, your email address, name, phone number, postal address, other information ("Personal Information"). We collect this information for the purpose of providing the Service, identifying and communicating with you, responding to your requests/inquiries, servicing your purchase orders, and improving our services.
We may also collect information that your browser sends whenever you visit our Service or when you access the Service by or through a mobile device ("Log Data").
This Log Data may include information such as your computer's Internet Protocol ("IP") address, browser type, browser version, the pages of our Service that you visit, the time and date of your visit, the time spent on those pages and other statistics.
When you access the Service by or through a mobile device, this Log Data may include information such as the type of mobile device you use, your mobile device unique ID, the IP address of your mobile device, your mobile operating system, the type of mobile Internet browser you use and other statistics.
In addition, we may use third party services such as Google Analytics that collect, monitor and analyze this type of information in order to increase our Service's functionality. These third party service providers have their own privacy policies addressing how they use such information.
Please see the section regarding Location Information below regarding the use of your location information and your options.
We may use and store information about your location depending on the permissions you have set on your device. We use this information to provide features of our Service, to improve and customize our Service. You can enable or disable location services when you use our Service at anytime, through your mobile device settings.
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. The Help feature on most browsers provide information on how to accept cookies, disable cookies or to notify you when receiving a new cookie.
If you do not accept cookies, you may not be able to use some features of our Service and we recommend that you leave them turned on.
Google also recommends installing theGoogle Analytics Opt-out Browser Add-on
- for your web browser. Google Analytics Opt-out Browser Add-on provides visitors with the ability to prevent their data from being collected and used by Google Analytics.
For more information on the privacy practices of Google, please visit the Google Privacy & Terms web page
We may employ third party companies and individuals to facilitate our Service, to provide the Service on our behalf, to perform Service-related services or to assist us in analyzing how our Service is used.
These third parties have access to your Personal Information only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.
We may use your Personal Information to contact you with newsletters, marketing or promotional materials and other information that may be of interest to you. You may opt out of receiving any, or all, of these communications from us by following the unsubscribe link or instructions provided in any email we send.
Compliance With Laws
We will disclose your Personal Information where required to do so by law or subpoena or if we believe that such action is necessary to comply with the law and the reasonable requests of law enforcement or to protect the security or integrity of our Service.
The security of your Personal Information is important to us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Information, we cannot guarantee its absolute security.
Your information, including Personal Information, may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from your jurisdiction.
If you are located outside United Kingdom and choose to provide information to us, please note that we transfer the information, including Personal Information, to the United Kingdom and process it there.
Links To Other Sites
We have no control over, and assume no responsibility for the content, privacy policies or practices of any third party sites or services.
Our Service does not address anyone under the age of 13 ("Children").
We do not knowingly collect personally identifiable information from children under 13. If you are a parent or guardian and you are aware that your Children has provided us with Personal Information, please contact us. If we become aware that we have collected Personal Information from a children under age 13 without verification of parental consent, we take steps to remove that information from our servers.
3. Rights under GDPR
Under GDPR (General Data Protection regulation) you have a number of rights relating to your personal data, these will come into force on the 25th May 2018, for further information please see https://ec.europa.eu/info/law/law-topic/data-protection_en
Right to Restrict Processing
You have the right to request we restrict processing of your personal data where there is no legitimate interest for us to do so:
Where the accuracy of the personal data is contested, to restrict the processing until such time as the accuracy has been sufficiently verified.
Where you object to the processing (See Right to Object), and where we are considering whether there are legitimate grounds to override the request.
When processing is unlawful and you oppose erasure and request restriction instead.
If we no longer need the personal data but you require the data to establish, exercise or defend a legal claim.
You can exercise the right at any time by contacting our team (see Contacting Us).
Right of Access (Access to Information)
The GDPR Act gives you the right to access information held about you.
You can exercise this right by contacting us (see Contact Us).
We are required to verify your identify before processing any right to access request, once verified the data shall be provided within 28 days.
The data shall be provided free of charge however an admin fee may be applied where a request is manifestly unfounded or excessive, particularly if it is repetitive.
Right to Erasure (Also known as the right to be forgotten)
As an individual you have the right to request the erasure of any data we hold on you, this is not an absolute right, for example it does not override our requirement under UK law to keep financial data such as invoice information.
You can make a request where your personal data is no longer necessary in relation to the purpose for which it was originally collected/processed, for example if you cancel all services you have with us.
To make a right to erasure request please contact our customer services team (see Contacting Us).
Right to Rectification
The GDPR provides the right to have any personal data rectified that may be incorrect or incomplete.
Customers can update their own personal details via the client area however if this is not sufficient please contact our customer services team (See contact Us).
Right to Object
You have the right to object to the processing of your personal data where there is no legitimate or lawful reason to do so.
To make a right to object request please contact our customer services team (see Contacting Us).
A Data Controller is the entity that determines the purposes, conditions and means of the processing of personal data. The data processor processes personal data only on behalf of the controller.
Owner of this website, Data Processor and Data Controller:
Pepzen Ltd. - Marshall House, Ring Way, Preston Lancashire PR1 2QD UK
If you are using our Applications, Pepzen is considered a Data Controller and a Data Processor too.
If you as a Customer have an agreement with Pepzen to host your website or application, or support them, Pepzen is considered a Data Processor
are Data Controllers
. Pepzen has a Data Processing Agreement ("DPA")
in place with their Customers subject to web hosting services.
Pepzen, just like any other business, currently uses third-party Sub Processors to provide various business functions like web hosting, web or application analytics, cloud infrastructure, email notifications, and customer support. The list of our Sub Processors: Heroku Services
, Amazon Web Services
, SendGrid Email delivery Service, CloudKit. Pepzen stores data in cloud by these Sub Processor in EU Region, mostly in Ireland.
Processor and each Processor Affiliate may continue to use those Sub Processors already engaged by Processor or any Processor Affiliate as of the date of the Pepzen's DPA. It is acknowledged and agreed that as of the date of the Pepzen's DPA Processor uses Heroku Services, Amazon Web Services, SendGrid Email delivery Service and CloudKit services as Sub Processors for the purpose of cloud hosting services, which use is subject to the respective their applicable guidelines.
5. Contact us
If you have any questions regarding privacy while using Applications, or have questions about our practices, please contact us via email at firstname.lastname@example.org