Privacy Policy
SEEONDATA OÜ ("Datassier", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share your personal information when you use the Datassier platform ("Service") and visit our website at datassier.com.
1. Data Controller
The data controller for information collected through the Service and our website is:
SEEONDATA OÜ Registry Code: 14593989 VAT Number: EE102261129 Registered Address: Pikksilma tn 2/2-66, 10159 Tallinn, Harju maakond, Estonia Email: privacy@datassier.com
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, company name, job title, phone number, and billing address when you register for an account.
- Payment Information: Payment card details, billing address, and transaction history. Payment processing is handled by our third-party payment processor; we do not store full payment card numbers on our systems.
- Communications: Information you provide when you contact our support team, submit feedback, or participate in surveys.
- Profile Information: Preferences, settings, and configurations you create within the Service.
2.2 Information Collected Automatically
- Usage Data: Features used, pages visited, actions taken within the Service, timestamps, frequency of use, and error logs.
- Device and Browser Information: IP address, browser type and version, operating system, device type, screen resolution, and language preferences.
- Log Data: Server logs including access times, referring URLs, and system activity.
- Cookies and Similar Technologies: We use cookies, local storage, and similar technologies as described in Section 8.
2.3 Information from Third-Party Integrations
When you connect third-party services to Datassier, we receive data from those services as authorized by you. The types and scope of data depend on the specific integration and the permissions you grant. You can review and revoke these permissions at any time in your account settings.
2.4 Information from Third Parties
We may receive information about you from third parties, such as referral partners, resellers, or publicly available sources, for the purposes of marketing or improving our Service.
3. How We Use Your Information
We use your information for the following purposes and legal bases:
| Purpose | Legal Basis (GDPR Art. 6) |
|---|---|
| Providing and operating the Service | Performance of contract (Art. 6(1)(b)) |
| Processing payments and billing | Performance of contract (Art. 6(1)(b)) |
| Sending transactional communications (e.g., account confirmations, security alerts, service updates) | Performance of contract (Art. 6(1)(b)) |
| Providing customer support | Performance of contract (Art. 6(1)(b)) |
| Improving and developing the Service | Legitimate interest (Art. 6(1)(f)) |
| Analyzing usage trends and performance | Legitimate interest (Art. 6(1)(f)) |
| Ensuring security and preventing fraud | Legitimate interest (Art. 6(1)(f)) |
| Sending marketing communications | Consent (Art. 6(1)(a)) |
| Complying with legal obligations | Legal obligation (Art. 6(1)(c)) |
| Creating anonymized and aggregated analytics | Legitimate interest (Art. 6(1)(f)) |
Where we rely on legitimate interest as a legal basis, we have conducted a balancing test to ensure that our interests do not override your fundamental rights and freedoms. You may request details of these assessments by contacting us.
4. How We Share Your Information
We do not sell your personal information. We share your information only in the following circumstances:
4.1 Sub-processors and Service Providers. We share information with trusted third-party providers who assist us in operating the Service, including hosting, payment processing, analytics, customer support, and email delivery. These providers are bound by contractual obligations to protect your data and may only process it for the purposes we specify. A list of our sub-processors is available at datassier.com/sub-processors.
4.2 Third-Party Integrations. When you connect third-party services, data flows between Datassier and those services as you configure. We only transmit data that is necessary for the integration to function as you have set it up.
4.3 Legal Requirements. We may disclose your information if required to do so by law, regulation, legal process, or government request, or if we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.
4.4 Business Transfers. In the event of a merger, acquisition, reorganization, or sale of assets, your information may be transferred to the successor entity. We will notify you before your information becomes subject to a different privacy policy.
4.5 With Your Consent. We may share your information for any other purpose with your explicit consent.
5. International Data Transfers
Your information may be transferred to and processed in countries outside the European Economic Area ("EEA"). When we transfer personal data outside the EEA, we ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses approved by the European Commission;
- Adequacy decisions by the European Commission;
- Other legally recognized transfer mechanisms.
You may request a copy of the applicable safeguards by contacting us at privacy@datassier.com.
6. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law. Specifically:
- Account Information: Retained for the duration of your account and for 30 days after termination (to allow data export), then deleted within 30 additional days from active systems. Backup copies are purged within 90 days.
- Payment Records: Retained for 7 years to comply with tax and accounting obligations under Estonian and EU law.
- Usage Data: Retained for up to 24 months in identifiable form; thereafter anonymized and aggregated.
- Log Data: Retained for up to 12 months for security and debugging purposes.
- Marketing Consent Records: Retained for as long as you remain subscribed to marketing communications and for 3 years thereafter as evidence of consent.
- Support Communications: Retained for up to 3 years after your last interaction.
7. Your Rights
Under the GDPR and other Applicable Data Protection Law, you have the following rights regarding your personal data:
7.1 Right of Access. You have the right to request a copy of the personal data we hold about you.
7.2 Right to Rectification. You have the right to request correction of inaccurate or incomplete personal data.
7.3 Right to Erasure. You have the right to request deletion of your personal data, subject to certain exceptions (e.g., legal retention obligations).
7.4 Right to Restriction. You have the right to request that we restrict the processing of your personal data in certain circumstances.
7.5 Right to Data Portability. You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit it to another controller.
7.6 Right to Object. You have the right to object to processing based on legitimate interest. You also have the right to object to processing for direct marketing purposes at any time.
7.7 Right to Withdraw Consent. Where processing is based on consent, you may withdraw your consent at any time without affecting the lawfulness of processing carried out before withdrawal.
7.8 Right Not to Be Subject to Automated Decision-Making. You have the right not to be subject to decisions based solely on automated processing, including profiling, that produce legal effects or similarly significantly affect you.
How to Exercise Your Rights: Contact us at privacy@datassier.com. We will respond to your request within 30 days, as required by the GDPR. We may ask you to verify your identity before processing your request.
Supervisory Authority: If you believe we have not adequately addressed your concerns, you have the right to lodge a complaint with a supervisory authority. In Estonia, this is the Andmekaitse Inspektsioon (Data Protection Inspectorate) at aki.ee. You may also contact the supervisory authority in your country of residence.
8. Cookies and Tracking Technologies
8.1 What We Use
- Strictly Necessary Cookies: Required for the Service to function (e.g., session management, authentication, security). These cannot be disabled.
- Analytics Cookies: Help us understand how the Service is used and identify areas for improvement. These are only set with your consent.
- Functional Cookies: Remember your preferences and settings (e.g., language, timezone). Set with your consent.
8.2 We Do Not Use
- Advertising or targeting cookies;
- Cross-site tracking technologies;
- Third-party advertising pixels.
8.3 Managing Cookies
You can manage your cookie preferences through the cookie banner displayed on first visit, or at any time through your browser settings. Disabling non-essential cookies does not affect the core functionality of the Service.
9. Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures are described in our Security Policy at datassier.com/security.
While we take reasonable precautions, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security.
10. Children's Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal information, please contact us at privacy@datassier.com and we will take steps to delete such information.
11. Marketing Communications
We may send you marketing communications about our products and services with your consent. You can opt out of marketing communications at any time by:
- Clicking the "unsubscribe" link in any marketing email;
- Updating your communication preferences in your account settings;
- Contacting us at privacy@datassier.com.
Opting out of marketing communications does not affect transactional or service-related communications.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email and/or by posting a notice on our website at least 30 days before the changes take effect. We encourage you to review this Privacy Policy periodically.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us at:
SEEONDATA OÜ Email: privacy@datassier.com Website: https://datassier.com