Understanding your data protection rights under European law
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that governs how organizations handle personal information of individuals within the European Union and European Economic Area. At trygantisapp, we are fully committed to complying with GDPR requirements and protecting your privacy rights.
For the purposes of GDPR, trygantisapp acts as the data controller for personal information collected through our website and services.
Data Controller: trygantisapp
Address: Vesterbrogade 142, 1620 Copenhagen V, Denmark
Contact: [email protected]
We process the following categories of personal data:
We process your personal data only when we have a valid legal basis under GDPR Article 6:
When you provide explicit consent for specific processing activities, such as receiving marketing communications or storing cookies on your device. You can withdraw consent at any time.
When processing is necessary to deliver services you have requested or to take pre-contractual steps at your request.
When we must process data to comply with legal requirements, such as tax or accounting obligations.
When processing serves our legitimate business interests (such as improving services or preventing fraud), provided these interests do not override your fundamental rights and freedoms.
Under GDPR, you have comprehensive rights regarding your personal data:
You have the right to clear information about how we collect and use your personal data. This information is provided through this document and our Privacy Policy.
You can request confirmation of whether we process your personal data and obtain a copy of that data. We will provide this information free of charge within one month of your request.
You can request correction of inaccurate or incomplete personal data we hold about you.
You can request deletion of your personal data in certain circumstances, including when:
You can request that we limit how we use your personal data in certain situations, such as when you contest the accuracy of the data or object to processing.
You can request to receive your personal data in a structured, commonly used, and machine-readable format and have it transmitted to another controller.
You can object to processing based on legitimate interests or for direct marketing purposes. We will cease processing unless we can demonstrate compelling legitimate grounds that override your interests.
You have the right not to be subject to decisions based solely on automated processing that produce legal effects or similarly significantly affect you. We do not engage in such automated decision-making.
To exercise any of your GDPR rights, please contact us at [email protected] with the following information:
We will respond to your request within one month. In complex cases, we may extend this period by two additional months and will inform you of any such extension.
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements. Specific retention periods vary based on data type and purpose:
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify you without undue delay. We will also report qualifying breaches to the relevant supervisory authority within 72 hours of becoming aware of the breach.
If we transfer your personal data outside the European Economic Area, we ensure appropriate safeguards are in place, such as:
When we engage third-party processors to handle personal data on our behalf, we ensure they:
We do not knowingly process personal data of children under 16 years of age. If we become aware that we have collected such data without appropriate parental consent, we will delete it promptly.
You have the right to lodge a complaint with a supervisory authority if you believe our processing of your personal data violates GDPR. In Denmark, the supervisory authority is:
Datatilsynet
Carl Jacobsens Vej 35
2500 Valby
Denmark
Website: www.datatilsynet.dk
Email: [email protected]
We may update this GDPR compliance information to reflect changes in our practices or legal requirements. Material changes will be communicated through our website. We encourage you to review this page periodically.
If you have questions about our GDPR compliance practices or wish to exercise your rights, please contact us at [email protected]. We are committed to addressing your concerns promptly and transparently.