This is Forssan Huoltopalvelu Oy's Register and Privacy Statement in accordance with the EU's General Data Protection Regulation (GDPR). Prepared on 01.01.2019. Last modified 21.09.2021.
Forssan Huoltopalvelu Oy, Salkokatu 1, 30100 Forssa Finland
Timo Kallio, 010-5045810 firstname.lastname@example.org
Forssan Huoltopalvelu Oy's customer register
The legal basis for the processing of personal data under the EU General Data Protection Regulation is - consent of the person (informed consent when making an e-commerce purchase) The purpose of the processing of personal data is to process e-commerce orders and to store order data for possible complaints or additional questions. Communication with customers, customer relationship maintenance. The data is not used for automated decision making or profiling.
The information to be stored in the register includes: person's name, possible company / organization, contact information (telephone number, e-mail address, address), billing information, other information related to the customer relationship and the services ordered. The data will be stored permanently unless the customer requests that their data be removed from the register The IP addresses of the visitors of the website and the cookies necessary for the functions of the service are processed on the basis of a legitimate interest, e.g. to ensure data security and to collect statistics about visitors to the Site in cases where they may be considered personal data. If necessary, the consent of third-party cookies will be requested separately.
The information stored in the register is obtained from the customer in connection with an e-commerce order or from messages sent via web forms, Contact information for companies and other organizations can also be collected from public sources such as websites, directory services, and other companies.
The information is not regularly disclosed to other parties. Information will not be published without separate permission from the customer. The data will not be transferred by the controller outside the EU or the EEA.
The register shall be handled with due care and the data processed by the information systems shall be adequately protected. When registry information is stored on Internet servers, the physical and digital security of their hardware is adequately addressed. The controller shall ensure that the data stored, as well as the access rights to the servers and other information critical to the security of personal data, are treated confidentially and only by the employees whose job description it includes.
Every person in the register has the right to check the information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check the data stored about him or to request a correction, the request must be sent by e-mail to the data controller (email@example.com). If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).
A person in the register has the right to request the removal of his or her personal data from the register ("the right to be forgotten"). Data subjects also have other rights under the EU's general data protection regulation, such as restrictions on the processing of personal data in certain situations. Requests should be sent by email to the registrar (firstname.lastname@example.org). If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).