Vizlib Privacy Note

Version: May 25th, 2018

Vizlib (a company incorporated in England and Wales (registration number: 10431702) having its registered office at 102 Fulham Palace Road, London, England, W6 9PL), as controller attaches great importance to protecting and respecting your privacy.

Vizlib is committed to protect your personal data and privacy. The purpose of this policy is to inform you of our practices regarding the collection, use and sharing of personal data that is provided to Vizlib through the use of our services, products or website.

Vizlib understands the importance of the General Data Protection Regulation (GDPR) and tries constantly to apply it to its fullest extent. Vizlib is subject to the GDPR obligations that embody the legal framework for the processing of personal data in Europe as of May 25th 2018. The GDPR has not only direct application in the European Union, but also a principle of extraterritoriality and under certain circumstances, protection of personal data is extended outside European borders.

In our Privacy Notice we use a few GDPR terms; the understanding of these GDPR is essential, in order to better understand your rights and our Privacy Notice. Below you will find some terms as defined in the GDPR:

personal data: any information relating to an identified or identifiable natural person (‘data subject’); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person;

processing: any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction;

controller: the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of
the processing of personal data; where the purposes and means of such processing are determined by Union or Member State law, the controller or the specific criteria for its nomination may be provided for by Union or Member State law;

processor: a natural or legal person, public authority, agency or other body which processes personal data on behalf of the controller;

consent: any freely given, specific, informed and unambiguous indication of the data subject's wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her;

Personal data & Sources of data:

Personal data is information that may identify you directly or indirectly. This information belongs to you. For the services provided by Vizlib, Vizlib is qualified as a controller when it collects data for processing, for instance for license key controls, service performance and improvement, technical assistance/support, client contact purposes or through DataViz Market.

PERSONAL DATA YOU PROVIDE TO US:

More specifically, the following personal data is directly provided by you:

  • User ID
  • Name and Surname
  • Email address
  • Telephone number (optional)
  • Company name (optional)

PERSONAL DATA AUTOMATICALLY COLLECTED:

Furthermore, Vizlib collects automatically data via its website IP addresses, connection data, types and versions of Internet browsers used, types and versions of your browser plugins, data about your browsing path on our website, the content that you access or view, the search terms used, download errors, the length of time that certain pages are viewed, the advertising ID of your device, the interactions with the page and any number of pages. By provisioning of its cloud services, Vizlib automatically collects: IP address, license key, hashed userid, version and type of Vizlib extension used. Among the technologies used to collect this information, we use cookies. For more information, consult the “cookies” section of the present policy.

PERSONAL DATA PROVIDED FROM THIRD PARTIES:

We may receive personal data about you from third sources. This is the case when you use one of our resellers in order to have access to Vizlib products and services or in case of online payment for our products. In the second case, we may provide you with another payment solution. Please, contact us.

Processing purposes:

In order to be more transparent, Vizlib wants to share with you its processing purposes:

  • License check: Vizlib provides you with online services and products. For this reason, Vizlib has to check that you have the right to use them. This is based on your decision to download a trial version (Freemium) or pay for a SaaS license.
  • Support: a SaaS license gives you access to Vizlib support services. Vizlib has to be able to identify the source of your technical problem and improve support or online services.
  • Marketing purposes: Vizlib may contact you, in order to inform you about its constantly ameliorated products and services, promotions, product upgrades, special offers, and updates.
  • DataViz Market: to give you access to products of third parties that interest you. This is based on your decision to access a trial version (Freemium) or obtain a license for a product through the DataViz Market.

Please note that Vizlib does not collect data for commercial purposes that are not related to Vizlib products & services.

Vizlib does not use your personal data for any reason that is not compatible with the purposes it was collected for Vizlib acquires no rights in your data.

Through the on-premise version of our software, available for subscribed enterprise customers, no personal data is collected; Contact-us at support@vizlib.com.

Vizlib is a Business to Business software and it is not addressed to children! No personal data of children is intentionally collected! If we realize that a child has provided personal information, we will delete it with no delay.

Vizlib does not process special categories of personal data. This data is irrelevant to the services provided by Vizlib and incompatible with our processing purposes.

Lawful basis & purpose limitation:

Your data is collected for specified, explicit and legitimate purposes. Any processing made by Vizlib is compatible with the following purposes. In order to comply with the provisions of the GDPR, Vizlib has determined a LAWFUL BASIS for each processing purpose, in order to process your data.

  • License check: Legitimate interests
  • Support: Legitimate interests
  • Upgrades to Vizlib Services and Product: Legitimate interests
  • DataViz Market: Legitimate interests
  • Third party Marketing purposes: Consent

LEGITIMATE INTERESTS: Vizlib is a SaaS platform that provides you with online services and products. License checks are necessary to protect them, especially when it comes to usage limitation and intellectual property rights. Upgrades to Vizlib Services and the Vizlib Product does affect the usage of our services, even under the freemium model.


CONSENT: for marketing purposes, Vizlib requires your consent when collecting your data. For this reason, a checkbox is at your disposal on the user profile page once you login: [Link]. Your consent may be withdrawn at any time by (i) unchecking the relevant box on your account, (ii) clicking on the unsubscribe link provided in each of our communications or (iii) contacting us: see the contact section of the present privacy policy.

Our commitment

DATA MINIMISATION:
Adequate, relevant and limited to what is strictly necessary in relation to the processing purposes. When ordering a service, you only fill in data that is necessary for Vizlib in order to provide you with our services or products.

ACCURANCY:
Accurate and kept up to date; all inaccurate data is erased or rectified without delay. Please consult your rights.

STORAGE LIMITATION:
Data is stored no longer than is necessary for the processing purposes; Personal data collected by Vizlib is kept during the entire duration of the contractual relationship and for the following 12 months. At the end of this retention period, your data is completely erased from all media and backups.

INTEGRITY & CONFIDENTIALITY:
Your data is processed in a manner that ensures appropriate security, including protection against unauthorized or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organizational measures. Please consult the security section of our privacy policy.

Your Rights:

Vizlib takes appropriate measures to provide you with any information related to your data and your rights. We also want to facilitate the exercise of your data rights. Please contact us at privacy@vizlib.com, if you have any questions or you want to exercise any of your rights (see below); we will respond to your request as soon as possible and no later than a month after receiving your request.

Please note that any information queries related to your data or the exercise of your rights is free of charge!

RIGHT OF ACCESS:
You have the right to obtain from Vizlib confirmation as to whether or not your personal data is being processed.

In addition to that, you have the right to access your personal data and obtain information about the purposes of the processing, the categories of personal data concerned, the recipients or categories of recipient to whom the personal data has been or will be disclosed, the envisaged period for which the personal data will be stored, your GDPR rights, any available information as to the source of your data and finally the existence of automated decision-making, including profiling. Furthermore, in case of transfer to a third country, you have the right to be informed about measures of security relating to the transfer.

In order to exercise your right to access your personal data, Vizlib shall provide a copy of the personal data undergoing processing.

A number of the above questions is answered in the present Privacy Notice. Although, within a month from your request you will receive a copy of specific information about YOUR personal data. Be aware that Vizlib shall ask you to provide proof of identity, in order to for you to exercise your right.

RIGHT TO RECTIFICATION:
You have the right to demand rectification of inaccurate personal data and complete any incomplete personal data.

RIGHT TO ERASURE:
You have the right to make a request about the erasure of your personal data. This right is not absolute and must be based on specific circumstances. You should be aware that Vizlib may reject your request on the basis of GDPR rules. For more information, please do not hesitate to contact us.

RIGHT TO RESTRICTION OF PROCESSING:
You may have the right to obtain restriction of processing for specific reasons mentioned in the GDPR. For more information, please do not hesitate to contact us. Vizlib shall inform you before the restriction of processing is lifted.

RIGHT TO DATA PORTABILITY:
You have the right to receive your data in a structured, commonly used and machine-readable format, in order to transmit it to another service provider. To exercise your data portability right you can request that your data be transmitted directly to the service provider that you shall indicate to Vizlib, if technically possible.

RIGHT TO DATA PORTABILITY:
Your have the right to receive your data in a structured, commonly used and machine-readable format, in order to transmit it to another service provider. To exercise your data portability right you can request that your data be transmitted directly to the service provider that you shall indicate to Vizlib, if technically possible.

RIGHT TO OBJECT:
You can at any time object to processing of your personal data. As of such request, Vizlib shall no longer process your data. To exercise this right you must provide Vizlib with an objection on grounds that are related to your situation in particular.

RIGHT TO COMPLAIN:
If you are not satisfied with the way Vizlib applies the GDPR rules or if Vizlib does not respect the one-month delay previously announced, please be aware that you have the right to lodge a complaint with a supervisory authority; The supervisory independent authority in the United Kingdom is the ICO (Information Commissioner's Office).

Subcontractors & Data transfers:

Vizlib keeps your Personal Data in the European Union. However, it is possible that personal data we collect through our online platform or as part of our services be transferred to other countries, some of which may have less protective personal data protection legislation. This is particularly the case regarding data transmitted to our subcontractors located outside the EU, in particular in the United States.

Subcontractors are called processors by the GDPR. Vizlib has contracts with processors that provide sufficient guarantees about data protection, respect the GDPR or the Privacy Shield and only act on Vizlib instructions.

Vizlib has verified that our non EU-subcontractors are Privacy Shield certified.

The Privacy Shield is a self-certification mechanism for companies established in the United States that has been recognised by the European Commission as providing an adequate level of protection for personal data transferred by a European entity to companies established in the United States. This mechanism is therefore considered to offer legal guarantees for such data transfers.

DataViz Market:

When using the DataViz Market third parties have access to your data. These third parties are the companies that own the products and services that are promoted through the DataViz Market. We draw your attention to the fact that if you decide to use DataViz Market products and let as a consequence our partners access some of your personal data, their privacy policies apply too. Vizlib have no control over the collection or processing of your personal data by a third party on its own platform.

Security measures:

Vizlib takes the necessary precautions by having implemented appropriate technical and organisational measures to preserve the security and confidentiality of personal data, in particular to prevent any accidental, unauthorised or unlawful access, disclosure, alteration, loss or destruction.

Our commitment:
  • Data minimisation;
  • transparency about our processes, policies & actions;
  • daily backups;
  • an authorisation management system that limits access to data only to those who need access to it in the context of their duties and scope of activity;
  • a strict password policy for Vizlib personnel including two-way authentication;
  • processes to trace all actions performed on our information system; we perform regular penetration tests and write reports in the event of an incident affecting our customers’ data;
  • a limited storage period (12 months after your contract term);
  • regular reviews of personal data;
  • updated documentations;
  • encryption by default;
  • contracts with GDPR or Privacy Shield compliant subcontractors;
  • servers based in the European Union (Ireland);
  • Data Protection Impact Assessment reports for future projects.
Cookies:

Cookies are small texts used to store information on web browsers. They are used in particular to store and receive identifiers and other information on devices.
Vizlib is a SaaS platform. This means that it is a company that specializes in providing a software service online. Vizlib place cookies on your device (one per extension) to cache the license key in order to reduce the numbers of calls to Vizlib services for performance reasons, better user experience and marketing purposes only for Vizlib products and services.

Password confidentiality:

For your own safety, keep your password secret and do not communicate it to anyone.

Links to 3rd party websites:

The present privacy notice does not concern web links that lead to 3rd party websites. When it comes to your personal data, please remember to consult those 3rd party privacy policies.

Updates to our Privacy Policy:

Vizlib reviews regularly its privacy notice. This privacy notice was last updated on 24th of May 2018.

Contact details:

If you need to contact us about our privacy policy, if you have suggestions in order to improve it, if you want to exercise your rights or make a request, please write us:
E-mail: privacy@vizlib.com
Address: 30 Stamford St, South Bank, London SE1 9LS

You have the right to lodge a complaint with a supervisory authority; The supervisory independent authority in the United Kingdom is the ICO (Information Commissioner's Office).