Privacy Statement
At BrizoSystem, we are committed to protecting your privacy. This Privacy Policy outlines our practices regarding the collection, use, and disclosure of your information when you use our services.
Lawful Basis for Processing
We process your personal data under the following lawful bases: performance of a contract (to provide our Services), compliance with legal obligations, and legitimate interests (e.g., improving our Services). Where required, we will obtain your explicit consent.
Information Collection
We collect information you provide directly to us, such as when you create an account, update your profile, or communicate with us. This may include your name, email address, and other contact information.
Information Use
We use the information we collect to:
- Provide, maintain, and improve our services
- Process transactions and send related information
- Communicate with you, including responding to your comments and questions
- Monitor and analyse trends, usage, and activities in connection with our services
- We use GDPR-compliant third-party service providers (e.g., cloud hosting, payment processors). A list of sub-processors is available upon request.
Information Sharing
We only share data with third parties with your explicit consent, unless required for legal compliance, fraud prevention, or protecting rights.
International Data Transfers
Data may be transferred outside the EEA. We ensure such transfers comply with GDPR using safeguards like Standard Contractual Clauses (SCCs) or adequacy decisions.
Data Security
We implement appropriate technical and organisational measures to protect your information from unauthorised access, use, alteration, or destruction.
Data Retention
We retain personal data only as long as necessary for the purposes outlined, unless extended retention is required by law. Account data is deleted 30 days after cancellation, except anonymized or aggregated data retained for analytics. Specific retention periods vary by data type (e.g., transaction data: 7 years for tax compliance; marketing data: retained until consent withdrawal).
Automated Decision Making
We do not use automated decision-making or profiling that significantly affects your rights.
Children’s Data
Our Services are not directed to individuals under 16. We do not knowingly collect data from minors without parental consent.
Breach Notification
In the event of a data breach affecting your rights, we will notify the relevant supervisory authority within 72 hours and inform affected users without undue delay.
Your Choices
You have the right to access, rectify, erase, restrict processing, and port your data. Requests can be submitted via email to info@brizosystem.com. We will respond within one month. You may also withdraw consent or object to processing where applicable
Consent Management
Consent for non-contractual processing (e.g., marketing) is obtained explicitly and can be withdrawn at any time.
Changes to this Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on our website.
Contact Us
For GDPR-related inquiries, or you have any questions about this Privacy Policy, please contact our Data Protection Officer at info@brizosystem.com.