Register and Privacy Policy

This is the register and privacy policy of Rakennusteknologia Solutions Oy in accordance with the General Data Protection Regulation (GDPR) of the European Union. Created on November 17, 2022. Last updated on February 3, 2023.

DATA CONTROLLER

Rakennusteknologia Solutions Oy
Kanariankuja 4
00220 Helsinki
Business ID 3336493-5

CONTACT PERSON RESPONSIBLE FOR THE REGISTER

Maria RĂ¥man
info@rakennusteknologia.fi

REGISTER NAME

Rakennusteknologia Solutions Oy customer register and marketing register.

PURPOSE AND LEGAL BASIS FOR PROCESSING PERSONAL DATA

Personal data is processed and collected for the following purposes
- Communication with customers and maintaining customer relationships
- Invoicing and accounting
- Marketing communication
- Opinion surveys

The legal basis for the processing of personal data in accordance with the General Data Protection Regulation is a contract if we have entered into an agreement with the company you represent. In customer relationships before the contract, the legal basis is the data controller's right.

CONTENT OF THE REGISTER

The recorded information includes
- First and last name
- Phone number
- Email address
- Mailing address
- Customer company name
- Customer company business ID
- Information about ordered services and their changes
- Invoicing details
- IP address of website visitors

REGULAR SOURCES OF INFORMATION

The information to be recorded in the register is obtained from the customer through messages sent via online forms, email, phone calls, social media services, contracts, customer meetings, and other situations where the customer provides their information. Cookies and Google Analytics service are used on the website.

REGULAR DISCLOSURES OF INFORMATION AND TRANSFER OF DATA OUTSIDE THE EU OR EEA

Information is not regularly disclosed to other parties. Information may be published as agreed with the customer.

PRINCIPLES OF REGISTER SECURITY

The processing of the register is carried out with care, and the information processed through information systems is appropriately protected. When registry information is stored on Internet servers, the physical and digital security of the hardware is appropriately ensured. The data controller ensures that stored information, as well as server access rights and other information critical to the security of personal data, is treated confidentially and only processed by employees whose job description includes it.

RIGHT TO INSPECT AND RIGHT TO REQUEST CORRECTION OF INFORMATION

The data subject has the right to inspect what information concerning them is stored in the register. The data controller must correct any incorrect information indicated by the data subject in the personal data register. The data controller also has an obligation through proactive action to verify the accuracy and currency of the data in the register. The data subject can also request the data controller to delete the information about themselves from the register.

OTHER RIGHTS RELATED TO THE PROCESSING OF PERSONAL DATA

The person in the register has the right to request the deletion of personal data concerning them from the register ("the right to be forgotten"). Likewise, data subjects have other rights under the General Data Protection Regulation, such as restricting the processing of personal data in certain situations. Requests must be sent in writing to the data controller. If necessary, the data controller may ask the requester to prove their identity. The data controller will respond to the customer within the time prescribed by the EU General Data Protection Regulation (usually within one month).