Effective Date: 27.02.2024
1. Introduction
This Privacy Policy is designed to inform users of the nex.company website (hereinafter referred to as the "Site") about how we collect, use, disclose, and protect their personal data in accordance with the European Union's General Data Protection Regulation (GDPR).
2. Collection and Use of Personal Data
Personal data is any information that can be used to identify an individual. We collect this information when a user registers on the Site, subscribes to a newsletter, places an order, fills out a form, uses other features of the Site, or interacts with our CRM system.
Specifically, the following data types may be collected:
- Identification Data: Name, email address, phone number, company name.
- Usage Data: Information on how users interact with our Site, including IP addresses, browser type, and pages visited.
- Google Calendar Data: Data related to scheduling, including event details, times, and other calendar metadata, when integrated by the user.
3. Google Calendar Integration
Our CRM system allows companies to connect their Google Calendar. By doing so, the CRM is granted access to the Google Calendar data of the companies, including the ability to add, edit, and delete calendar events. We use this data solely for the purpose of managing appointments and improving the scheduling functionalities for our users. No other data from Google services is accessed.
Data accessed through Google Calendar includes:
- Event Details: Title, description, participants, and other event information.
- Event Times: Start and end times, recurring schedules.
This information is used only to enhance productivity features within our CRM and to synchronize schedules. We do not share this data with any third parties.
4. Purposes of Data Collection
We use the collected data for the following purposes:
- Managing the user's account and providing customer support.
- Processing transactions and providing requested services.
- Improving our services and the Site's content, and personalizing the user experience.
- Scheduling, adding, and managing events via Google Calendar integration.
- Sending transactional emails regarding orders, support inquiries, or updates to our services.
- Marketing communications, where consent has been given by the user, such as newsletters and special offers.
5. Data Sharing, Transfer, and Disclosure
We do not sell, trade, or otherwise transfer personal data to third parties, except for trusted partners who assist us in operating our Site, conducting our business, or servicing you, under strict confidentiality agreements. Specifically, with regard to Google Calendar integration, we do not share, transfer, or disclose any Google user data to other entities.
We may share user data in the following cases:
- Service Providers: Trusted third-party vendors who help us run our services, under strict confidentiality agreements.
- Legal Requirements: Where required by law, to comply with legal processes, or to respond to government requests.
6. Data Protection
We take appropriate security measures to protect against unauthorized access, alteration, disclosure, or destruction of your personal data. These include:
- Encryption: Data in transit and at rest is encrypted using industry-standard protocols.
- Access Controls: Only authorized personnel have access to user data.
- Regular Audits: We conduct regular security audits to ensure ongoing protection of data.
7. Data Retention and Deletion
We retain personal data only as long as it is necessary to fulfill the purposes for which it was collected, or to comply with legal, regulatory, or contractual obligations. Specifically:
- User Account Data: Personal data related to user accounts will be retained as long as the user account is active. If an account is deleted, all associated data will be permanently deleted within 30 days, except where we are required to retain it for legal purposes.
- Google Calendar Data: Data accessed from Google Calendar is retained only as long as the integration is active. Upon user request or disconnection of Google Calendar, all related data is immediately deleted from our systems.
- Transactional Data: Transactional data may be retained for legal purposes for up to 7 years.
Users can request the deletion of their personal data at any time by contacting us at the details provided below.
8. User Rights
In accordance with GDPR, users have the following rights:
- Right to access: Users can request access to their personal data.
- Right to rectification: Users can request correction of inaccurate data.
- Right to erasure: Users can request deletion of their data ("right to be forgotten").
- Right to restriction: Users can request restriction of data processing.
- Right to data portability: Users can request a copy of their data in a commonly used format.
- Right to object: Users can object to data processing, including for direct marketing purposes.
- Right to withdraw consent: Users can withdraw their consent at any time for data processing activities based on consent.
9. Consent
By using our Site, you consent to our Privacy Policy and the collection and use of information as described herein. Users can withdraw their consent at any time by contacting us at the details provided below.
10. Changes to Privacy Policy
We reserve the right to make changes to our Privacy Policy. Any changes will be communicated on this page. We encourage users to periodically review this page for the latest information on our privacy practices. Changes are effective immediately upon posting on this page.
11. Contact Information
If you have any questions regarding this Privacy Policy or wish to exercise any of your rights, please contact us at:
Email: privacy@nex.company
Address: nex.company, 123 Business Street, Dublin, Ireland