PRIVACY POLICY AND REGISTRY INFORMATION

1. Data Controller
Name: Varastointipalvelu Hyypiä Oy
Data Protection Officer: Toni Yrjönen
Business ID: 2883229-8
Address: Tukkikatu 9
Postal Code: 53900
City: Lappeenranta
Phone: +358 (0)20 789 0430
Email: [email protected]

2. Purpose of the Register
We collect personal data to identify customers, manage access rights, fulfill orders for registered users, and maintain and develop customer relationships.

3. Legal Basis for Data Collection and Processing
Personal data is collected and processed based on the data subject’s consent or for the execution of an agreement made with the customer.

4. Content of the Register

Company name, Business ID, Email address, Phone number, Personal ID, Username and password

5. Data Retention Period
Personal data is retained for as long as needed to fulfill the agreement with the customer or to improve customer service.

6. Regular Data Sources
Data is collected from:

The data subject themselves
Public authority registers within the limits of applicable laws (e.g., ytj.fi)
Google Analytics

7. Regular Disclosure of Data and Transfer of Data Outside the EU/EEA
Data is not regularly disclosed outside the company. However, some external service or software providers may store data outside the EU or the European Economic Area.

8. Use of Cookies
We use cookies on our website. A cookie is a small text file sent to the user’s computer, which allows the site administrator to recognize frequent visitors, facilitate login, and compile aggregated visitor data. We use this feedback to continuously improve our site content. Cookies do not harm users’ computers or files, and help us provide personalized information and services.

If a visitor does not wish to allow us to collect the above-mentioned data via cookies, most browsers permit disabling the cookie function through the browser settings. However, please note that cookies may be necessary for certain website functions and services to operate properly.

9. Register Security
All data is transferred over a secure SSL connection. Electronic data is protected by firewalls, usernames, and passwords. Only those employees of the data controller who need the information in their duties have access to the data.

10. Automated Decision-Making
No automated individual decision-making (as defined in Article 22 of the EU GDPR) takes place.

11. Rights of the Data Subject
The data subject has the right to inspect the personal data stored about them in the register. An inspection request must be submitted in writing, signed by the data subject, and sent to the person responsible for registry matters. The right of inspection is free once per year.

The data subject has the right to request the correction or removal of incorrect or outdated data, or to request the transfer of data from one system to another. They also have the right to restrict or object to the processing of their personal data in accordance with Articles 18 and 21 of the EU GDPR.

Additionally, the data subject has the right to withdraw previously granted consent for data processing, or to file a complaint with the supervisory authority regarding any issues related to the processing of their personal data.

Finally, the data subject has the right to prohibit the use of their data for direct marketing purposes.