GENERAL DATA PROTECTION REGULATION (GDPR)
Organizations established in the EU and processing personal data of EU-based individuals are, in almost all cases, required to comply with the GDPR as of May 25, 2018. The GDPR updates and harmonizes the framework for processing personal data in the European Union, and brings with it new obligations for organizations and new rights for individuals.
The team at Millionify is fully committed to the requirements of the GDPR. Our legal and policy experts have closely analyzed the requirements of the GDPR and continue to monitor new guidance on best practices for implementing the requirements of the GDPR. We have taken these new requirements to heart and made changes to our products, contracts and policies to ensure that we are fully in compliance with the GDPR. Millionify services comply with the GDPR as of May 25, 2018.
Worldwide Product Compliance
Many of our customers operate in multiple jurisdictions around the world. To ensure a consistent user experience, Millionify has adopted the GDPR requirements to our entire platform and supports it worldwide. We believe that the use of uniform rules and program logic will greatly enhance our customers’ ability to comply with the GDPR’s requirements.
Your Rights Regarding Your Personal Information
Platform statistics are compiled into traffic reports, which help Millionify understand, anticipate, and respond to user needs. If we learn, for example, of heightened interest in certain aspects of the Millionify website, we are likely to highlight that information on the Platform home page. This Information helps us create a better overall experience for Platform users.
Right of Access:
You may request access to your personal information and obtain a copy of your personal information which is being processed by Millionify. If you wish to find out what personal information is being processed by Millionify, we will provide you with the following, free of charge: purposes of processing, categories of personal information processed, recipient(s) of personal information, length of time during which the information will be stored; your privacy rights; and information on data transfers. Such requests are made by contacting our Privacy Team. Please be sure to provide the relevant details.
Right of Rectification:
You may request to change, update or complete any missing data we process about you, by contacting our Privacy Team with your relevant details. Please note that we may rectify, replenish or remove incomplete or inaccurate information, at any time and at our own discretion.
Right of Erasure:
You may at any time request the deletion of your personal information. In this case, if there is no overriding legitimate interest to continue processing your personal information we will erase your data. Such request will be made by contacting our Privacy Team with your relevant details.
Right of Restriction of Processing:
You may request that we restrict processing your personal information if the accuracy of the Personal Information is contested by you. To make such a request, please contact our Privacy Team and provide all relevant information.
Right to Data Portability:
You have the right to receive personal information in a structured, commonly used and machine-readable format. To make such a request, please contact our Privacy Team and provide all relevant information.
Right to object to processing Data:
You have the right to object to the processing your data. Such a request will be made by contacting our Privacy Team with your relevant details.
However, please note that these rights are not absolute, and may be subject to our own legitimate interests and regulatory requirements
If you are not satisfied with our response or believe we are collecting or processing your Personal Information not in accordance with the laws, you can complain to the applicable data protection authority.
Personal Information will be retained by Millionify for as long as necessary to provide our services, and as necessary to comply with our legal obligations, resolve disputes and enforce our policies. Retention periods will be determined taking into account the type of information that is collected and the purpose for which it was collected, bearing in mind the requirements applicable to the situation and the need to destroy outdated, unused information at the earliest reasonable time.
You may request deletion of your personal data, as specified above. Please be notified: If your information is fully deleted from the Millionify Database, it may be obtained again in the future, if it is collected through public platforms or our business partners. In this case, since we have complied with your deletion request, we will not have records regarding your contact data and your contact information may be reintroduced into the Millionify Database. We recommend you to periodically check your profile or the Services to ensure that your then-existed profile or account include only the Information you chose to have displayed.
Legal Basis for processing
The biggest myth about the GDPR is that consent is the ONLY way to lawfully process personal information concerning EU data subjects. While consent is one basis for lawful processing, it is not the only one.
Millionify lawful basis for processing is its legitimate interest in providing its services to its users, empowering the users to fight fraud online and verifying and authenticating online identities.
The categories of recipients of the personal data
In order to provide our service, we may share certain personal data with companies and individuals that subscribe to our service. We may also share personal data with the following recipients:
(i) our subsidiaries;
(ii) subcontractors and other third-party service providers (e.g. payment processors, advertisers and marketers, hosting services, etc.);
(iii) auditors or advisers of our business processes; and
(iv) any potential purchasers or investors in Millionify
Transfer of Data to a Third Country
If we transfer personal data outside of the EU or EEA, we only do so in accordance with the legal mechanisms set out in the GDPR (for example, the Privacy Shield or to territories which have been deemed by the European Commission as providing an adequate level of protection).
If you have any additional question on our privacy practices, please feel free to address us at [email protected]
In addition, individuals from the EU may contact our EU representative according to Art. 27 GDPR regarding all requests related to data protection and privacy: