Please use the form below if you need to contact us regarding our privacy policy
Privacy Policy
(external personal data policy)
for
Aqoola A / S
relating to
processing of personal data
Version 1.2
Date 16.04.2020
Approved by Niels Legaard, Aqoola A / S
Privacy Policy
Thank you for visiting Aqoola A / S.
It is important to us that we protect and respect your privacy when dealing with us. In addition to software trading, our ultimate goal is to process your personal data properly and appropriately, so that you can feel comfortable visiting and do business with Aqoola A / S.
We have high ethical standards and have incorporated strict internal procedures to ensure that we process your personal data in the best possible way. In our privacy policy you can read the terms and conditions for the processing of your personal data and the rights you have in connection with visits and trading at Aqoola A / S.
If you have any questions or comments about our privacy policy - or would you like to contact us regarding other matters, you are welcome to do so.
1. Which services do we provide
An Online platform for streamlining bookkeeping including Invoice Workflow, Expense Management and Contract Management.
For this purpose, we collect a number of data about you. Below, we have elaborated on what we collect, why we do it, what we do to protect your data, from which we collect the personal data and what rights you have in that regard.
2. What is personal data?
Personal data can be a lot of things.
It can be a name, an address and a phone number. It can also be a photo or an IP address. Personal data is any type of information that can be used to identify a person. It is therefore not only the individual information that determines whether something can be called personal data. If multiple personal data cannot identify a person singularly, but together they can, they have the nature of personal data.
3. We collect personal data in several ways
We collect personal data about you in the following ways:
4a. We collect and use your personal data for specific purposes
The purpose of collecting and using your personal data can be divided into the following categories:
1) In the first category, there are certain personal data we need to know about you in order to provide our service to you. For example, your name, your work address, your work telephone number and your work mail, ie. necessary identification and contact information. This constitutes our legal "treatment basis". If we cannot process these personal data, we cannot provide our service to you. It may also be that we have an additional treatment basis, for example that according to the law, we must register and store certain personal data. For example, personal data for the purposes of our compliance with tax law and the Bookkeeping Act. If we want to use your personal data in any other way than what we collected them for, because we redeem it necessary, we will inform you if we exceed the “framework” for the original purpose. We will do this before we start and inform you of the reasons for this.
2) In the second category, there are certain personal data that we would like to know about you, so that we can improve our products and services, adapt our communication and marketing to you and further optimize your relationship with us, so that we can offer you exactly the services and products you need. None of the "Category 2 personal data" is strictly necessary for us to provide our service to you. Therefore, you must give explicit consent in order for us to collect and use this personal data. Our basis for treatment in this regard is thus, your consent. Your consent is voluntary and if you have given it to us, you may withdraw it at any time by contacting us at the contact details at the bottom of this page. If we wish to use your personal data in any other way than what we collected them for with your consent, we will always ask for your renewed consent, if the "framework" for the original purpose is exceeded. We will do this before we start and inform you of the reasons for this.
3) In the third category, there are certain personal data that we keep, in order to safeguard our interests in the future if needed. Our treatment base is therefore in the nature of "legitimate interests", as this is understood in current personal data legislation. This among other things means, based on a specific assessment that we keep your personal data for a period of time. The time period and extent of the personal data for this processing is determined based on the criteria you can see in the section "we will delete your personal data when they are no longer needed".
6. Only if necessary
We cooperate with selected and trusted partners to provide our service to you, including our suppliers, hosting partners, our own intra-group companies, partners and data processors. To them, we pass on the necessary personal data so that we can collectively deliver our services to you. It could for example be the provision of services, production of customizations, integration tasks etc. It can also be the Danish VAT database, to update any name or address changes in databases on our customers.
7. If you have given consent
We only disclose personal data to companies, organizations or individuals outside our company and group if we have your consent. You can object to this type of disclosure at any time and you can also opt out of marketing inquiries in the Danish CPR register.
If you would like to know more or take advantage of your rights, please contact us via the contact formular at the bottom.
Right to get wrong personal data corrected
We check that the personal data we process about you is not incorrect or misleading. We do this by sending you a confirmation at the start of the agreement about the personal data we have registered about you. You have the right to correct your personal data that we have. You have the right to gain access to your personal data and to receive a copy. You have the right at any time to gain access to the personal data we have registered about you and to have a copy of the personal data provided.
You may also be informed about the purposes of the processing, how long we keep your personal data, whether we make automatic decisions (including profiling), who we pass the personal data to and where we have the personal data from. However, this does not apply if you are already familiar with the personal data. Please note that the right of access may be limited for the protection of the privacy of other persons and for our business secrets.
Right to delete your personal data
You may at any time require that we delete your personal data that we hold. If we no longer have a purpose for holding the personal data, we will delete it as soon as possible at your request.
Right to demand limitation of treatment
You have the right to at any time to request us to restrict the processing of your personal data.
Right to object to treatment
You have the right to at any time to object to us processing your personal data. This includes the right to object to the use of personal data for marketing purposes. We will consider your objection as soon as possible if you submit such.
Right to revoke consent
You may revoke the consent(s) you have given us at any time.
Right to require information about transfer of information to countries and organizations outside the EU
You have the right to be informed if we forward personal data to a country outside the EU. We can disclose that we forward personal data to IT companies that act as our data processors in the United States and Ukraine. All of our data processors in the United States have signed up to the Privacy Shield Agreement (read more here: https://www.datatilsynet.dk/generelt-om-databeskyttelse/danmark-eu-og-resten-af-verden/) and have committed to comply with applicable personal data laws. We can therefore pass on the personal data to these companies.
Right to avoid profiling and that we make automatic decisions
You have the right at all times to prevent us from creating profiles of you and your personal data, or making automatic decisions. We can inform that we do not use profiling or making automatic decisions in our company.
Complaint
We do everything we can to ensure that your personal data is processed securely and that your rights are protected optimally and we regularly review our procedures and the handling of personal data. If you believe that we do not treat your request and your rights in accordance with the law, please contact us by filling out the contact formular below. We will then submit your inquiry to a senior employee of our company so that any misunderstandings and misconceptions can be investigated. If you continue to believe that we are not treating your inquiry and your rights in accordance with the law, you may appeal to the Data Inspectorate via:
The Data Protection Agency
Borgergade 28
1300 Copenhagen K
Phone: 33 19 32 00
www.datatilsynet.dk
9. Children
Our business is targeted at adults. We do not knowingly collect personal data from and about children. We are realistic about that e.g. children's use of electronic devices can never mean with 100% certainty that we do not receive personal data about children. We have designed our systems in the best possible way, so that we cannot receive personal data from children. We immediately delete the personal data if we become aware that we have inadvertently received personal data about children. If you are a parent or guardian and believe that your child has provided us with personal data knowingly or unknowingly, we ask you to contact us as soon as possible via our contact formular at the bottom.
10. How do we store your personal data?
11. The risk and disclaimer
The highest risk of misuse of personal data is due to people's own actions. It is up to each individual to take good care of their own personal data (including never disclosing passwords to others), and it is up to our company to take into account human interference. Although we have taken the above measures to limit risks in the processing of personal data, it cannot constitute a 100% assurance that no unintended events will occur.
We therefore disclaim any loss arising from unintended incidents related to our use and processing of your personal data to the extent that we can do so under applicable law. Accordingly, we cannot be held liable for any loss incurred related to the use of our company, our products and services, our website, systems, apps and other software to the extent we can do so under applicable law.
We recommend that you also take steps to secure your own personal data. You can do this, among other things, by closing your browser after use, by logging out of all accounts after use, by installing antivirus antimalware and other software that can improve the security of your computer. We recommend that you constantly update software, the apps you use, your computer and mobile devices and never disclose your password to others.
Notification
As mentioned, we have taken a wide range of measures to ensure the processing of your personal data. Should our IT systems and other security measures be compromised anyway, we will notify you without undue delay if the compromise involves a high risk of your rights and freedoms. Our company Aqoola A / S is responsible for data processing and ensures that your personal data is processed in accordance with the legislation:
Update of this Privacy Policy
We update our privacy policy when we believe it is needed. This could be, when we offer new services and products or in other situations.
When we make changes to the Privacy Policy, we will mention it below.
Changes compared to previous versions
Version 1.0 to 1.1: Has been updated in relation to the new GDPR legislation.
Version 1.1 to 1.2: Has been translated by Ali Karatas from Danish to English