GDPR Compliance
Our approach to EU General Data Protection Regulation compliance.
Our GDPR Commitment
Algroton is committed to full compliance with the EU General Data Protection Regulation (GDPR) in respect of personal data we process on behalf of our EU clients and individuals in the European Economic Area.
Lawful Basis for Processing
We process personal data only where we have a lawful basis to do so - including consent, contract performance, legal obligation, or legitimate interests.
Where we rely on legitimate interests, we conduct and document a balancing test.
Data Subject Rights
Right of access: You can request a copy of the personal data we hold about you.
Right to rectification: You can ask us to correct inaccurate data.
Right to erasure: You can request deletion of your personal data where there is no legitimate reason to continue processing.
Right to restrict processing: You can ask us to limit how we use your data.
Right to data portability: You can request your data in a machine-readable format.
Right to object: You can object to processing based on legitimate interests or for direct marketing.
Data Transfers
Where we transfer personal data outside the EEA, we do so under appropriate safeguards such as Standard Contractual Clauses or adequacy decisions.
Data Protection Officer
For all GDPR-related enquiries, please contact our Data Protection Officer at dpo@algroton.com.