Personal data policy
Here you can read more about how we handle your personal data.
Introduction
When you visit Gibotech’s website, we collect information about you, which we use to improve our content and adapt our ads on other digital channels. If you do not want the information to be collected about you, you should delete your cookies and refrain from using our website in the future.
At Gibotech, we ensure fair and transparent processing of personal data in accordance with all applicable laws, and local and international regulations; including the EU’s personal data regulation (GDPR). We protect personal data and the privacy of individuals in all areas of our business in accordance with the terms of this Privacy Policy.
Below we have elaborated on which information is collected and its purpose. If you want to see which third parties have access to them – and why they have it – you can see it in our cookie policy.
Personal data and data subjects
In this personal data policy, “personal data” is understood as all information relating to an identified or identifiable natural person (the “registered”).
Personal data is generally categorized either as “ordinary personal data” or as “sensitive personal data”.
Sensitive personal information is always confidential and includes racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic and biometric data, and health and sexual orientation.
General Personal Data is partly confidential and includes information about criminal offences, national identification numbers, information about a person’s salary, debt or pension, application materials and so on and all other types of General Personal Data; including name, customer number, (business) contact information such as email and phone number, photos, IP address and other usage information collected via cookies.
This Personal Data Policy applies to all personal data that Gibotech collects and processes about individuals, visitors, customers, suppliers (including third-party service providers), other stakeholders and users of Gibotech’s website and services.
Principles for the protection of personal data
Gibotech adheres to the following principles to ensure the protection of personal data in accordance with the GDPR.
- Purpose limitation: We only collect and process personal data – including sensitive data (if any) – for specified, explicit and legitimate purposes that are relevant to Gibotech’s business.
- Legality, fairness and transparency: Personal data must be processed legally, fairly and in a transparent manner in relation to the data subject. Where legally required, Gibotech will inform the individual of the purpose of the processing of their personal data, their right to have their personal data corrected, deleted or blocked and the identity of the company responsible for collecting and processing their personal data.
- Accuracy: To ensure that Personal Data processes are accurate, Gibotech shall ensure that Personal Data is reviewed and updated periodically where appropriate.
- Storage limitation: Personal data may only be stored for the time required to fulfil the purpose or as prescribed by law.
- Integrity and confidentiality: When processing personal data, it is important that such data is protected by appropriate security measures to minimize risks such as data loss, unauthorized access, destruction and accidental disclosure.
- Accountability: To ensure that the processing of personal data is carried out in accordance with the GDPR, Gibotech has implemented appropriate technical and organizational measures that are reviewed and updated as necessary.
- Cross-border transfer of data-specific rules applies when Gibotech transfers personal data from the EU/EEA to third countries or international organisations, which are discussed further in the section on data transfer below.
The types and purpose of collection of personal data
Gibotech collects and processes personal data exclusively for specified, explicit and legitimate purposes that are relevant to our business. The purpose of collecting and processing personal data also depends on the type of data subject. Relevant departments and employees who have access to personal data must follow the legal requirements, the principles in this personal data policy and the internal guidelines.
- Employment: Gibotech collects and processes personal data – including sensitive data (if any) – on applicants and candidates for employment purposes and in accordance with legal requirements.
- Gibotech’s website users: When you visit our website, we collect data about you, which is used to improve and customize our content on the site. The following types of data are typically collected and processed: a unique ID and technical information about your computer, tablet or mobile phone from which you access the website, your IP number, geographic location, and which pages you click on.To the extent that you yourself give explicit consent to the processing of data in connection with applications or registration for the newsletter, the processing of data takes place in Gibotech’s HR system or newsletter system.Data about your use of the website, which ads you have received and possibly clicked on, your geographical location, gender and age segment etc. are passed on to third parties to the extent that the data is known. You can see which third parties are involved in our cookie policy. The data is used for targeting ads.
We also use some third parties to store and process data. They only process data on our behalf and may not use it for their own purposes.
Dissemination of personal data such as name and e‑mail will only take place if you consent to it. We only use data processors in the EU or in countries that can provide your data with adequate protection.
Articles here on the website may contain embedded content (for example video and images). Embedded content from other websites collects data in exactly the same way as if you had visited that website directly. These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with the embedded content.
- Cookies: The website uses cookies. Cookies are text files that are stored on your computer, mobile or tablet with the purpose of recognizing the website, remembering settings, performing statistics and targeting ads. Cookies cannot contain harmful codes such as viruses.It is possible to delete or block cookies. If you delete or block cookies, the website might not function optimally, and there may be content that you will no longer be able to see or have access to.You can see the complete list of cookies we use and read about how they are processed on our cookie policy page.
- Marketing: Gibotech collects and processes data (including name and contact information) about current and new customers, business partners, suppliers – including third-party service providers – distributors, prospects and individuals, website users and individuals who have signed up for Gibotech’s newsletter for the following purposes: analysis, contact, managing contacts and sending messages, remarketing and behavioural targeting, advertising and exhibitions.We may use third parties as service providers to send marketing information on our own behalf, but only in accordance with applicable legal requirements.Contracts, purchase orders and other transactional agreements: In connection with sales and purchase transactions, Gibotech collects and processes personal data – including name, contact information, delivery information, correspondence and payment information – necessary to conduct business and comply with export compliance regulations and other legal due diligence obligations.
- Accounting and finance: Gibotech collects personal data for accounting and financial purposes in accordance with applicable requirements. This information is provided for accounting by other internal departments or received directly from individuals or companies and includes information such as name, address, company name, registration number, payment and bank details, delivery address and other mandatory information.
- Litigation: In the event of a dispute, Gibotech may retain personal data necessary for our legitimate interest to ensure that we can properly bring or defend legal claims in court or in the stages leading to any legal action. Gibotech may need to share this information with third parties such as insurance and/or legal counsel, and we may also be required to disclose personal data at the request of government authorities.
- Consent and withdrawal of consent: To the extent that our processing activities are based on your consent, you have the right to withdraw your consent at any time. If you withdraw your consent, we will stop processing your personal data, unless and to the extent that continued processing is permitted or required according to applicable legislation on personal data or other applicable legislation. If you withdraw your consent, it will not affect the lawfulness of the processing carried out before the withdrawal.If personal data is processed for the sake of the public good, the exercise of a public authority assigned to Gibotech, or with a view to Gibotech’s legitimate interests, a person can object to such processing by justifying the individual’s particular situation. However, if the data is processed for direct marketing purposes, a person can object to such processing at any time without giving any reason. In both cases, Gibotech must be contacted via gibotech@gibotech.dk.
Location and data transfer
The personal data is processed at Gibotech’s head office and other places where the parties involved in the processing are located. Special rules apply when Gibotech transfers personal data from the EU/EEA to third countries or international organisations. When transferring to third countries or international organisations, we are obliged to introduce appropriate security measures prior to the transfer. In practice, they are established by introducing the European Commission’s standard contract provisions.
Following the GDPR, Gibotech has entered into a data processor agreement (DPA) and/or a joint data controller agreement (JDCA) and/or agreements with standard contract provisions (SPCs) with external parties and affiliated companies; whichever is relevant.
The retention period
Personal data collected by Gibotech must be processed and stored for as long as is required according to the purpose for which the data was collected. Gibotech may be allowed to store personal data for a longer period if we have obtained valid consent and as long as the consent is not withdrawn. In addition, we may be required to store personal data for a longer period when it is necessary to fulfil a legal obligation or to establish, exercise or defend a legal claim.
When the storage period has expired, the personal data is deleted. Therefore, the right to access, the right to deletion, the right to rectification and the right to data portability cannot be met after the storage period has expired.
Data security and breach of personal data security
Gibotech takes appropriate security measures to prevent unauthorized access, disclosure, modification or unauthorized destruction of personal data. The data processing is carried out using computers and/or IT-enabled tools according to organizational procedures and conditions strictly related to the given purposes. To protect your personal data, we continuously assess the risks that may be associated with our processing of your personal data. We pay particular attention to protecting your personal data against discrimination, identity theft, financial loss, loss of reputation and data confidentiality. To avoid loss of personal data, we regularly back up our systems, and we use encryption or other security measures where necessary.
In the event of a breach of personal data security that poses a high risk to your rights, we will notify you of the breach as soon as possible under the circumstances. “A breach of personal data security” means a breach of security that leads to the accidental or unlawful destruction, loss, alteration, or unauthorized disclosure of or access to personal data. In short, there will be a breach of data security when personal data is lost, destroyed, destroyed, disclosed without proper permission or if the data is made inaccessible.
If you experience or suspect a breach of personal data security, please contact Gibotech at gibotech@gibotech.dk.
Rights of Individuals
Individuals have the following rights:
- Withdrawal of consent – the right to be able to withdraw previously given consent to the processing of the person’s personal data at any time.
- Objection to the processing of personal data – the right to object to the processing of personal data if such processing is carried out on a different legal basis than that to which consent has been given. Further information can be found in the dedicated section of this personal data policy.
- Access to personal data – the right to know whether data is being processed by Gibotech, obtain information about certain aspects of the processing and obtain a copy of the data being processed.
- Verify and seek rectification – the right to check the accuracy of that person’s personal data and ask for it to be updated or corrected.
- Restrict the processing of personal data – the right to restrict the processing of the person’s personal data under certain circumstances. In that case, Gibotech will not process said personal data for purposes other than storing them.
- Deleted or otherwise removed personal data – the right to have the person’s personal data deleted from Gibotech under certain circumstances.
- Have personal data transferred to another data controller – the right to, under certain circumstances, have the person’s personal data passed on to another data controller without hindrance.
- Submit a complaint – the right to submit a claim to the relevant data protection authority, the Norwegian Data Protection Authority.
Contact Gibotech via the options below if you are in doubt about how to make use of your rights.
Ongoing monitoring
Through a combination of external and internal controls, continuous auditing and monitoring, Gibotech seeks to maintain the secure processing of data and prevent data loss.
Reporting system and contact information
In case of questions and/or possible violations of this personal data policy, please contact Gibotech at gibotech@gibotech.dk.
Any request can be made free of charge and will be processed as soon as possible and always within one month or earlier if required by applicable law.
Changes to this Privacy Policy
Gibotech reserves the right to change this personal data policy. The latest edition will always be available on our website, www.gibotech.dk.
Latest revision: 09.01.2023
Owner and data controller
Gibotech owns and publishes this website. We are the owner of and data controller for the personal data covered by this personal data policy.
Contact Information:
Gibotech A/S
Datavej 15
5220 Odense SØ
Telephone: 6595 8262
Email: gibotech@gibotech.dk
Contact us
The more information you provide, the quicker we can provide the right department with your query.