Privacy Policy for the Exadar Website

2024-02-11

This privacy policy governs how Exadar collects, uses, stores, and discloses information provided by users ("User" or "Users") on the Exadar website ("Website").

Privacy Policies

The Exadar is committed to the protection of its clients and the personal data and privacy of those who visit its website. This Policy (hereinafter: Policy) primarily addresses the confidential handling and protection of clients' personal data over the internet, but is also applicable to data exclusively on paper or other carriers in its possession, obtained from clients in the course of, for example, marketing actions. The Policy describes how Exadar may collect data about you and how the company's data processors can use it. This Policy provides important information about the protection of your personal data and your related rights in accordance with the regulations of the European Union (Regulation (EU) 2016/679 of the European Parliament and of the Council, hereinafter: GDPR). In matters not mentioned in this Policy regarding data protection, the general data protection provisions in the General Terms and Conditions (ÁSZF) apply. The user of the website acknowledges that they have become acquainted with and accepted this Policy and the general rules of website usage as specified in the General Terms and Conditions. If the user does not accept these terms, they have the right to discontinue the use of the website and not provide any personal data.

Publisher of this information and Data Controller:

I. Information about the data subject's rights

In connection with the processing of your data, you have the following rights: The User can request free information about the details of the processing of their personal data, and in cases specified by law, may request correction, deletion, blocking, or restriction of processing, and may object to the processing of such personal data.

Exadar examines the request within the shortest possible time, but no later than 30 days – in case of objection, 15 days – from the submission of the request, and makes a decision on the validity of the request, informing the applicant in writing. If Exadar does not comply with the User's request, it will inform the User in writing, within the deadline specified above, of the factual and legal reasons for not complying with the request for the exercise of rights. The User may contact the competent authority – in Hungary the National Data Protection and Freedom of Information Authority (www.naih.hu) – if they object to the decision of Exadar.

II. Remedies

III. Concepts related to personal data

Personal data: information that can be related to a specific natural person (hereinafter referred to as the data subject), from which conclusions can be drawn about the data subject. Personal data retains its quality during data processing as long as its connection to the data subject can be restored; special data: personal data related to racial or ethnic origin, national, ethnic, or political affiliation, political opinions or party affiliation, religious or philosophical beliefs, health condition, pathological addictions, sexual life, and criminal record; data processing: regardless of the applied procedure, it includes the collection, recording, storage, processing, utilization (including transmission and disclosure), and deletion of personal data. Data processing also includes preventing changes to data and further use; data processing: performing technical tasks related to data processing, regardless of the method and tool used for the operations and the location of application; data transmission: making data accessible to a specified third party; disclosure: making data accessible to anyone; data controller: a natural or legal person, or an organization without legal personality, who or which determines the purpose of processing personal data, makes decisions regarding data processing, and carries out the implementation. In the case of mandatory data processing, the purpose and conditions of data processing, as well as the data controller, are determined by the law or municipal decree ordering the data processing; data processor: a natural or legal person, or an organization without legal personality, who or which processes personal data on behalf of the data controller; data erasure: making data unrecognizable in a way that their restoration is not possible; automated data file: a series of data processed automatically; machine processing: includes the following operations when they are partially or entirely carried out by automated tools: data storage, logical or arithmetic operations on data, data modification, deletion, retrieval, and distribution.

IV. Principles of Data Processing

Data must only be acquired and processed fairly and lawfully; Data must only be stored for specific and lawful purposes, and must not be used in ways that deviate from those purposes; The storage of data must be proportionate to its purpose, and it must adhere to that purpose without exceeding it; Data must be accurate and, if necessary, up-to-date; The storage method of data must allow the identification of the data subject only for the necessary duration for the purpose of storage, and data concerning racial or ethnic origin, political opinions, religious or philosophical beliefs, as well as health or sexual life, must not be processed by automated means, unless domestic law provides appropriate safeguards. This applies to personal data related to criminal judgments as well; Adequate security measures must be taken to protect personal data stored in automated data files against accidental or unlawful destruction, accidental loss, as well as unauthorized access, alteration, or dissemination.

V. Additional Guarantees Protecting Data Subjects

VI. Purpose limitation of data processing:

Personal data may only be processed for specific purposes, for the exercise of rights, and to fulfill obligations. At every stage of data processing, it must correspond to this purpose. Only personal data that is essential for the realization of the purpose of data processing can be processed, and it must be suitable for achieving the goal, only to the extent and for the duration necessary for the realization of the purpose.

VII. Data Security:

The data controller or, in its scope of activities, the data processor is obliged to ensure the security of the data. Moreover, they are required to take the necessary technical and organizational measures and establish procedural rules that are essential for the enforcement of data protection laws, as well as other rules governing data and confidentiality protection. Data must be protected, particularly against unauthorized access, alteration, disclosure, deletion, as well as damage or destruction.

VIII. Data Processing During the Use of the Website

IX. Data Processing During the Use of the Website/apllication (Cookies)

On the Website, we only store cookies necessary for login and language settings. If you do not wish to use cookies, you can disable them at any time through your browser or other tools. Usually, you can find this option in the Tools/Settings History menu of your browser program. However, disabling the use of cookies may limit the functions of the Website/apllication, and it's possible that certain services may not be available in this way.

X. Data Breach Notification

Exadar is committed to maintaining the security of users' personal information. In the unlikely event of a data breach, where the security of users' personal data is compromised, Exadar will take immediate action to mitigate the breach and prevent further unauthorized access. While we do not have access to users' email addresses directly due to hashing, we will take appropriate measures to notify affected users through alternative means, such as a notice on our website or through other communication channels.

XI. Children Using or Accessing the Services

We are especially committed to protecting the privacy of children. The Services are directed at a general audience and are not directed to nor are the Services intended for any individuals under the age of eighteen (18), European Union individuals under the age of sixteen (16) or United States individuals under the age of thirteen (13) (each individually a "Child" or collectively "Children"). If we learn we have inadvertently collected or received Personal Information from a Child, we will use reasonable efforts to immediately remove such information, unless we have a legal obligation to keep it. If you are a parent or legal guardian and believe we might have any Personal Information from or about a Child, please contact us via the information found in the “Contact Information” section below.

XII. How We Protect Your Information

We have implemented safeguards reasonably designed to secure your Personal Information. Such safeguards include the implementation of various technical, physical, administrative and organizational security measures intended to reduce the risk of loss, misuse, unauthorized access, disclosure, or modification of your information. All information you provide to us is stored on our secure servers behind firewalls. The safety and security of your information is also dependent on you. If we have given you (or where you have chosen) a password for access to certain parts of the Services, you are responsible for keeping this password confidential. We ask you not to share your password with anyone. While we have employed security technologies and procedures to assist safeguarding your Personal Information, no system or network can be guaranteed to be 100% secure, and we cannot ensure or warrant the security of any information you provide to us. Unauthorized entry or use, hardware or software failure, and other factors may compromise the security of user information at any time. Any transmission of Personal Information is at your own risk. We are not responsible for circumvention of any privacy settings or security measures contained on the Services.

XIII. Updates to the Policy

Exadar reserves the right to update or modify this privacy policy at any time. Any changes will be effective immediately upon posting the updated policy on the Exadar website. Users are encouraged to review this policy periodically for any changes.

XIV. How to delete your data we collect from You

Based on the applicable laws of your country, you may have the right to request access to the personal information we collect from you, change that information, or delete it. To request to delete your personal information, please visit: https://www.exadar.hu/protected/settings. Or send us an email about the request.

Contact

If you have any questions regarding this Privacy Policy or the Exadar Website, please contact us using the following contact details: exadar.mailbox@gmail.com .