Our Commitment to Data Protection
Frost Logic is fully committed to complying with the General Data Protection Regulation (GDPR) and protecting the privacy and security of our clients and website visitors. This page explains how we handle personal data in accordance with GDPR requirements.
Data Controller Information
For the purposes of GDPR, the data controller is:
Frost Logic
Unit 14, Harbour Business Park
Dun Laoghaire, Co. Dublin
A96 X2P7
Ireland
Email: [email protected]
Lawful Basis for Processing
We only process personal data when we have a lawful basis to do so. The legal grounds we rely on include:
Consent
When you submit an enquiry form or sign up for our communications, you provide consent for us to contact you regarding your request. You may withdraw this consent at any time by contacting us.
Contractual Necessity
When you engage our services, we process your data as necessary to fulfil our contractual obligations to you, including providing consultations and delivering agreed services.
Legitimate Interests
We may process data based on our legitimate business interests, such as improving our services and ensuring the security of our systems. We always balance these interests against your rights and freedoms.
Your GDPR Rights
Under GDPR, you have comprehensive rights regarding your personal data:
Right to Be Informed
You have the right to know how we collect and use your personal data. Our Privacy Policy and this GDPR page provide this information transparently.
Right of Access
You can request a copy of all personal data we hold about you. We will provide this information within one month of your request, free of charge for the first request.
Right to Rectification
If any personal data we hold about you is inaccurate or incomplete, you have the right to have it corrected. We will make necessary corrections within one month.
Right to Erasure
Also known as the "right to be forgotten", you can request that we delete your personal data in certain circumstances, including:
- The data is no longer necessary for its original purpose
- You withdraw consent and there is no other legal basis for processing
- You object to processing and there are no overriding legitimate grounds
- The data has been unlawfully processed
Right to Restrict Processing
You can request that we limit how we use your data in certain situations, such as while we verify the accuracy of data you have challenged.
Right to Data Portability
You can request that we provide your data in a commonly used, machine-readable format so you can transfer it to another service provider.
Right to Object
You can object to processing based on legitimate interests or for direct marketing purposes. If you object to marketing, we will immediately stop using your data for that purpose.
Rights Related to Automated Decision-Making
We do not currently use automated decision-making or profiling that produces legal or similarly significant effects. Should this change, you would have the right not to be subject to such processing.
How to Exercise Your Rights
To exercise any of your GDPR rights, please contact us at [email protected]. We may need to verify your identity before processing your request. We will respond to all legitimate requests within one month. If your request is particularly complex, we may extend this period by a further two months, in which case we will inform you.
Data Protection Officer
Given the nature and scale of our operations, we have not appointed a dedicated Data Protection Officer. However, all data protection matters are taken seriously and handled by our management team. For any data protection queries, please contact us at the address above.
Data Breach Procedures
In the unlikely event of a personal data breach, we have procedures in place to:
- Detect and investigate the breach promptly
- Notify the Data Protection Commission within 72 hours where required
- Notify affected individuals without undue delay if the breach poses a high risk to their rights and freedoms
- Document all breaches and our response actions
Supervisory Authority
If you believe we have not handled your data appropriately, you have the right to lodge a complaint with the supervisory authority:
Data Protection Commission
21 Fitzwilliam Square South
Dublin 2
D02 RD28
Ireland
Website: www.dataprotection.ie
We would appreciate the opportunity to address your concerns before you approach the supervisory authority, so please contact us first.
Updates to This Information
We review our GDPR compliance regularly and may update this page accordingly. Significant changes will be communicated through our website.