This website contains promotional content

Last updated: January 2024

About GDPR

The General Data Protection Regulation (GDPR) is a regulation in EU law on data protection and privacy in the European Union and the European Economic Area. It also addresses the transfer of personal data outside the EU and EEA areas.

seed-sage is fully committed to complying with GDPR requirements and ensuring that your personal data is processed lawfully, fairly, and transparently.

Our Role as Data Controller

seed-sage acts as a data controller for the personal information you provide to us. This means we determine the purposes and means of processing your personal data. We are responsible for ensuring that your data is processed in compliance with GDPR.

Our registered address is:

seed-sage
Unit 14, Green Enterprise Park
Ballymount Road Lower
Dublin 12, D12 X9K7
Ireland

Data Protection Principles

We adhere to the following principles when processing your personal data:

  • Lawfulness, fairness, and transparency: We process data lawfully and openly, informing you about how your data will be used.
  • Purpose limitation: We collect data only for specified, explicit, and legitimate purposes.
  • Data minimisation: We limit data collection to what is necessary for the stated purposes.
  • Accuracy: We take reasonable steps to ensure personal data is accurate and kept up to date.
  • Storage limitation: We retain personal data only for as long as necessary.
  • Integrity and confidentiality: We process data securely, protecting against unauthorised access or loss.
  • Accountability: We are responsible for demonstrating compliance with these principles.

Your Rights Under GDPR

The GDPR provides you with specific rights regarding your personal data:

Right to Be Informed

You have the right to know how we collect and use your personal data. Our Privacy Policy and this GDPR page provide this information.

Right of Access

You can request a copy of the personal data we hold about you. We will provide this information free of charge within one month of your request.

Right to Rectification

If the personal data we hold is inaccurate or incomplete, you have the right to have it corrected. We will respond to your request within one month.

Right to Erasure

Also known as the "right to be forgotten", you can request deletion of your personal data where there is no compelling reason for its continued processing. This right is not absolute and may be subject to legal requirements.

Right to Restrict Processing

You can request that we restrict processing of your personal data in certain circumstances, such as when you contest the accuracy of the data or object to our processing.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit it to another controller where technically feasible.

Right to Object

You have the right to object to processing of your personal data where we rely on legitimate interests as the legal basis. We will stop processing unless we can demonstrate compelling legitimate grounds.

Rights Related to Automated Decision-Making

You have the right not to be subject to decisions based solely on automated processing, including profiling, which produce legal or similarly significant effects. We do not currently engage in such automated decision-making.

Exercising Your Rights

To exercise any of your rights under GDPR, please contact us:

Email: [email protected]

We will respond to your request within one month. In complex cases, we may extend this period by up to two additional months, but we will inform you of any extension and the reasons for it.

We will not charge a fee for most requests. However, we may charge a reasonable fee if your request is manifestly unfounded or excessive. We may also refuse to comply with such requests.

Data Breach Notification

In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the Data Protection Commission within 72 hours of becoming aware of the breach. Where the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly without undue delay.

International Data Transfers

We primarily process and store personal data within the European Economic Area. Where we transfer data outside the EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission or adequacy decisions.

Data Protection Impact Assessments

Where processing is likely to result in a high risk to individuals' rights and freedoms, we conduct Data Protection Impact Assessments to identify and minimise data protection risks.

Supervisory Authority

If you are not satisfied with how we handle your personal data or respond to your requests, you have the right to lodge a complaint with the Data Protection Commission:

Data Protection Commission
21 Fitzwilliam Square South
Dublin 2, D02 RD28
Ireland

Website: www.dataprotection.ie

Updates to This Notice

We may update this GDPR compliance notice periodically to reflect changes in our practices or legal requirements. The date at the top of this page indicates when it was last revised.