01

Controller

This Privacy Policy informs you about the nature, scope, and purpose of the processing of personal data within our services, our online offer, and associated websites, features, content, and external online presences.

Humankompass – Association for European Innovation in Health, Education and Training
Hauptstraße 41, 8071 Hausmannstätten, Austria
Email: hello@humankompass.eu
Phone: +43 664 416 7380
02

Categories of Data Processed

We process the following categories of data in the course of our activities:

03

Purpose of Processing

04

Legal Basis

Processing of your personal data is based on the following legal grounds under the GDPR:

Art. 6(1)(a) GDPR — Consent of the data subject

Art. 6(1)(b) GDPR — Processing for the performance of our services and pre-contractual measures

Art. 6(1)(c) GDPR — Processing to comply with legal obligations

Art. 6(1)(f) GDPR — Processing to pursue our legitimate interests
05

Security Measures

We implement appropriate technical and organisational measures in accordance with legal requirements to ensure a level of protection commensurate with the risk. This includes in particular ensuring the confidentiality, integrity, and availability of data, as well as procedures for exercising data subject rights and for erasing data.

06

Processors and Third Parties

Where we disclose, transfer, or otherwise grant access to data to other persons or companies in the course of our processing, this is done only on the basis of a legal permission, your consent, a legal obligation, or on the basis of our legitimate interests.

07

Leadinfo

We use the lead generation service of Leadinfo B.V., Rotterdam, Netherlands. This service identifies company visits via IP address and shows us publicly available information such as company names or addresses.

For more information and an opt-out option, visit www.leadinfo.com/en/opt-out.

08

Transfers to Third Countries

Where we process data in a third country (outside the EU or EEA), or where this occurs in connection with third-party services, this is done only to fulfil our (pre-)contractual obligations, on the basis of your consent, a legal obligation, or our legitimate interests, and only where the statutory requirements are met (e.g. standard contractual clauses).

09

Cookies & Right to Object to Direct Marketing

We may use temporary and permanent cookies. Temporary ("session") cookies are automatically deleted when you close your browser. Permanent cookies remain on your device until manually deleted or until their expiry date.

If you do not wish cookies to be stored on your device, you can disable them in your browser settings. A general objection to online marketing cookies can be made at aboutads.info/choices or youronlinechoices.com.

10

Contact

When you contact us (e.g. by email or phone), the information you provide is processed to handle your request pursuant to Art. 6(1)(b) and (f) GDPR. We may store this information in a CRM system. We delete enquiries once they are no longer needed and review necessity every two years.

11

Hosting & Log Files

Our hosting provider collects data on every access to the server on the basis of our legitimate interests (Art. 6(1)(f) GDPR). This includes: page name, date and time of access, data volume transferred, browser type and version, operating system, referrer URL, and IP address. Log file data is retained for security purposes for a maximum of 7 days and then deleted.

12

Your Rights

Right of Access You may request information about the personal data we hold about you.
Right to Rectification You may request correction of inaccurate or incomplete data.
Right to Erasure You may request deletion of your data, subject to any legal retention obligations.
Right to Restriction Under certain conditions you may request restriction of processing.
Data Portability You have the right to receive your data in a structured, machine-readable format.
Right to Object You may object to processing based on legitimate interests at any time.

To exercise your rights, contact us at: hello@humankompass.eu

You also have the right to lodge a complaint with the competent supervisory authority: Austrian Data Protection Authority (DSB), Barichgasse 40–42, 1030 Vienna — www.dsb.gv.at

13

Deletion of Data

Data processed by us is deleted or its processing restricted in accordance with legal requirements. Data is deleted once it is no longer required for its intended purpose and where no statutory retention obligations apply.

Prepared with reference to the Datenschutz-Generator.de by RA Dr. Thomas Schwenke.