GDPR Compliance
Your data security is our priority. Learn how we comply with the General Data Protection Regulation (GDPR).
What is GDPR?
GDPR stands for General Data Protection Regulation, a law enforced by the EU to protect end users' personal data. It enforces several aspects of data security. Here, we outline how we protect your data, our responsibilities, and your responsibilities. We strongly recommend reading all documentation and acting wisely to stay safe.
Definition of Personal Data
Personal data refers to any data owned by an individual, such as:
- Name
- Image
- Email address
- Physical address
- Social media posts
- Location
- Computer IP address
The ownership of personal data is absolute. Data collectors or users (e.g., Facebook, YouTube) cannot use, share, or save personal data without the user's explicit or implicit permission.
Responsibility of Developer
Developers are responsible for safeguarding user data on the application backend. This includes:
- Storing user data securely on databases and servers.
- Notifying users about temporary (cookies, sessions) and permanent (database) data storage.
- Providing options for users to erase their data upon account deletion or service cancellation.
We do not keep logs of user activity or use backdoors to extract data. However, we recommend app admins change credentials after developer access to prevent leaks.
Responsibility of Application Admin
Application admins have unrestricted access to user data, including databases and server logs. Admins must:
- Announce how user data will be used before registration.
- Prevent unauthorized data extraction through surveys or forms.
- Ensure the safekeeping of user data.
User’s Responsibility
Users are responsible for:
- Reading all documentation before submitting data.
- Safeguarding their credentials (e.g., passwords).
- Changing credentials if suspicious activity occurs.
Our Actions on GDPR
- Collect minimal data and explain its necessity.
- Enforce HTTPS for secure connections.
- Destroy sessions and cookies after logout.
- Do not track user activity for commercial purposes.
- Notify users of any logs saving IP addresses or locations.
- Provide clear terms and conditions.
- Inform users of data sharing with third parties.
- Create clear policies for data breaches.
- Delete data upon subscription cancellation or account deletion.
- Patch web vulnerabilities.
Supported GDPR Features
- Adios, Application: Delete all data upon account deletion or subscription cancellation.
- Secrecy is my right: Encrypt personal data to protect it during breaches.
- No cookie and session saving: Option to avoid saving cookies or sessions.
- Destroy footprints: Do not track or save user activity.
- Social engineering is bad: Do not analyze or misuse user data.
- Notify me: Email notifications for account activities.
- Policy Update notification: Notify users of policy changes.
- Connect without worry: Enforce HTTPS for secure connections.
- No data collecting: No hidden data collection or backdoors.
- Data breach policy: Implement security measures but do not take responsibility for server breaches.
© 2023 Tarjeeh AI. All Rights Reserved.