ABCDEFGHIJKLMNOPQRSTUVWXYZ
1
PRIVACY POLICY GDPR MATRIX
2
ARTICLESECTION ARTICLE SECTION SUMMARYPOLICY SECTION REFEENCEITEM REQUIREMENTSTATUSPUBLISHED?
3
A R T I C L E 1 2
4
1 2ARTICLE 12.1-The controller shall take appropriate measures to provide any information referred to in Articles 13 and 14 and any communication under Articles 15 to 22 and 34 relating to processing to the data subject in a concise, transparent, intelligible and easily accessible form, using clear and plain language, in particular for any information addressed specifically to a child. The information shall be provided in writing, or by other means, including, where appropriate, by electronic means. When requested by the data subject, the information may be provided orally, provided that the identity of the data subject is proven by other means.All SectionsMANDATORYREVIEWYes
5
A R T I C L E 1 3
6
A R T I C L E 1 3ARTICLE 13.1AThe identity and the contact details of the controller and, where applicable, of the controller’s representative;8. Lawful BasisMANDATORYREVIEWYes
7
BThe contact details of the data protection officer, where applicable;
8. Lawful BasisMANDATORYREVIEWYes
8
CThe purposes of the processing for which the personal data are intended as well as the legal basis for the processing;
3. Purpose of PKB, 8. Lawful BasisMANDATORYREVIEWYes
9
DWhere the processing is based on point (f) of Article 6(1), the legitimate interests pursued by the controller or by a third party;
8. Lawful BasisMANDATORYREVIEWYes
10
EThe recipients or categories of recipients of the personal data, if any;
2. Types of service users, 3. Purpose of PKB, 4. Data disclosure and useMANDATORYREVIEWYes
11
FWhere applicable, the fact that the controller intends to transfer personal data to a third country or international organisation and the existence or absence of an adequacy decision by the Commission, or in the case of transfers referred to in Article 46 or 47, or the second subparagraph of Article 49(1), reference to the appropriate or suitable safeguards and the means by which to obtain a copy of them or where they have been made available.n/an/a-
12
13
ARTICLE 13.2AThe period for which the personal data will be stored, or if that is not possible, the criteria used to determine that period;6. Can I delete or hide my PKB account if I change my mindMANDATORYREVIEWYes
14
BThe existence of the right to request from the controller access to and rectification or erasure of personal data or restriction of processing concerning the data subject or to object to processing as well as the right to data portability;
6. Can I delete or hide my PKB account if I change my mindMANDATORYREVIEWYes
15
CWhere the processing is based on point (a) of Article 6(1) or point (a) of Article 9(2), the existence of the right to withdraw consent at any time, without affecting the lawfulness of processing based on consent before its withdrawal;
n/an/a-
16
DThe right to lodge a complaint with a supervisory authority;
8. Lawful BasisMANDATORYREVIEWYes
17
EWhether the provision of personal data is a statutory or contractual requirement, or a requirement necessary to enter into a contract, as well as whether the data subject is obliged to provide the personal data and of the possible consequences of failure to provide such data;
n/an/a-
18
FThe existence of automated decision-making, including profiling, referred to in Article 22(1) and (4) and, at least in those cases, meaningful information about the logic involved, as well as the significance and the envisaged consequences of such processing for the data subject.
n/an/a-
19
A R T I C L E 1 4
20
A R T I C L E 1 4ARTICLE 14.1AThe identity and the contact details of the controller and, where applicable, of the controller’s representative;
8. Lawful BasisMANDATORYREVIEWYes
21
BThe contact details of the data protection officer, where applicable;
8. Lawful BasisMANDATORYREVIEWYes
22
CThe purposes of the processing for which the personal data are intended as well as the legal basis for the processing;
3. Purpose of PKB, 8. Lawful BasisMANDATORYREVIEWYes
23
DThe categories of personal data concerned;
8. Lawful BasisMANDATORYREVIEWYes
24
EThe recipients or categories of recipients of the personal data, if any;
2. Types of service usersMANDATORYREVIEWYes
25
FWhere applicable, that the controller intends to transfer personal data to a recipient in a third country or international organisation and the existence or absence of an adequacy decision by the Commission, or in the case of transfers referred to in Article 46 or 47, or the second subparagraph of Article 49(1), reference to the appropriate or suitable safeguards and the means to obtain a copy of them or where they have been made available.
n/an/a-
26
27
ARTICLE 14.2AThe period for which the personal data will be stored, or if that is not possible, the criteria used to determine that period;
6. Can I delete or hide my PKB account if I change my mindMANDATORYREVIEWYes
28
BWhere the processing is based on point (f) of Article 6(1), the legitimate interests pursued by the controller or by a third party;
8. Lawful BasisMANDATORYREVIEWYes
29
CThe existence of the right to request from the controller access to and rectification or erasure of personal data or restriction of processing concerning the data subject and to object to processing as well as the right to data portability;
6. Can I delete or hide my PKB account if I change my mindMANDATORYREVIEWYes
30
DWhere processing is based on point (a) of Article 6(1) or point (a) of Article 9(2), the existence of the right to withdraw consent at any time, without affecting the lawfulness of processing based on consent before its withdrawal;
n/an/a-
31
EThe right to lodge a complaint with a supervisory authority;
8. Lawful BasisMANDATORYREVIEWYes
32
FFrom which source the personal data originate, and if applicable, whether it came from publicly accessible sources;
3. Purpose of PKBMANDATORYREVIEWYes
33
GThe existence of automated decision-making, including profiling, referred to in Article 22(1) and (4) and, at least in those cases, meaningful information about the logic involved, as well as the significance and the envisaged consequences of such processing for the data subject.
n/an/a-
34
A R T I C L E 2 6
35
2 6ARTICLE 26.1-Where two or more controllers jointly determine the purposes and means of processing, they shall be joint controllers. They shall in a transparent manner determine their respective responsibilities for compliance with the obligations under this Regulation, in particular as regards the exercising of the rights of the data subject and their respective duties to provide the information referred to in Articles 13 and 14, by means of an arrangement between them unless, and in so far as, the respective responsibilities of the controllers are determined by Union or Member State law to which the controllers are subject. The arrangement may designate a contact point for data subjects.8. Lawful BasisMANDATORYREVIEWYes
36
ARTICLE 26.2-The arrangement referred to in paragraph 1 shall duly reflect the respective roles and relationships of the joint controllers vis-à-vis the data subjects. The essence of the arrangement shall be made available to the data subject.8. Lawful BasisMANDATORYREVIEWYes
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100