When you use our services, you trust us with your personal data.
We take data privacy seriously and only collect it from you to the extent necessary to use our services.
We process personal data in accordance with the EU General Data Protection Regulation (GDPR, EU 2016/679) and the laws of the Republic of Estonia.
EasyFit does not process sensitive personal data as defined in the GDPR Regulation.
Our Privacy Policy explains how and why we collect and process personal data.
This Privacy Policy is solely concerned with the processing of data collected through the EasyFit website and e-shop.
EasyFit Insulation OÜ is the data controller responsible for the lawfulness of the request for personal data.
What personal data do we collect?
We collect personal data to provide you with our services in the following two ways:
1 Data that you provide to us yourself
When you send us a quote request, you provide us with various personal data such as your e-mail address, telephone number, etc. We collect the following information:
- First name
- Surname
- Company name
- Phone
- E-mail address
2 Data we receive from you based on your use of our services
In addition, we collect information about what services you use and how you use them: for example, when you visit our website, we record information about this. We collect the following information about your use of the services:
- Your browsing information, including your IP address and device type, screen resolution.
Why do we collect and process personal data?
The processing of your personal data is necessary in order for you to make price enquiries through our services. Without the processing of personal data, it is not possible to provide you with the service you have requested and to fulfil the obligations associated with it. In order to use our services, your consent to the processing of your personal data for the purposes described is required. We use the data collected from all services to provide, administer, protect and improve the services and to develop new services.
We collect and process personal data for the following purposes:
- Responding to price enquiries sent by you
- Fulfilling your legal obligations
We will ask for your explicit consent before using your data for purposes other than those set out in our Privacy Policy.
To whom is the data transferred?
We will treat the personal data we process as confidential and will only disclose it to other persons or companies (or recipients) to the extent necessary to provide the service.
We do not share personal information with companies, organisations and individuals outside of our business, except in the following circumstances:
- Where we use external service providers to provide certain services to us, such as website service or accommodation providers, marketing service providers and IT support service providers, these external service providers may have access to and/or process your personal data when providing such services. We require these external service providers to implement and maintain security measures to ensure the integrity and security of your personal data.
- In the event of a merger or acquisition involving EasyFit, personal data may be transferred to third parties related to the merger or acquisition.
- Without the consent of the person concerned, personal data may be transferred to an authority or a person who has a direct legal right to do so in accordance with data protection legislation.
- If you have given your explicit consent to the transfer of personal data to a specific recipient.
Transfer of personal data outside the EU
We will treat the personal data we process as confidential and will only disclose it to other persons or companies (or recipients) to the extent necessary to provide the service.
As a rule, we process customer data within the European Union/European Economic Area.
EasyFit may transfer or process personal data outside the borders of the European Union/European Economic Area if there is a legal basis for doing so, e.g. the fulfilment of a legal obligation or the consent of the customer, and if appropriate safeguards are in place: there is a contract containing standard contractual clauses in compliance with the General Data Protection Regulation, approved codes of conduct, certifications, etc.; there is an adequate level of data protection in the country where the recipient is located in accordance with a decision of the European Commission; the recipient is certified under the Privacy Shield framework.
Data security
We work to protect your information from unauthorised access or unauthorised alteration, disclosure or breach.
To keep your data secure, we do the following:
- We treat all personal data as confidential.
- We encrypt services where possible using SSL.
- We restrict access to personal data by granting access only to those employees and contractors who need the information to process it, who are subject to strict contractual confidentiality obligations and who may be sanctioned or have their contract terminated if they fail to comply with those obligations.
- We keep personal data mainly in digital format rather than on paper to ensure more secure access control.
- The repository is protected by the necessary IT technical and organisational safeguards.
While we apply strict security rules to the personal information that we receive, it should be noted that the internet is never completely secure and we cannot guarantee the security of any information you send to us. The security of the data you send is always at your own risk.
What rights do you have and how can you exercise your rights?
If you have consented to the collection, processing and use of your personal data in certain ways, you may withdraw your consent at any time in the future.
In accordance with applicable data protection legislation, you are entitled to:
- Request access to your personal data.
- Request correction of your personal data.
- Request the deletion of your personal data.
- Request restriction of the processing of your personal data.
- Request the transfer of your personal data.
- Request the withdrawal of your consent to the processing of your personal data.
- Oppose automated decision-making (including profiling).
The application must allow your identity to be uniquely identified. To exercise your rights and submit your request, please contact us as set out in the section (“Contact us”).
Please note that you can only request the deletion of your personal data, the restriction of their processing or other measures if there is a lawful basis for you to do so and in accordance with data protection legislation.
If you request restriction, suspension or deletion of the processing of your personal data, this may result in a partial or total suspension of the services we provide to you.
In the event of a complaint, you have the right to lodge a complaint with the competent data protection authority. We will cooperate with the relevant regulatory authorities, including local data protection authorities, to resolve complaints about transfers of personal data.
How long do we keep your personal data?
Your personal data will be kept for as long as necessary to provide you with the services you have requested. If the personal data has not been used for 3 consecutive years, we will delete your personal data or make your personal data anonymous, unless mandatory retention requirements apply.
We may be required by applicable law to retain some of your personal information for 10 years after the end of your use of the service provided by us, if your personal information is necessary to comply with other applicable laws, or if we need your personal information to protect, establish and exercise legal claims based solely on a need-to-know basis.
Data collected in an anonymised form is kept indefinitely.
Privacy Policy terms and conditions and changes
By using the EasyFit services, you have read and accepted these terms and conditions.
Our privacy policy may change from time to time. We will not derogate from your rights under our Privacy Policy without your express consent. We will post a notice of any changes to our Privacy Policy on this page and will provide a more specific notice in the event of major changes.
Contact us
If you have any concerns or questions about this privacy policy, please contact us:
info@easyfit.ee
EasyFit Insulation OÜ, reg no. 14764288
Vana-Anepalu, Aruvalla village, Rae rural municipality, Harju county 75320
Last modified: 29.09.2019