GDPR Privacy Statement

This is the Registry and Data Protection Statement in accordance with the Company's Scemo Oy Personal Data Act (Sections 10 and 24) and the EU General Data Protection Regulation (GDPR).

  • Registrar:
    • Scemo Oy (Scemosystms)
    • Lapinkaari 17 A 33
    • 33180 Tampere
    • +358505507520
    • sales@scemosystems.fi
  • Contact person responsible for the register:
    • Scemo Oy data protection officer
    • sales@scemosystems.fi
    • +358505507520
  • Name of the register
    • Company customer register
  • Legal basis and purpose of the processing of personal data The legal basis for the processing of personal data under the EU General Data Protection Regulation is:
    • Communication with customers
    • Accounting reasons
    • Advertising
  • Information content of the register:
    • The information to be stored in the register is:
      • Persons name
      • Status
      • Company/organisation
      • Contact details (phone number, email address, address)
      • www-site addresses
      • Network connection IP-address
      • ID's/profiles in social media services
      • Information about the ordered services and their changes
      • Invoicing details
      • Other information related to the customer relationship and the services ordered.
  • Regular data sources:
    • The information stored in the register is obtained from the customer, for example:
    • Messages sent via web forms by e-mail
    • By phone
    • Through social media services
    • From contracts
    • From client meetings
    • From other situations where customer hands over their information to us.
  • Regular transfers of data and transfers of data outside the EU or the EEA:
    • The information is not regularly disclosed to other parties.
    • The information may be published to the extent agreed with the customer.
    • Data may also be transferred by the registry maintainer outside the EU or the EEA.
  • Registry security principles:
    • The register shall be handled with care and the data processed with information technology systems shall be adequately protected. When registry information is stored on Internet servers, the physical and digital security of their hardware is adequately addressed. The registry maintainer shall ensure that the data stored, as well as the access rights to the servers and other information critical personal data, are treated confidentially and only by the employees whose job description it includes.
  • Right of inspection and right to request correction of information:
    • Every person in the register has the right to check their information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check the data stored about him or her or request a correction, the request must be sent in writing to the data registrar. If necessary, the registrar may ask the applicant to prove his or her identity. The registrar will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).
  • Other rights related to the processing of personal data:
    • A person in the register has the right to request the removal of his or her personal data from the register (“right to be forgotten”). Data subjects also have other rights under the EU's general data protection regulation, such as restricting the processing of personal data in certain situations. Requests must be sent in writing to the registrar. If necessary, the registrar may ask the applicant to prove his or her identity. The registrar will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).
  • Creation date of privacy statement:
    • 24.5.2018