GDPR White Paper

November 6, 2024 2025-08-02 10:05

📄 GDPR Compliance White Paper

At SuoQ Digital, we are fully committed to protecting the privacy and data rights of our users and clients under the General Data Protection Regulation (GDPR) (EU 2016/679).

1. Overview

GDPR is a European regulation that strengthens data protection rights for individuals and sets strict rules for organizations on how personal data is collected, stored, and used. This white paper outlines SuoQ Digital’s data protection framework and compliance practices.

2. Lawful Basis for Processing

We process personal data based on legitimate interest, contractual necessity, user consent, and compliance with legal obligations.

3. Data Collection & Purpose

  • Personal data is collected during registration, support requests, purchases, or demo bookings.
  • We use data to deliver services, enhance product experiences, and provide support or updates.
  • We never sell personal information to third parties.

4. User Rights Under GDPR

All SuoQ users and customers have the right to:

  • Access and review their data
  • Request data rectification or deletion
  • Withdraw consent at any time
  • Request data portability
  • File a complaint with a supervisory authority

5. Data Security Measures

We implement industry-standard security measures such as encryption, access control, secure backups, and routine audits to protect data integrity and confidentiality.

6. Data Hosting

SuoQ’s cloud infrastructure is hosted on GDPR-compliant platforms including AWS and Google Cloud, with data centers in the EU and US. We ensure data is stored securely with redundancy and failover protection.

7. Subprocessors & Data Sharing

We work only with trusted, GDPR-compliant subprocessors (e.g., email providers, hosting, analytics tools). A full list of subprocessors is available upon request.

8. Data Breach Protocol

In the event of a data breach, we follow strict internal procedures and notify affected individuals and regulators within 72 hours, as required by GDPR.

9. Data Retention

Personal data is retained only as long as necessary for service delivery or legal purposes, after which it is securely deleted or anonymized.

10. Contact Our DPO

For GDPR-related questions, requests, or reports, please contact our Data Protection Officer (DPO) at
privacy@suoq.app.

Dark

Light

Dark

Light