- Before or at the time of collecting personal information, we will identify the purposes for which information is being collected.
- We will collect and use personal information solely with the objective of fulfilling those purposes specified by us and for other compatible purposes, unless we obtain the consent of the individual concerned or as required by law.
- We will only retain personal information as long as necessary for the fulfillment of those purposes.
- We will collect personal information by lawful and fair means and, where appropriate, with the knowledge or consent of the individual concerned.
- Personal data should be relevant to the purposes for which it is to be used, and, to the extent necessary for those purposes, should be accurate, complete, and up-to-date.
- We will protect personal information by reasonable security safeguards against loss or theft, as well as unauthorized access, disclosure, copying, use or modification.
- We will make readily available to customers information about our policies and practices relating to the management of personal information.
We are committed to conducting our business in accordance with these principles in order to ensure that the confidentiality of personal information is protected and maintained.
The following applies from May 25th 2018
Which personal information do we gather from you?
When you gain access, sign up, participate in, create an account or in other way uses our services, we can collect personal information about you. The personal information, we collect, depends on the circumstances and the services you use, but can consist of the following:
Personal information which you actively provide us
- Name, e-mail, phone number and address.
- Birth date
- Payment information
- User identification, included username for login, password, secret question and the answers of this.
User generated personal information
Your purchase references, i.e. if you react on ads or campaigns
- IP address
We can also gather other information about your use of our services through cookies and similar technologies.
Personal information gathered from third party
We may supplement the information we collect from you with information we receive from third parties and through your use of websites, products or services offered by other companies in our group, WeBase Pltd (“eBook Booth”). This can for example include information we receive from third parties who provide our payment solutions in order to enable payment when using our Services.
What happens, if you connect your social media services with our service?
You can use your account on social media services, for example. your Facebook account, to connect to some of our Services, such as when you create an account on our Services. If you choose to do so, we collect certain information about your social networking account for the purposes described under “Why do we gather your personal information”. We collect only such personal information as is necessary to perform the Services you request by logging in to your social media account.
Why do we gather your personal information?
We process your personal information for the following purposes:
A) For the sake of our contractual relationship:
- To handle payment for your account and to deliver order and invoice information to you
- To keep track of your purchases in order to ensure that we can provide you with the services that you are entitled to
- To communicate with you about your subscription, account or purchase of our Services
- To inform you about changes in our Services
- To provide offers, news, information, products or services that you request from us
B) For legitimate purposes:
- To share your information with other companies within the WeBase when necessary for administrative purposes or for the deliverance of our Services to you.
- To use IP address or other information required to block the malicious use of our Services for the purpose of protecting our Services or otherwise enforcing or using our Terms and Conditions.
- To provide information in a merger and acquisition process for business and strategic management purposes.
- In order to provide you with offers, news, information, products or services that we believe may be of interest to you, including tailor-made advertising, it relate to your likely interests.
- For analysis and statistical purposes
- To establish, exercise or defend legal requirements
C) For marketing purposes:
- To send you newsletters if you have consented to this, which may also contain offers, news or information related to our Services and / or other products and services in the WeBase which we believe may be of interest to you. Please note that at any time you can unsubscribe from the newsletter by changing your account preferences on your account page
What legal basis in GDPR is the processing of your personal data based on?
The processing of your personal information for the purposes described below:
- point (A) is required for the conclusion and fulfillment of our obligations following our agreement with you;
- point (B) is required for our legitimate interests in developing, managing, protecting and marketing our Services as well as from a business and strategic perspective;
- point (C) will only occur if we have received your consent to such treatment;
- point (D) is required to comply with legal obligations.
Is it mandatory for you to provide your personal information?
Personal information that we request from you and which is marked “mandatory” in any way, such as using the * symbol, is required for us to provide our Services (for legal, contractual, administrative, technical or similar reasons ). However, some of your personal information may only be required if you use specific features, enable optional parts of the Service, or request access to certain resources, offers, promotions, programs, or similar from us or our affiliates. This will you be informed about before collecting such personal information from you.
Who can we share your personal information with?
The partners, sponsors and advertisers
We can share your personal information with our collaborators and sponsors when you participate in surveys and competitions in the Service. In addition, we may also share your personal information with our collaborators and advertisers, but only after you have requested it or assent that you have consented to it.
As described, we may also use aggregated information to monitor the use of our Services in order to help us improve and develop our Services, and we may make such aggregated information available to third parties, such as content partners or advertisers. Aggregated information does not include personal information and can’t be linked to you.
Third parties for security or other legitimate reasons
We may also disclose your personal information to third parties if we reasonably have reason to believe that disclosure of such personal information is necessary:
- In order to comply with applicable legal obligations, including applications, court orders, government requests or search warranties, or otherwise required by law;
- To protect our rights or property, or the safety of our customers or employees;
- To protect against fraudulent, malicious, misuse, unauthorized or illegal use or subscription to our Services and to protect our network, Services, Devices and Users from such use;
- To promote or defend against complaints or legal claims in court, administrative cases and procedures and the like;
- To assess credit risk, for reporting purposes or to receive payment for our Services;
- To external auditors and supervisors.
Where do we process your personal information?
How long do we store your personal data?
We will keep your personal information only as long as we consider it necessary to fulfill our purposes as described above under “Why do we process your personal information”. Then we will delete or, in some cases, anonymize your personal information. We regularly check whether we have saved personal information to be deleted. Since we process your personal information for different purposes, the actual period of personal information will vary.
Typically, the following deletion deadlines apply:
|Data Type||What is it?||Deletion Deadline|
|User Data||User data is information about, how you use the service and which rewards you use.||Until the account is deleted (is processed in 5 years)|
|Customer service data||Customer service data is information that you provide when you are in contact with ebookbooth.com customer service and voice recordings made for educational purposes.||3 years (call logs and text dialogs)
1 month (voice recordings)
|Account information||Account information is information about your account, such as username, password and purchase information made in the ebookbooth.com service.||Until deletion of account|
|Transaction data||Transaction data is information about transactions made on your account in connection with purchases made in the ebookbooth.com service||10 Years|
How do we protect your personal information?
Protecting your personal information is important to us. All personal information you provide us is stored on secure servers and we have strict procedures to protect against loss, abuse, unauthorized access, change, disclosure or destruction of your personal information. Any payment transactions will be encrypted by industry standard technology and subject to PCI security standards.
While we work hard to protect your personal data, we cannot guarantee that our security measures prevent any unauthorized attempts to access, use or disclose personal information. However, we maintain safety and incident plans, including plans for handling any breach of data security, in case of a physical or technical incident to handle this in a timely fashion and limit any adverse effect of such an incident.
How can you access your personal information?
We understand that sometimes you may need additional information from us about your personal information and how they are processed or that you may want to update or correct the personal information you have given us. Therefore, you include the following rights:
- Right to access your personal information: You are entitled to be verified by us if we process personal information about you and, if so, to access your personal information and information
- Right to get corrected personal information: If you find that personal information we treat about you is inaccurate, you have the right to make us correct such personally identifiable information
- Right to delete personal information (the right to be forgotten): Under certain circumstances, for example, if your personal information has been processed illegally or you have withdrawn your consent (if processing of your personal information is based on your consent), you have the right to request and delete your personal information from us.
- Right to limit processing: under certain circumstances, i.e. If you contest the accuracy of your personal information or if you object to our legitimate purpose to process your personal information, you are entitled to request that we limit the processing of your personal information until a solution has been found.
- Right to protest against processing: under certain circumstances, i.e. if you contest our legitimate interest in processing your personal information, you have the right to object, for reasons relating to your particular situation, against such processing.
- Right to data portability: If your personal information is processed automatically based on your consent or in the performance of our contractual relationship, you have the right to request that we provide you with your personal information in a machine-readable format for transmission to another data controller.
- Right to lodge a complaint with the supervisory authority: You have the right to file a complaint regarding our processing of your personal information to your supervisory authority.
If our processing of your personal information is based on your consent, you have the right to withdraw such consent at any time (however, it will not affect processing based on your consent before withdrawal) by contacting us or by updating the settings in the Service. (where relevant).
Please contact us using the contact details below to make a request for your rights. We will make commercially reasonable efforts to respond to your request within 30 days of receiving such a request. If we cannot comply with your request within 30 days, we will let you know about this, the reason for the delay and when we expect to be able to meet your request.
Also, be aware that you can change your contact preferences on the “Settings” page if you do not want to receive certain types of information from us. You can also do this at any time by contacting us at [email protected] .
We are subject to and bound by General Regulation (EU) 20116/679 of the European Parliament and of the Council of 27 April 2016 on Data Protection (“GDPR”), Law No 429 of 31 May 2000 on the processing of personal data (“Personal Data Act”) and Act No. 227 of 22 April 2002 on Information Society Services, including certain aspects of electronic commerce (the “e-commerce Act”).