{"id":950,"date":"2025-12-09T11:54:45","date_gmt":"2025-12-09T11:54:45","guid":{"rendered":"https:\/\/helvilux.lu\/?page_id=950"},"modified":"2025-12-09T11:54:47","modified_gmt":"2025-12-09T11:54:47","slug":"gdpr-compliance-helvilux","status":"publish","type":"page","link":"https:\/\/helvilux.lu\/index.php\/gdpr-compliance-helvilux\/","title":{"rendered":"GDPR Compliance HELVILUX"},"content":{"rendered":"\n<p><strong>Last Updated: December 2025<\/strong><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>1. Our Commitment to GDPR<\/strong><\/h2>\n\n\n\n<p>Helvilux is fully committed to complying with the General Data Protection Regulation (GDPR) and maintaining the highest standards of data protection for all visitors, users, and clients, particularly within the European Union.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>2. Legal Basis for Data Processing<\/strong><\/h2>\n\n\n\n<p>We process personal data based on the following legal grounds under GDPR:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Contract Performance (Art. 6(1)(b))<\/strong> \u2013 Processing necessary to provide Helvilux services and communication.<\/li>\n\n\n\n<li><strong>Legitimate Interests (Art. 6(1)(f))<\/strong> \u2013 Website functionality, analytics, security, and service improvement.<\/li>\n\n\n\n<li><strong>Legal Obligation (Art. 6(1)(c))<\/strong> \u2013 Compliance with bookkeeping, tax, and regulatory requirements.<\/li>\n\n\n\n<li><strong>Consent (Art. 6(1)(a))<\/strong> \u2013 Newsletter subscriptions, optional cookies, and other consent-based features.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>3. Your GDPR Rights<\/strong><\/h2>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.1 Right of Access (Art. 15)<\/strong><\/h3>\n\n\n\n<p>You may request confirmation of whether we process your data and receive a copy of that data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.2 Right to Rectification (Art. 16)<\/strong><\/h3>\n\n\n\n<p>You can request correction of inaccurate or incomplete personal data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.3 Right to Erasure (Art. 17)<\/strong><\/h3>\n\n\n\n<p>You may request deletion of your personal data under certain conditions (\u201cright to be forgotten\u201d).<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.4 Right to Restriction of Processing (Art. 18)<\/strong><\/h3>\n\n\n\n<p>You may request that we limit the processing of your personal data.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.5 Right to Data Portability (Art. 20)<\/strong><\/h3>\n\n\n\n<p>You may request your data in a structured, commonly used, machine-readable format.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.6 Right to Object (Art. 21)<\/strong><\/h3>\n\n\n\n<p>You may object to processing based on legitimate interests or for direct marketing.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>3.7 Right to Withdraw Consent (Art. 7(3))<\/strong><\/h3>\n\n\n\n<p>Where processing is based on consent, you may withdraw it at any time.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>4. How to Exercise Your Rights<\/strong><\/h2>\n\n\n\n<p>To exercise your GDPR rights, please contact us:<\/p>\n\n\n\n<p><strong>Data Protection Contact<\/strong><br><strong>Helvilux<\/strong><br><strong>Email:<\/strong> <em>helvilux@gmail.com<\/em><br><strong>Phone:<\/strong> <em>+41 78 250 <\/em>36 99<\/p>\n\n\n\n<p>We respond within one month, extendable by two months depending on request complexity.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>5. Data Protection Measures<\/strong><\/h2>\n\n\n\n<p>We implement appropriate technical and organizational measures, including:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Encrypted transmission (HTTPS)<\/li>\n\n\n\n<li>Secure and encrypted data storage<\/li>\n\n\n\n<li>Access control and authentication<\/li>\n\n\n\n<li>Regular security updates<\/li>\n\n\n\n<li>Logging and monitoring for security<\/li>\n\n\n\n<li>Data minimization practices<\/li>\n\n\n\n<li>Staff awareness and training (if applicable)<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>6. Data Processing Agreements<\/strong><\/h2>\n\n\n\n<p>When we work with third-party service providers, we ensure they:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Offer sufficient guarantees of GDPR compliance<\/li>\n\n\n\n<li>Sign Data Processing Agreements (DPAs) under Art. 28<\/li>\n\n\n\n<li>Process data only on our instructions<\/li>\n\n\n\n<li>Maintain strong security practices<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>7. International Data Transfers<\/strong><\/h2>\n\n\n\n<p>If personal data is transferred outside the EEA, we apply one or more of the following safeguards:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Standard Contractual Clauses (SCCs)<\/li>\n\n\n\n<li>Adequacy decisions<\/li>\n\n\n\n<li>Additional technical and organizational safeguards as required<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>8. Data Breach Notification<\/strong><\/h2>\n\n\n\n<p>In the event of a personal data breach, we will:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Notify the relevant supervisory authority within 72 hours when required<\/li>\n\n\n\n<li>Inform affected individuals if there is a high risk to their rights<\/li>\n\n\n\n<li>Document all breaches in accordance with Art. 33 GDPR<\/li>\n\n\n\n<li>Implement measures to reduce further risk<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>9. Data Retention<\/strong><\/h2>\n\n\n\n<p>We retain personal data only as long as necessary:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Contact \/ Communication Data:<\/strong> Up to 24 months<\/li>\n\n\n\n<li><strong>Account or Service Data:<\/strong> Duration of service + statutory retention<\/li>\n\n\n\n<li><strong>Technical Logs \/ Security Logs:<\/strong> Typically 12\u201324 months<\/li>\n\n\n\n<li><strong>Marketing Data:<\/strong> Until consent withdrawal or 3 years of inactivity<\/li>\n\n\n\n<li><strong>Cookies:<\/strong> As defined in the Cookie Policy<\/li>\n<\/ul>\n\n\n\n<p>(You can adjust these periods depending on your actual practices.)<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>10. Children\u2019s Data<\/strong><\/h2>\n\n\n\n<p>Helvilux does not target or knowingly collect personal data from individuals under 16.<br>If such data is discovered, it will be deleted unless parental consent is provided.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>11. Supervisory Authority<\/strong><\/h2>\n\n\n\n<p>You may lodge a complaint with your local supervisory authority or with Luxembourg\u2019s authority:<\/p>\n\n\n\n<p><strong>Commission Nationale pour la Protection des Donn\u00e9es (CNPD)<\/strong><br>15, Boulevard du Jazz<br>L-4370 Belvaux, Luxembourg<br>Phone: (+352) 26 10 60 &#8211; 1<br>Email: <a>info@cnpd.lu<\/a><br>Website: cnpd.public.lu<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>12. Contact Information<\/strong><\/h2>\n\n\n\n<p><strong>Helvilux<\/strong><br><strong>Data Protection Contact<\/strong><br><strong>Address:<\/strong> Luxembourg, European Union<br><strong>Email:<\/strong> <em>helvilux@gmail.com<\/em><br><strong>Phone:<\/strong> <em>+41 78 250 36 99<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Last Updated: December 2025 1. Our Commitment to GDPR Helvilux is fully committed to complying with the General Data Protection Regulation (GDPR) and maintaining the highest standards of data protection for all visitors, users, and clients, particularly within the European Union. 2. Legal Basis for Data Processing We process personal data based on the following [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"inline_featured_image":false,"footnotes":""},"class_list":["post-950","page","type-page","status-publish"],"_links":{"self":[{"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/pages\/950","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/comments?post=950"}],"version-history":[{"count":0,"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/pages\/950\/revisions"}],"wp:attachment":[{"href":"https:\/\/helvilux.lu\/index.php\/wp-json\/wp\/v2\/media?parent=950"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}