Data Protection & Privacy

GDPR – General Data Protection Regulation

What is GDPR?

GDPR stands for General Data Protection Regulation. It is a data protection law in the European Union that gives individuals greater control over their personal data and requires organizations to handle that data lawfully, fairly and transparently.

GDPR illustration with a shield surrounded by EU stars, a lock, a checked document and a user data icon

Key Principles of GDPR

Lawfulness, Fairness & Transparency

Personal data should be processed lawfully, fairly and transparently.

Purpose Limitation

Personal data should be collected for specified, explicit and legitimate purposes.

Data Minimization

Only personal data that is necessary for the intended purpose should be collected and processed.

Accuracy

Personal data should be accurate and kept up to date where necessary.

Storage Limitation

Personal data should be retained only for as long as necessary for the purpose for which it was collected.

Integrity & Confidentiality

Appropriate technical and organizational safeguards should be used to protect personal data.

Your Rights Under GDPR

Where GDPR applies, individuals may have rights including:

  • Right of access
  • Right to rectification
  • Right to erasure
  • Right to restrict processing
  • Right to data portability
  • Right to object
  • Rights relating to certain automated decision-making

These rights are subject to the requirements and exceptions provided by applicable data protection law.

Who Does GDPR Apply To?

GDPR applies primarily to organizations processing personal data in the European Economic Area, and can also apply to organizations outside Europe when they offer goods or services to, or monitor the behavior of, individuals covered by GDPR.

TrueFin and GDPR

TrueFin is committed to supporting responsible data handling and applying appropriate privacy and security practices where applicable. Where GDPR applies to our processing activities, we aim to handle personal data in accordance with relevant legal requirements and contractual obligations.

  • Role-based data access controls
  • Appropriate technical security measures
  • Privacy-aware handling of personal information
  • Aiming to minimize data collected to what is necessary
  • Responding to legitimate user requests
  • Retention controls where applicable

Privacy or GDPR Questions?

If you have a privacy or GDPR-related question, please contact TrueFin through our official support or sales channels.

Talk to Sales: 0334 5001244
Chat with us