GDPR Compliance Statement

Effective Date: July 7, 2023

  1. Introduction:

    This GDPR Compliance Statement outlines how the TinyTime (the "website") collects, processes, and protects personal data in compliance with the General Data Protection Regulation (GDPR). We are committed to safeguarding the privacy and data protection rights of our users.

  2. Data Controller and Data Processor:

    The data controller for the personal data collected through the website is TinyTime, located at United States. As the data controller, we determine the purposes and means of processing personal data. Any data processing performed by third-party service providers on our behalf will be governed by a written agreement to ensure GDPR compliance.

  3. Personal Data Collection and Processing:

    a. Data Collected: The website may collect and process the following categories of personal data:

    • User identification information (name, email address, etc.).

    • Technical data (IP address, browser type, device information, etc.).

    • User-generated content (timers, preferences, etc.).

    • Any other data provided voluntarily by users during their interactions with the website.

    b. Purpose of Processing: Personal data is collected and processed for the following purposes:

    • Providing access to the functionalities of the website.

    • Responding to user inquiries and support requests.

    • Improving the user experience and performance of the website.

    • Complying with legal obligations.

    c. Lawful Basis: Personal data is processed based on one or more of the following lawful bases:

    • User consent: Users provide explicit consent for data processing when using the website.

    • Contractual necessity: Processing is necessary to fulfill the contract between the user and the website.

    • Legitimate interests: Processing is necessary for legitimate interests pursued by the website or a third party.

  4. Data Storage and Retention:

    a. Personal data is stored securely on servers located within [Data Storage Location], which may be operated by third-party service providers. We implement appropriate technical and organizational measures to protect personal data from unauthorized access, alteration, disclosure, or destruction.

    b. Personal data is retained only for as long as necessary to fulfill the purposes for which it was collected or as required by applicable laws and regulations.

  5. User Rights:

    Users of the website have the following rights concerning their personal data:

    • Right to access: Users can request access to their personal data processed by the website.

    • Right to rectification: Users can request the correction of inaccurate or incomplete personal data.

    • Right to erasure: Users can request the deletion of their personal data under certain circumstances.

    • Right to restrict processing: Users can request restrictions on the processing of their personal data.

    • Right to data portability: Users can request to receive their personal data in a structured, commonly used, and machine-readable format.

    • Right to object: Users can object to the processing of their personal data in certain situations.

  6. Data Sharing and Disclosure:

    a. We do not sell or share personal data with third parties for direct marketing purposes.

    b. We may share personal data with trusted third-party service providers who assist us in operating the website and delivering the services to users. These service providers are bound by confidentiality agreements and are prohibited from using personal data for any other purpose.

  7. International Data Transfers:

    Personal data collected through the website may be transferred to and processed in countries outside the European Economic Area (EEA). In such cases, we will ensure that appropriate safeguards are implemented to protect the data as required by GDPR.

  8. Security Incidents:

    In the event of a data breach or security incident affecting personal data, we will promptly investigate the incident and, if required, notify the relevant supervisory authority and affected users in accordance with GDPR.

  9. Contact Us:

    If you have any questions, concerns, or requests regarding GDPR compliance or the website's data practices, you may contact us at TinyTime.

By using the TinyTime, you acknowledge and agree to comply with this GDPR Compliance Statement and the website's Privacy Policy.