GDPR Information Notice
This notice summarizes how CMPROM approaches data protection rights and GDPR responsibilities for website visitors, prospects and clients.
1. Roles
CMPROM may act as controller for its own website, inquiries, commercial communication and support operations. For client projects, CMPROM may act as processor where it processes personal data on documented client instructions.
2. Principles
CMPROM applies data minimization, purpose limitation, transparency, confidentiality, storage limitation and appropriate security measures.
3. Data Subject Rights
- access;
- rectification;
- erasure;
- restriction;
- data portability;
- objection;
- withdrawal of consent where processing is based on consent;
- complaint to a competent supervisory authority.
4. Exercising Rights
Requests may be sent to contact@cmprom.com. CMPROM may verify identity before responding and may refuse or limit requests where permitted by law.
5. Romanian Supervisory Authority
Users may contact the Romanian supervisory authority, Autoritatea Nationala de Supraveghere a Prelucrarii Datelor cu Caracter Personal (ANSPDCP), where they believe their rights have been infringed.