EU Privacy Notice for our Merchants and other Business Related Personal Data
This notice (“Notice”) describes the steps AllSecure Global (“we” or “us”) takes to protect the personal data that we process about merchants (our customers) and other business related personal data. AllSecure Global is committed to the protection of the personal data that we process about you in line with the data protection principles set out in the European Union’s (“EU”) General Data Protection Regulation 2016/679 (“GDPR”). The controller in respect of your personal data is AllSecure Global d.o.o., Dunajska cesta 136, 1000 Ljubljana, Slovenia. You can contact us using the following email address: [email protected].
We may source, use and otherwise process your personal data in different ways. In all cases we are committed to protecting the personal data that we process. In each of the sections listed below, we describe how we obtain your personal data and how we will treat it.
We may obtain your personal data from the following sources:
We may collect the following categories of personal data relating to employees, officers, authorised signatories and other associated individuals of our merchants and vendors. This may include:
For the purposes of anti-money laundering requirements, we may also collect the following:
We may use your personal data to:
Our legitimate interests in doing so are:
If you object to us using your contact details for these purposes, including direct marketing, please send an email to us using the following email address: [email protected].
We may obtain your personal data from the following sources:
We may use your personal data to:
Our legitimate interests in doing so are:
If you object to us using your personal data for these purposes, including direct marketing, please send an email to us using the following email address: [email protected]
We do not sell your personal data to third parties.
We may share your personal data with our affiliates, by which we mean a person or entity that directly or indirectly controls, is controlled by, or is under common control with AllSecure Global. “Control,” for purposes of this definition, means direct or indirect ownership or control of more than 50% of the voting interests of the subject entity.
We may disclose information about you to organisations that provide a service to us, on the understanding that they will keep the information confidential and will comply with the GDPR and other relevant data protection laws.
We may share your information with the following types of service providers:
We may transfer your personal data to potential purchasers and their advisors, subject to appropriate confidentiality obligations, in the event we decide to dispose of all or parts of our business.
We operate an AllSecure Facebook page. The controller for the processing is AllSecure Global d.o.o. There, we process information about your activities, such as likes, posts or comments. In addition, we receive aggregate (anonymous) statistics generated by Facebook and logged on Facebook servers when people interact with pages and their associated content.
When processing personal data on our Facebook Pages as part of Facebook Page Insights, we are joint controllers with Facebook (Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland). This means that Facebook and we jointly determine the purposes and means of this processing.
We receive anonymous statistics from Facebook about how people interact with our pages and the content associated with them. We have no influence on how Facebook processes your data. The creation of page insights by Facebook may be based on the processing of personal data. According to its own information, Facebook processes, among other things, information about what content you view or how you interact with that content. The information actually collected by Facebook depends on whether and how you use Facebook products.
Facebook assumes all obligations under the GDPR for the processing of Insights data, including fulfilling the right of access to data processing and the right to erasure. If you exercise your data subject rights regarding Insights data with us, we are contractually obligated to forward all relevant information regarding such requests to Facebook within 7 days.
For more information about Facebook Page Insights and our shared responsibility for data processing with Facebook, please click here.
You can find out more information about data use by Facebook (Meta Platforms) as well as setting and objection options on the Facebook (Meta Platforms) websites here.
We operate an AllSecure LinkedIn page. The controller for the processing is AllSecure Global d.o.o. There, we process information about your activities, such as likes, posts or comments. In addition, we receive aggregate (anonymous) statistics generated by LinkedIn and logged on LinkedIn servers when people interact with pages and their associated content. We also use the marketing offer “LinkedIn Ads” to address specific target groups.
When processing personal data on our LinkedIn pages as part of LinkedIn Page Insights, we are joint controllers with LinkedIn (LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland). This means that LinkedIn and we jointly determine the purposes and means of this processing.
LinkedIn assumes all obligations under the GDPR for the processing of Insights data, including the fulfillment of the right of access to data processing and the right to erasure. If you exercise your data subject rights regarding Insights data with us, we are contractually obligated to forward all relevant information regarding such requests to LinkedIn within 3 days.
For more information about LinkedIn Page Insights and our joint responsibility for data processing with LinkedIn, please click here:
You can find out more information about data use by LinkedIn, as well as setting and objection options, on LinkedIn’s websites here.
We operate an AllSecureTwitter page. The controller of the processing is AllSecure Global d.o.o. There, we process information about your activities, such as likes, posts or comments. In addition, we receive aggregate (anonymous) statistics generated by Twitter (Twitter International Unlimited Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07 Irland) and logged on Twitter servers when people interact with pages and their associated content.
For more information about Twitter Insights and our joint responsibility for data processing with LinkedIn, please click here.
If and when transferring your personal data outside the EU or European Economic Area (“EEA”), we will only do so using one of the following safeguards:
International transfers to our affiliates are governed by EU Commission-approved Standard Contractual Clauses for Controllers and, where relevant, for Processors.
We may also transfer your data to third-party vendors outside the EU, such as our customer relationship management system and due diligence providers. Where we do so, the Standard Contractual Clauses or other safeguards approved by the EU Commission are in place to safeguard that personal data.
Copies of these agreements may be obtained by contacting us using the following email address: [email protected]
The GDPR provides you with certain rights in relation to the processing of your personal data, including to:
These rights are not absolute and are subject to various conditions under:
If at any time you decide that you do not want to be contacted for any purpose or if you would like to exercise any of your rights as set out above, you can contact us by emailing the following email address: [email protected]
We store your personal data just as long as necessary for the purposes for which they are processed. Beyond that, we are potentially obligated to store your data for longer in accordance to legal retention periods.
Apart from that, we store your personal data for a time period beyond the above-mentioned, as long as legal claims out of the relationship between you and us are enforceable and only if such litigation becomes apparent, or respectively until the definitive settlement of an incident or court proceedings. Such processing is based on legitimate interests for the establishment, exercise or defence of legal claims.
Within the course of the development of our services and internet, we will amend our Privacy Policy regularly. We will publish amendments on our Website. Therefore, you should visit this Privacy Policy regularly to be informed about the current status.
Version: 07. March 2024
Established in 2001. AllSecure became a global Payment Service Provider dedicated to providing tailor-made online payment solutions that solve issues and suite the requirements of its clients.
Our PCI DSS Level 1 payment gateway processes in multiple market and currencies through single platform in a smart and cost-effective way. The aim is to optimize the clients’ payment solutions using the best gateway technologies, world class acquires along with our in-depth payment knowledge and professional services.
© 2005 – 2024 AllSecure – All rights reserved.