RockCloud GDPR Compliance Statement

  • What is the GDPR?

    The General Data Protection Regulation (GDPR) is an EU regulation designed to harmonise data privacy law across Europe and to enforce stricter privacy requirements. It aims to give individuals better protection and to reshape the way organisations handle personal data.

  • Does it apply to me?

    The GDPR applies to any company, website or organisation anywhere in the world that processes the personal data of EU residents. If your company processes, stores or transmits the personal data of EU residents, you need to comply with the regulation.

  • Because RockCloud operates a global network, the GDPR is likely to affect you in some way, and we encourage every user to study the regulation thoroughly. RockCloud is fully committed to supporting your compliance: anonymisation features are in place across our platform, and we ensure that user-identifiable data is neither collected nor processed wherever this can be avoided.

  • Automatic Collection of Non-Personal Information (Visitors)

    When you visit our website we may collect non-personal data. For example, we collect data on a non-personally-identifiable basis, such as randomly assigned numeric identifiers relating to general use of the Site. Our partners may collect further non-personal data for statistical purposes. We use cookies to personalise content and advertising, to provide social media features and to analyse our traffic. All data is processed in accordance with applicable law, including the GDPR. We do so for the following purposes:

    • Statistical purposes
    • Marketing
    • Social media features
  • Automatic Collection of Personal Information (Customers and Signed-in Users)

    We may record personal data automatically, for instance by programmatic means, and we may associate information recorded in this way with the personal data of a specific individual. We may also use cookies to store personal data, or associate information stored in cookies with the personal data of a specific individual. All data is processed in accordance with applicable law, including the GDPR. We do so for the following purposes:

    • Technical administration of the website
    • Research and development
    • Customer administration
    • Marketing
  • Data Collection and Statement of Purpose

    We collect the personal data that you may volunteer while using the Site. We do not collect information about visitors from other sources, such as public records or bodies, or private organisations. We do not collect or use personal data for any purpose other than the purposes stated on the Site. If we wish to use your personal data for a new purpose, we offer you the means to consent to that new purpose by indicating it in a box at the point on the Site where the personal data is collected.

  • Children's Privacy

    We do not knowingly collect personal data from or about children. Children are not eligible to use the Site and must not submit any personal information to us.

    In addition, to ensure that children's privacy is respected on the Site, we delete and destroy any information we may have collected about a child.

  • Disclosure and Visitor Choice

    We disclose visitors' personal data to our affiliates or to other organisations. Where we disclose your personal data for the same purposes as those indicated on the Site at which the data was collected, we offer you the means to opt out of that disclosure by indicating it in a box at the point on the Site where the personal data is collected.

    Where we disclose your personal data for a purpose other than the one for which it was collected on the Site, we offer you the opportunity to consent to that disclosure by indicating it in a box at the point on the Site where the personal data is collected.

  • Confidentiality and Security

    We offer you the option of sending us the following types of personal data using a secure transmission method:

    • Primary personal data (such as name and contact details)
    • Identifiers (such as credit card details and site passwords)

    We have implemented security policies, rules and technical measures to protect the personal data under our control against:

    • Unauthorised access
    • Improper use or disclosure
    • Unauthorised modification
    • Unlawful destruction or accidental loss

    All our employees and data processors who have access to, and are associated with, the processing of personal data are obliged to respect the confidentiality of visitors' personal data.

    Please note that personal data may have to be disclosed pursuant to statutory reporting and disclosure requirements, and in response to judicial process, subpoenas, warrants or other government orders and legal proceedings.

  • Accessing the Personal Data We May Hold About You

    You can ask us whether we are keeping personal data about you by sending an email to [email protected].

    On request, made by email to [email protected], we will provide you within 30 days with a machine-readable, structured copy of the personal data we hold about you. Proof of identity is required, and we verify the email address associated with your request.

    We allow you to challenge the data we hold about you and, where appropriate, you may have that data:

    • Erased
    • Corrected or amended
    • Made fully accessible to you

    We reserve the right to refuse to provide a visitor with a copy of their personal data. We do, however, allow you to challenge any decision to refuse to provide you with a copy of your personal data.

  • Privacy Support

    If you have any questions or concerns about our privacy policy, please contact us at [email protected].