Privacy policy

We are the data controller for the processing of the personal data we process about our customers and business partners. You can find our contact details below.

Bazinga Platano ApS

Copenhagen, Denmark

Company registration number: 43597728

It is not a requirement that our company has an external DPO, but if you have any questions about the processing of your personal data, you can contact us via privacy@micdobro.com.

Processing activities

As a data controller according to GDPR, we have the following processing activities.

Visiting our website

When you visit our website, we use cookies for the website to function - in fact it's just one cookie regarding the language version.

Communication with potential customers

If you have questions about our site or want to learn more about our services, you can contact us via: privacy@micdobro.com

We will process your personal data so that we can enter into a dialogue with you, for example to answer questions about our services. We only process the information you provide us with in connection with our communication.

We will typically process the following general information: name, email, phone number.

Our legal basis for processing this personal data is Article 6(1)(f) of the General Data Protection Regulation.

We will delete our communication with you when it is clear whether you want our services or not.

Should there be a need to store your personal data for a longer period of time in a special case, this may be the case.

Customers

We need to communicate with our customers to ensure that the service is delivered correctly. In doing so, we may process information about name, address, services, special agreements, payment information and the like.

The legal basis for processing this personal data is Article 6(1)(b) of the General Data Protection Regulation.

Once the service has been delivered and any outstanding issues have been resolved, we will immediately delete the personal data.

Newsletters

We have a newsletter that is voluntary to sign up for - and you can always unsubscribe again.

The purpose of the newsletter is to send subscribers emails with new information from the company, which may include new content on the website, advertising of our services.

We will only send you emails if you have given your active consent to this. This initially requires you to provide your email address, to which we will then send an email so that you can confirm your subscription. In this way, we ensure that you have actually signed up for the newsletter yourself, i.e. given active consent.

Our legal basis for processing your personal data (i.e. the email address) in connection with the newsletter will be Article 6(1)(a) of the General Data Protection Regulation.

We will process your personal data as long as you are still subscribed to the newsletter. If you unsubscribe from the newsletter, we will also stop sending it to you. If we have not sent you a newsletter for 1 year, your consent will lapse due to our inactivity.

If you unsubscribe from the newsletter, we will store your previous consent for 2 years after it was last used due to limitation requirements, cf. the Consumer Ombudsman's spam guide section 11.3.

Bookkeeping

We must save all accounting documents, cf. the Danish Bookkeeping Act. This means that we store invoices and similar documents for accounting purposes. This may include general personal data such as name, address, service description.

Our legal basis for processing personal data for bookkeeping purposes is Article 6(1) of the General Data Protection Regulation.

We store this information for a minimum of 5 years after the current financial year has ended.

Data processors

Few can do everything themselves, and the same goes for us. We therefore have partners and use suppliers, some of whom may be data processors.

External suppliers may, for example, provide systems to organise our work, services, consulting, IT hosting or marketing.

  • Effihub ApS (DK) Time registration, customer portal, CRM
  • VISMA A/S (DK): Bookkeeping
  • Stripe (IE): Credit card payments
  • Mailerlite (US): Newsletter software (claims GDPR compliance)
  • Amazon / AWS (US): IT/website (claims compliance; DC in Germany)
  • Digital Ocean (US): IT/website (claims compliance; DC in Germany)
  • Wide Angle Analytics (DE): Analytics
  • SMTP2GO: Transactional emails

It is our responsibility to ensure that your personal data is processed properly. Therefore, we place high demands on our business partners, and our partners must guarantee that your personal data is protected.

We therefore enter into agreements with companies (data processors) that handle personal data on our behalf to increase the security of your personal data.

Disclosure of personal data

We do not disclose your personal data to third parties.

Profiling and automated decisions

We do not engage in profiling or automated decision-making.

Third-country transfers

We generally use data processors in the EU/EEA or who store data in the EU/EEA.

In some cases this is not possible, in which case we may use data processors outside the EU/EEA if they can provide your personal data with adequate protection.

Security of processing

We keep the processing of personal data secure by implementing appropriate technical and organisational measures.

We have conducted risk assessments of our processing of personal data and have subsequently implemented appropriate technical and organisational measures to increase the security of processing.

One of our most important measures is to keep our employees updated on GDPR through ongoing awareness training, GDPR courses, and by reviewing our GDPR procedures with employees.

The rights of data subjects

Under the General Data Protection Regulation, you have a number of rights in relation to our processing of information about you.

If you want to exercise your rights, please contact us so we can help you with this.

Right to see information (right of access)

You have the right to access the data we process about you as well as a number of additional information.

Right to rectification (rectification)

You have the right to have inaccurate information about yourself corrected.

Right to erasure

In special cases, you have the right to have data about you erased before the time of our general general erasure.

Right to restriction of processing

In certain cases, you have the right to have the processing of your personal data restricted. If you have the right to have the processing restricted, we may in future only process the data - except for storage - with your consent, or for the establishment, exercise or defence of legal claims, or to protect a person or important public interests.

Right to object

In certain cases, you have the right to object to our otherwise lawful processing of your personal data. You can also object to the processing of your data for direct marketing purposes.

Right to transmit data (data portability)

In certain cases, you have the right to receive your personal data in a structured, commonly used and machine-readable format and to have this personal data transferred from one data controller to another without hindrance.

You can read more about your rights in the Danish Data Protection Agency's guide on the rights of data subjects, which you can find at www.datatilsynet.dk.

Withdrawal of consent

When our processing of your personal data is based on your consent, you have the right to withdraw your consent.

Complaint to the Danish Data Protection Agency

You have the right to lodge a complaint with the Danish Data Protection Agency if you are dissatisfied with the way we process your personal data. You can find the Danish Data Protection Agency's contact details at www.datatilsynet.dk.

In general, we encourage you to read more about GDPR so that you are updated on the rules.