Arivu Labs Limited – Data Policy
Applicable Law: | means any applicable law or regulation of the European Union (“EU”), the European Economic Area (“EEA”) or any of the EU or EEA’s member states from time to time (provided that, in the event of any conflict between the foregoing, the laws and regulations of the Republic of Ireland shall prevail for the purposes of this definition); |
Appropriate Safeguards: | means such legally enforceable mechanism(s) for Transfers of Personal Data as may be permitted under Data Protection Laws from time to time; |
Controller: | has the meaning given to that term in Data Protection Laws; |
Data Protection Laws: | means all Applicable Laws relating to the processing, privacy and/or use of Personal Data, as applicable to either party or the Services, including the following laws to the extent applicable in the circumstances: (a) the GDPR; (b) the Data Protection Act 2018; (c) any laws which implement any such laws; and (d) any laws which replace, extend, re-enact, consolidate or amend any of the foregoing; |
Data Protection Losses: | means all liabilities, including all: (a) costs (including legal costs), claims, demands, actions, settlements, interest, charges, procedures, expenses, losses and damages (including relating to material or non-material damage); and (b) to the extent permitted by Applicable Law: (i) administrative fines, penalties, sanctions, liabilities or other remedies imposed by a Supervisory Authority; (ii) compensation which is ordered by a Supervisory Authority to be paid to a Data Subject; and (iii) the reasonable costs of compliance with investigations by a Supervisory Authority; |
Data Subject: | has the meaning given to that term in Data Protection Laws; |
Data Subject Request: | means a request made by a Data Subject to exercise any rights of Data Subjects under Data Protection Laws; |
GDPR: | means the General Data Protection Regulation, Regulation (EU) 2016/679; |
International Recipient: | means the organisations, bodies, persons and other recipients to which Transfers of the Protected Data are prohibited under paragraph 8.1 without the Customer’s prior written authorisation; |
Onward Transfer: | means a Transfer from one International Recipient to another International Recipient; |
Personal Data: | has the meaning given to that term in Data Protection Laws; |
Personal Data Breach: | means any breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, any Protected Data; |
Platform Data: | means Personal Data in the Arivu Platform; |
processing: | has the meanings given to that term in Data Protection Laws (and related terms such as process have corresponding meanings); |
Processing Instructions: | has the meaning given to that term in paragraph 4.1(a); |
Processor: | has the meaning given to that term in Data Protection Laws; |
Protected Data: | means Personal Data in the Customer Data; |
Sub-Processor: | means another Processor engaged by Arivu Labs Limited for carrying out processing activities in respect of the Protected Data on behalf of the Customer; |
Supervisory Authority: | means any local, national or multinational agency, department, official, parliament, public or statutory person or any government or professional body, regulatory or supervisory authority, board or other body responsible for administering Data Protection Laws; |
Transfer: | bears the same meaning as the word ‘transfer’ in Article 44 of the GDPR. Without prejudice to the foregoing, this term also includes all Onward Transfers. Related expressions such as “Transfers”, “Transferred” and “Transferring” shall be construed accordingly; and |
Ireland Data Protection Laws: | means Data Protection Laws that form part of the laws of the Republic of Ireland from time to time. |
We hereby agree that, for the Protected Data, you are the Controller and we are the Processor. Nothing in our Agreement relieves you of any responsibilities or liabilities under any Data Protection Laws.
To the extent you are not sole Controller of any Protected Data you warrant that you have full authority and authorisation of all relevant Controllers to instruct us to process the Protected Data in accordance with our Agreement.
We shall process Protected Data in compliance with the obligations of Processors under Data Protection Laws in respect of the performance of our obligations under our Agreement.
You shall ensure that you and each User shall at all times comply with:
3. You warrant, represent and undertake, that at all times:
provided you shall pay us for all work, time, costs and expenses incurred in connection with providing the assistance in this paragraph 7.2.
without the other party’s prior written authorisation except where it is required to Transfer the Protected Data by Applicable Law (and shall inform the other party of that legal requirement before the Transfer, unless those laws prevent it doing so).
When it is no longer reasonably necessary for us to process any element of Protected Data, we shall dispose of the relevant Protected Data as soon as reasonably practicable. We shall have no liability (howsoever arising, including in negligence) for any deletion or destruction of any such Protected Data undertaken in accordance with our Agreement.
Subject-matter of processing:
Performance of the respective rights and obligations under our Agreement and delivery and receipt access to the Arivu Labs Limited Platform under our Agreement.
Duration of the processing:
Until the earlier of final termination or final expiry of our Agreement, except as otherwise expressly stated in our Agreement;
Nature and purpose of the processing:
Processing in accordance with the rights and obligations of the parties under our Agreement;
Processing as reasonably required to provide access to the Arivu Labs Limited Platform; and
Processing as initiated, requested or instructed by Users in connection with their use of the the Arivu Labs Limited Platform, or by you, in each case in a manner consistent with our Agreement;
Type of Personal Data:
Legal and other names, titles, positions, e-mail addresses, phone numbers, other contact details;
Categories of Data Subjects:
Users, employees and other members of your staff.