TimeTerminals Personal Data Management (GDPR)
TimeTerminal’s purpose of handling personal data (GDPR)
At TimeTerminal Sweden AB (TT) personal data is retained to a limited extent and a use that can only be seen as a natural use, as long as they are required for TimeTerminal to be effective in its actions towards its customers and suppliers.
There is nothing in the personal data that can be considered sensitive and have been provided to TimeTerminal in situations requiring contact information to the person in order for TimeTerminal to provide the expected service requested.
The following groups of personal data are available within TimeTerminal:
In general, it can be said that it is a name with associated contact information collected for TT to provide expected service.
Delivery of products
When ordering products, information associated with a person is required for these products to be distributed to the customer.
The information is name, phone number and e-mail address. These are on a PDF document that is shredded after the product has reached the customer and invoice created.
Service and Support
When the customer reports a case on the RMA form, contact details are provided to the notifying person. The information provided is the name, phone number and e-mail address. When the customer completes the RMA form, they shall consent to the storage of personal data.
Personal data will be deleted half yearly in normal cases. However, there are exceptions to a few very large customers who have a designated contact and their data is not deleted.
Reference on invoices
In order for invoices to be paid by the customer, there must be a name for reference, which is not deemed necessary.
The contacts at re-sellers are in a central contact list and consent has been obtained. In cases where any other person at a re-sellers contacts, that personal data will not be stored.
For TT employees data is collected in registers for normal business routines. Within TT there is a attendance register containing pictures of employees who can be seen as non-essential personal information. These images are in the registry because they are used in an internal system that shows how TT’s own products can be used.For all existing employees, a consent form has been prepared for approval signature.
Person information with the DisplayOnline system
Within the DisplayOnline business area, personal data is linked to properties that use the system’s functionality. The information in this case is name, e-mail address, telephone and address.
However, it is TT’s customer who is responsible for personal data, which means that TT signs personal data contract with the customer or re-seller.
Responsibility for personal data management
Within TT, the management consists of the CEO and Deputy CEO, who are responsible for ensuring that these routines are complied with and, if necessary, revised.
All staff at the time of GDPR enforcement have been informed of these directives and kept regularly informed of changes and updates of these.
If any person wishes information regards the TT registry contents pertaining to them self, a written request must be sent by post to TimeTerminal Sweden AB*, which contains the name, home address and social security number, ID or Passport number of the person requesting.
Based on that request, TT will respond by mail, listing what information has been stored. After the information has been sent to the recipient, the request is cancelled.
*TimeTerminal Sweden AB
191 49 Sollentuna