Your data protection rights under the General Data Protection Regulation
geyser-beam is committed to protecting the personal data of all our visitors and clients, including those residing in the European Union (EU) and European Economic Area (EEA). We comply with the General Data Protection Regulation (GDPR) and ensure that your data is processed lawfully, fairly, and transparently.
geyser-beam acts as the data controller for personal information collected through this website. As the data controller, we determine the purposes and means of processing your personal data and are responsible for ensuring compliance with applicable data protection laws.
Contact details:
geyser-beam
42 Bushveld Road
Hoedspruit, Limpopo 1380
South Africa
Email: [email protected]
We process your personal data based on one or more of the following legal grounds:
If you are located in the EU or EEA, you have the following rights regarding your personal data:
You have the right to request a copy of the personal information we hold about you and to receive information about how it is processed.
You have the right to request that we correct any inaccurate or incomplete personal information we hold about you.
You have the right to request that we delete your personal data in certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected.
You have the right to request that we restrict the processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.
Where we rely on your consent to process your personal data, you have the right to withdraw that consent at any time. This will not affect the lawfulness of any processing carried out before you withdraw your consent.
As we are based in South Africa, your personal data may be transferred to and processed in a country outside the EU/EEA. When we transfer personal data outside these regions, we ensure appropriate safeguards are in place to protect your data, such as standard contractual clauses approved by the European Commission.
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected and to comply with legal obligations. Retention periods vary depending on the type of data and the purposes for which it is processed.
We implement appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including encryption, access controls, and regular security assessments.
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority without undue delay and, where feasible, within 72 hours of becoming aware of the breach. Where the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly.
To exercise any of your rights under GDPR, please contact us at [email protected]. We will respond to your request within one month. In certain circumstances, we may extend this period by two further months, in which case we will inform you of the extension and the reasons for it.
If you believe that we have not complied with your data protection rights, you have the right to lodge a complaint with a supervisory authority. If you are located in the EU/EEA, you can contact your local data protection authority.
We may update this GDPR compliance notice from time to time. Any changes will be posted on this page with an updated revision date.
Last updated: January 2024