GDPR Compliance

Last updated: January 1, 2025

1. Your Rights Under GDPR

As a data subject under the General Data Protection Regulation (GDPR), you have the following rights:

  • Right to Access: Request access to your personal data
  • Right to Rectification: Correct inaccurate personal data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restrict Processing: Limit how we process your data
  • Right to Data Portability: Receive your data in a structured format
  • Right to Object: Object to processing of your personal data
  • Right to Withdraw Consent: Withdraw consent at any time

2. Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Contract Performance: To provide our summarization services
  • Legitimate Interest: To improve our services and prevent fraud
  • Consent: For marketing communications and analytics
  • Legal Obligation: To comply with applicable laws

3. Data We Collect

We collect and process the following categories of personal data:

  • Identity Data: Name, email address
  • Contact Data: Email address, communication preferences
  • Technical Data: IP address, browser type, device information
  • Usage Data: How you use our service, features accessed
  • Content Data: Files and content you upload for processing

4. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:

  • Account Data: Until account deletion or 3 years of inactivity
  • Content Data: Deleted immediately after processing
  • Usage Data: Aggregated and anonymized after 2 years
  • Marketing Data: Until consent is withdrawn

5. Data Transfers

We may transfer your personal data outside the European Economic Area (EEA) to provide our services. When we do so, we ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses approved by the European Commission
  • Adequacy decisions for countries with adequate data protection
  • Certification schemes and codes of conduct

6. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including:

  • Encryption of data in transit and at rest
  • Regular security assessments and audits
  • Access controls and authentication measures
  • Staff training on data protection

7. Exercising Your Rights

To exercise any of your GDPR rights, please contact us at support@zenoassist.com with the following information:

  • Your full name and email address
  • The specific right you wish to exercise
  • Any relevant details about your request

We will respond to your request within 30 days. In some cases, we may need to verify your identity before processing your request.

8. Data Protection Officer

For data protection matters, you can contact our Data Protection Officer at support@zenoassist.com

9. Supervisory Authority

You have the right to lodge a complaint with a supervisory authority if you believe we have not complied with GDPR requirements. You can contact your local data protection authority or the authority in the country where our main establishment is located.

10. Contact Information

For any questions about GDPR compliance or data protection, please contact us at support@zenoassist.com