GDPR Compliance
How Propelr ensures compliance with the General Data Protection Regulation (GDPR)
Our GDPR Commitment
Propelr is fully committed to protecting your privacy and ensuring compliance with the General Data Protection Regulation (GDPR). We have implemented comprehensive data protection measures and processes to safeguard your personal information.
GDPR Compliant
We have implemented all necessary technical and organizational measures to ensure full compliance with GDPR requirements.
GDPR Key Principles We Follow
Lawfulness, Fairness & Transparency
We process data lawfully, fairly, and transparently, with clear information about how we use your data.
Purpose Limitation
We collect data for specified, explicit, and legitimate purposes and do not process it in ways incompatible with those purposes.
Data Minimization
We only collect and process data that is adequate, relevant, and limited to what is necessary for our purposes.
Accuracy
We take reasonable steps to ensure data is accurate and up-to-date, and we correct or delete inaccurate data.
Storage Limitation
We retain personal data only as long as necessary for the purposes for which it was collected.
Security
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, or loss.
Your GDPR Rights
Under GDPR, you have specific rights regarding your personal data. Here's how we help you exercise these rights:
Right of Access
You can request a copy of all personal data we hold about you.
How to exercise: Use the “View Your Data” feature in Settings or contact us directly.
Right to Rectification
You can correct inaccurate or incomplete personal data.
How to exercise: Update your profile information in Settings or contact us for assistance.
Right to Erasure
You can request deletion of your personal data in certain circumstances.
How to exercise: Use the “Request Data Deletion” feature in Settings or contact us directly.
Right to Portability
You can receive your data in a structured, machine-readable format.
How to exercise: Use the “Export Your Data” feature in Settings to download your data.
Right to Object
You can object to processing of your data for certain purposes.
How to exercise: Update your privacy preferences in Settings or contact us directly.
Data Protection Measures
We have implemented comprehensive data protection measures to ensure your personal data is secure and processed in compliance with GDPR:
Technical Safeguards
- End-to-end encryption for data transmission
- Encryption at rest for all stored data
- Secure authentication and access controls
- Regular security audits and penetration testing
- Automated backup and disaster recovery systems
- Network security and intrusion detection
- Data anonymization and pseudonymization
Organizational Safeguards
- Data protection training for all employees
- Access controls and role-based permissions
- Confidentiality agreements and policies
- Incident response and breach procedures
- Regular compliance assessments and audits
- Vendor and third-party risk management
- Data protection impact assessments
Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR:
Contract Performance
Processing necessary for providing our LinkedIn and X content management services as agreed in our Terms of Service.
Legitimate Interest
Processing for our legitimate business interests, such as service improvement, analytics, and fraud prevention, balanced against your privacy rights.
Consent
Processing based on your explicit consent for marketing communications and optional analytics features.
Legal Obligation
Processing required to comply with legal obligations, such as data retention requirements and regulatory reporting.
International Data Transfers
When we transfer your personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place:
Adequacy Decisions
We transfer data to countries with adequate data protection as determined by the European Commission.
Standard Contractual Clauses (SCCs)
We use EU-approved contractual clauses ensuring adequate protection for personal data transferred to third countries.
Certification Schemes
We work with certified service providers and follow industry-standard codes of conduct for data protection.
Data Breach Response
In the unlikely event of a personal data breach, we have established procedures to ensure rapid and compliant response:
Immediate Response (0-24 hours)
- Contain and assess the breach
- Notify our Data Protection Officer
- Begin internal investigation
- Document all findings
Regulatory Notification (24-72 hours)
- Notify relevant supervisory authority
- Provide detailed breach information
- Submit initial assessment report
- Begin remediation planning
Data Subject Notification (As Required)
- Notify affected individuals without undue delay
- Provide clear information about the breach
- Explain potential consequences
- Offer guidance on protective measures
Contact Our Data Protection Team
For any questions about our GDPR compliance or to exercise your data protection rights, please contact our data protection team:
Data Protection Officer
Email: 3drealitylabs@gmail.com
Response time: Within 72 hours
Privacy Team
Email: 3drealitylabs@gmail.com
Response time: Within 24 hours
General Support
Email: 3drealitylabs@gmail.com
Response time: Within 12 hours
Legal Department
Email: 3drealitylabs@gmail.com
Response time: Within 48 hours