GDPR Compliance

Effective Date: April 12, 2025

Last Updated: April 12, 2025

 

Introduction

At Pavlonic Inc., we are committed to protecting the personal data of all users — including those located in the European Union (EU) and European Economic Area (EEA) — in accordance with the General Data Protection Regulation (GDPR) (Regulation (EU) 2016/679). This page outlines our legal basis for data processing, user rights under GDPR, and our data protection practices.

For general information about how we collect, use, and store personal data, please refer to our Privacy Policy and Cookie Policy.

 

1. Data We Collect and Use

We collect personal data as described in our Privacy Policy, including:

  • Contact Information: Name, email address
  • Account Information: Login credentials, membership status
  • Payment Information: Provided via secure third-party processors (e.g., Stripe)
  • Technical Data: IP address, browser/device information, cookies

 

2. Legal Bases for Processing

We process your personal data only when we have a valid legal basis under GDPR. These include:

  • Consent (Art. 6(1)(a)): For newsletter sign-ups, promotional emails, and optional cookies.
  • Contractual Necessity (Art. 6(1)(b)): To deliver services like memberships or course access when you create an account or make a purchase.
  • Legal Obligation (Art. 6(1)(c)): For tax records, fraud prevention, and compliance with Canadian or international regulations.
  • Legitimate Interests (Art. 6(1)(f)): To monitor site performance, improve services, and detect unauthorized use — balanced against your rights and freedoms.

 

3. Your Rights Under GDPR

If you reside in the EU/EEA, you have the following rights:

  • Right of Access: Obtain a copy of the personal data we hold about you.
  • Right to Rectification: Request correction of inaccurate or incomplete data.
  • Right to Erasure (“Right to be Forgotten”): Request deletion of your data under certain circumstances (e.g., when consent is withdrawn).
  • Right to Restrict Processing: Request a temporary or permanent halt to processing.
  • Right to Data Portability: Receive your data in a structured, commonly used, and machine-readable format, and transmit it to another controller.
  • Right to Object: Object to data processing where we rely on legitimate interests or use your data for direct marketing.

 

To exercise any of these rights, contact us at: privacy@pavlonic.com

You may also lodge a complaint with your local Data Protection Authority in the EU.

 

4. Data Transfers Outside the EU/EEA

Your data may be processed outside of the EU/EEA — including in Canada and the United States — where our hosting providers, analytics tools, or payment processors operate.

We ensure adequate safeguards are in place through one or more of the following mechanisms:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Data Processing Agreements (DPAs) with service providers
  • Privacy and security due diligence

For details, see our Privacy Policy.

 

5. Data Security

We take appropriate technical and organizational measures to protect your data, including:

  • SSL/TLS encryption
  • Access control and authentication protocols
  • Regular audits and security reviews

However, no internet-based service can be guaranteed 100% secure. Please take precautions when sharing sensitive information.

 

6. Retention of Data

We retain personal data only for as long as necessary to fulfill the purposes outlined in our Privacy Policy — including providing services, complying with legal obligations, and resolving disputes. Retention periods may vary depending on the nature of the data and applicable law.

 

7. Automated Decision-Making

We do not use your personal data for any automated decision-making or profiling that has legal or similarly significant effects.

 

8. Updates to This Page

We may update this GDPR Compliance page to reflect legal or operational changes. The “Last Updated” date will be revised accordingly. We encourage you to review it periodically.

 

9. Contact Us

To ask questions or exercise your rights under GDPR, contact:

Pavlonic Inc.
Dartmouth, Nova Scotia, Canada
Email: privacy@pavlonic.com