GDPR Compliance

OASYS is committed to full compliance with the General Data Protection Regulation (GDPR) and protecting your personal data.

Our GDPR Commitment

The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018. OASYS is fully committed to GDPR compliance and has implemented robust data protection measures to safeguard your personal information.

We believe in transparency, accountability, and giving you control over your personal data.

Your Rights Under GDPR

Right to Access

You can request access to all personal data we hold about you.

Right to Rectification

You can request correction of inaccurate or incomplete personal data.

Right to Erasure

You can request deletion of your personal data in certain circumstances.

Right to Restrict Processing

You can request limitation of how we process your personal data.

Right to Data Portability

You can request your data in a structured, machine-readable format.

Right to Object

You can object to processing of your personal data for certain purposes.

How We Protect Your Data

Technical Safeguards

  • End-to-end encryption
  • Secure data centers
  • Regular security audits
  • Access controls and monitoring

Organizational Measures

  • Data protection training
  • Privacy by design
  • Data minimization
  • Regular compliance reviews

Data Processing Lawful Basis

Contract Performance

We process your data to provide our AI-powered financial services and fulfill our contractual obligations.

Legitimate Interest

We process data for legitimate business interests such as improving our services and preventing fraud.

Consent

We obtain explicit consent for marketing communications and non-essential data processing.

Legal Obligation

We process data to comply with legal requirements and regulatory obligations.

Exercising Your Rights

To exercise any of your GDPR rights, please contact our Data Protection Officer:

Data Protection Officer

Email: dpo@oasys.com

Phone: +1 (555) 123-4567

Response Time: Within 30 days

Data Breach Notification

In the unlikely event of a data breach, we have procedures in place to:

  • Immediately assess and contain the breach
  • Notify the relevant supervisory authority within 72 hours
  • Inform affected individuals without undue delay
  • Document all breach incidents and remedial actions

Last Updated: January 15, 2024

Supervisory Authority: Information Commissioner's Office (ICO)