Skip to content
ASoc
Legal

GDPR Compliance

Last updated June 2025. How ASoc protects EU personal data and upholds your rights.

Our Commitment to GDPR

ASoc is committed to protecting the personal data of EU residents in accordance with the General Data Protection Regulation (GDPR, Regulation EU 2016/679). We act as both a data controller (for our customers) and a data processor (when hosting customer data on their behalf).

Lawful Basis for Processing

We process personal data only where we have a lawful basis to do so: (a) to perform the contract with you, (b) with your consent, (c) to comply with a legal obligation, or (d) where we have a legitimate interest that is not overridden by your rights.

Your Rights Under GDPR

As an EU resident you have the right to: access the personal data we hold about you; correct inaccurate data; request erasure ('right to be forgotten'); restrict or object to processing; data portability; and withdraw consent at any time. Contact privacy@asoc.example to exercise any right.

Data Transfers Outside the EU

When we transfer personal data outside the European Economic Area we ensure adequate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission.

Data Processing Agreements

Customers who process personal data on our infrastructure may need a Data Processing Agreement (DPA) with ASoc. Contact us at privacy@asoc.example to request a DPA.

Data Breach Notification

In the event of a personal data breach affecting EU residents, we will notify the relevant supervisory authority within 72 hours and inform affected customers without undue delay, as required by Article 33 of the GDPR.

Data Protection Officer

For GDPR-related enquiries you may contact our Data Protection Officer at dpo@asoc.example. We aim to respond to all requests within 30 calendar days.

GDPR / DPO enquiries: dpo@asoc.example.