Privacy Policy / Register Description

This register description is an example that the Customer should read and modify to suit their needs, or replace this example register description with one of their own choosing.
WiseNetwork accepts no responsibility for any errors in this register description once the system has been put into use by the Customer.

1. Data Controller

[company's full name]
[company's address]
[company's email]
Business ID: [business ID]


2. Person and/or contact person responsible for register matters

[company's contact person]
[contact person's email]


3. Name of the register

[company name]'s customer data register based on customer relationships and other relevant connections.


4. What your personal data is used for

  • Managing, analyzing, and developing customer, member, and stakeholder relationships
  • Offering and developing products and services
  • Delivery, processing, and archiving of orders
  • Analytics and statistical purposes
  • Implementing and monitoring customer, member, and marketing communications
  • Processing, analyzing, and compiling statistics on customer feedback and the results of customer surveys and studies
  • Preventing and investigating misuse and problem situations

Under the EU General Data Protection Regulation, the legal basis for processing personal data is one of the following

  • the individual's consent
  • a contract
  • a statutory obligation
  • legitimate interest


5. What kind of personal data do we collect about you?

The register may contain the following information and any changes to it:

Customer's basic information

  • name details
  • contact information (postal address, email addresses, phone numbers)
  • gender
  • date of birth
  • information regarding the profession or position within the organization of contact persons of corporate customers
  • Customer's unique identifiers
  • personal identity code
  • customer number
  • registration information related to the data controller's services (e.g. usernames and passwords for the online store and back-end system service)
  • identifiers used in marketing targeting

Information related to the customer relationship and other relevant connections, as well as the use of services and content, such as:

  • purchase information, such as information on purchased products and services, including product warranty information, as well as necessary information related to payment, invoicing, and collection, such as credit card information
  • information related to product usage
  • feedback and complaints
  • information on events and training participation
  • location data (if the customer has given explicit consent for this)
  • browsing data and other information related to the use of the data controller's electronic services and content, including technical information sent by the data subject's browser to the data controller's server (IP address, browser), as well as cookies sent to the data subject's browser and related information, if personal data is linked to the cookies
  • information related to marketing and sales promotion, such as marketing measures targeted at the data subject, their utilization and the information provided in connection with them, as well as direct marketing permissions and prohibitions
  • recordings of customer service calls as well as email and online conversations related to customer service, for example on social media channels


6. Regular sources of information

  • Information related to the customer is collected from the customer themselves when a contract is made, in the "own information" section of the online service, when using products and services, in connection with customer service, and when the customer participates in product and service development, research, or surveys.
  • Personal data may also be collected and updated from other registers of the data controller and companies belonging to the same group at any given time, as well as from authorities and companies providing personal data services, such as the Population Information System and other similar registers.


7. How we use cookies

  • We use cookies and other similar technologies, such as browser local storage, to provide and develop our services. We also use cookies to personalize content and target advertising. Cookies allow us, among other things, to provide more up-to-date and personalized services by displaying content based on the user's interests. They also enable, for example, login and authentication, saving personal settings and configurations, and analyzing the operation of our websites. When you use our online services, they collect, for example, the following information: IP address, which links you use, which advertisements or other content you have viewed, which page you came from and which you visit, the time of browsing, the type of your browser or application, and other similar information.
  • You can control the use of cookies, for example, through your browser's management functions. More information about cookies can be found in the privacy or help documentation of each browser. Certain features of the services are determined by cookies, so blocking and deleting cookies (browser and other settings) may adversely affect the functionality and user experience of the relevant web or mobile application service.


8. To whom do we disclose your personal data?

Personal data may only be disclosed within the limits permitted and required by applicable legislation at any given time, and as required by competent authorities. The data controller may share your personal data with carefully selected third parties for joint or independent direct marketing purposes. Data may be shared for such purposes only when the third party's intended purpose of use does not conflict with the purposes of use defined in this privacy policy of the data controller.

The data controller may, at its discretion, share the personal data of participants in the data controller's events with other participants of that event, if appropriate given the nature of the event.

The data controller may transfer data, after the relevant connection has ended, to its own direct marketing register within the limits permitted by law.

The data controller may share your personal data with third parties providing services to the data controller. Such services may include, for example, customer service, software services, research activities, marketing, and event production. The data controller may share your personal data in order to collect payments for products and services, and it may, for example, transfer or sell unpaid invoices to third parties providing collection services.

Protecting your personal data is important to us, which is why we do not allow these parties to use the data for any purpose other than providing the relevant services, and we require these parties to protect the user's personal data in accordance with this privacy policy and applicable legislation

Personal data is not regularly disclosed for purposes other than those mentioned above. However, the data controller is entitled, as permitted by legislation, to disclose personal data, for example, in situations related to the sale of the business. In addition, the data controller may disclose data for purposes such as statistics and analysis in such a way that the disclosed data cannot be linked to an individual person.


10. Do we transfer your personal data outside the EU?

When providing services, the data controller may use resources and servers located in various parts of the world. The data controller may therefore transfer your personal data outside the country where the services are used, and possibly also to countries outside the EU whose data protection legislation differs.

In such cases, the data controller ensures that there is a legal basis for the data transfer and that the user's personal data is protected, for example by using (where necessary) standard contracts approved by the relevant authorities and requiring compliance with appropriate technical and other data protection measures

11. How long is my data retained?

We retain your data at least for the duration of the customer relationship. After the customer relationship ends, the retention period depends on the data and its purpose of use. We comply with statutory obligations regarding data retention.

We strive to keep the personal data in our possession accurate and up to date by removing unnecessary data and updating outdated data. However, we encourage you to periodically check that your information is up to date.


12. How is your personal data protected?

We protect your personal data very carefully by using appropriate data protection and information security measures. Such measures include, among others, proactive and reactive risk management, the use of firewalls, encryption technologies, secure facilities, access control and security systems, security planning, controlled granting and monitoring of access rights, ensuring the competence of personnel involved in processing personal data through training and assessments, and the careful selection of subcontractors. We continuously update our internal practices and guidelines accordingly.

13. Your rights as our customer

We are committed to processing data in accordance with the data protection regulation and offer our users the following choices and control options related to data protection:

Prohibition of direct marketing

The user has the right to prohibit the disclosure and processing of their data for direct advertising, distance selling, and other direct marketing by contacting our customer service.

Checking your data

The user has the right to check the personal data stored about them. At the user's request, we correct, delete, or supplement personal data that is incorrect, unnecessary, incomplete, or outdated for the purpose of processing. The user can update and/or check their personal data by contacting our customer service.

Blocking cookies

The user has the option to block the use of cookies by changing their browser settings. Blocking the use of cookies may affect the functionality of our services.

Clearing cookies

The user can clear cookies from their browser settings. By clearing cookies at regular intervals, the user changes the identifier on which the user's profile is based. However, clearing cookies does not completely stop data collection, but rather resets the profile based on previous behavioral data.

Consent to the use of location data

The user can give their consent to the use of location data through the settings of their device and application. Through the settings, the user can also withdraw their given consent at any time.


14. Can this privacy policy be changed

We continuously develop our services and reserve the right to change this privacy policy by announcing it in our services. Changes may also be based on changes in legislation. We recommend reviewing the content of the privacy policy regularly.