Pilot Station Ltd GDPR Policy

Effective Date: 14/06/2023

1. Introduction

1.1 Purpose

This General Data Protection Regulation (GDPR) policy outlines the principles and procedures that Pilot Station Ltd follows to ensure compliance with the EU GDPR, which came into effect on May 25, 2018. This policy aims to protect the rights and privacy of individuals whose personal data Pilot Station Ltd processes.

1.2 Scope

This policy applies to all employees, contractors, and third-party vendors who process personal data on behalf of Pilot Station Ltd. It covers all personal data processing activities, regardless of the medium used (electronic, paper, or other formats).

2. Definitions

2.1 Personal Data: Any information relating to an identified or identifiable natural person (data subject), such as name, address, email address, phone number, or other identifiers.

2.2 Data Controller: Pilot Station Ltd, which determines the purposes and means of processing personal data.

2.3 Data Processor: Any entity or individual who processes personal data on behalf of Pilot Station Ltd.

2.4 Data Subject: The individual whose personal data is processed.

3. Principles of GDPR Compliance

3.1 Lawfulness, Fairness, and Transparency

3.2 Purpose Limitation

3.3 Data Minimization

3.4 Accuracy

3.5 Storage Limitation

3.6 Integrity and Confidentiality

3.7 Accountability

4. Data Subject Rights

4.1 Right to Access

4.2 Right to Rectification

4.3 Right to Erasure (Right to Be Forgotten)

4.4 Right to Data Portability

4.5 Right to Object

5. Data Protection Officer (DPO)

6. Data Breach Notification

7. International Data Transfers

8. Training and Awareness

9. Review and Update

10. Contact Information

11. Non-Compliance

12. Conclusion

This GDPR policy is a fundamental part of Pilot Station Ltd’s commitment to protecting the privacy and data rights of individuals. All employees, contractors, and third-party vendors must adhere to this policy to ensure GDPR compliance.

Pilot Station Ltd.