GDPR Compliance

Last updated: January 1, 2025

1. Introduction

i18n Agent is committed to protecting your personal data and respecting your privacy rights under the General Data Protection Regulation (GDPR). This document outlines how we comply with GDPR requirements and your rights as a data subject.

2. Legal Basis for Processing

We process your personal data under the following legal bases:

  • Contract Performance: To provide our translation services
  • Legitimate Interest: To improve our services and prevent fraud
  • Consent: For marketing communications (where applicable)
  • Legal Obligation: To comply with legal requirements

3. Your Rights Under GDPR

As a data subject, you have the following rights:

  • Right of Access: Request access to your personal data
  • Right to Rectification: Correct inaccurate personal data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a portable format
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time

4. Data Protection Measures

We implement appropriate technical and organizational measures to ensure data security:

  • End-to-end encryption for data in transit and at rest
  • Regular security audits and penetration testing
  • Access controls and employee training
  • Data minimization and purpose limitation
  • Regular backup and disaster recovery procedures

5. Data Retention

We retain personal data only for as long as necessary for the purposes it was collected:

  • Translation Content: Deleted within 30 days after processing
  • Account Information: Retained while your account is active
  • Payment Data: Retained for 7 years for tax and accounting purposes
  • Marketing Data: Retained until consent is withdrawn

6. International Transfers

When transferring personal data outside the EU/EEA, we ensure adequate protection through:

  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions by the European Commission
  • Binding Corporate Rules (where applicable)
  • Explicit consent from data subjects

7. Data Breach Notification

In the event of a personal data breach, we will:

  • Notify the relevant supervisory authority within 72 hours
  • Inform affected individuals without undue delay if high risk is involved
  • Document all breaches and remedial actions taken
  • Conduct thorough investigation and implement preventive measures

8. Data Protection Officer

Our Data Protection Officer (DPO) oversees GDPR compliance and can be contacted at:

Email: [email protected]

Address: Data Protection Officer, i18n Agent

Response time: Within 30 days

9. Exercising Your Rights

To exercise any of your GDPR rights, please contact us using the information above. We will respond to your request within one month and may request additional information to verify your identity.

10. Complaints

If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with your local supervisory authority. However, we encourage you to contact us first so we can address your concerns directly.