This is FennoSteel Oy's registry and data protection statement in accordance with the European Union's General Data Protection Regulation (GDPR). Updated 04/03/2022.
1. Registrar and contact details
FennoSteel Oy, Fennokatu 1, FI-39700 Parkano
2. Name of the register
Fennosteel Oy's customer and stakeholder register
3. Purpose of the register
The legal basis for the processing of personal data under the EU General Data Protection Regulation is the legitimate interest of the controller (customer relationship) and the consent of the visitor to the collection of anonymized tracking data (cookie settings/analysis cookies).
The purpose of the processing of personal data is to communicate with customers and potential customers and to maintain, market and invoice customer relationships.
4. Information content of the register
The information stored in the register may include a person's name, position, contact information (telephone number, e-mail address, address), company name, industry, billing information, and other information related to the customer relationship and the services ordered by the customer.
5. Regular sources of information
The information stored in the register is obtained from the customer or potential customer by e-mail, telephone, social media services, contracts, customer meetings, and other situations in which the customer or potential customer discloses their information.
6. Regular transfers of data and transfers of data outside the EU or the EEA
The information is not regularly disclosed to other parties. The information may be published to the extent agreed with the customer.
The data may also be transferred by the controller outside the EU or the EEA. Data will not be transferred to the United States without the express consent of the data subjects.
7. Registry Security Basics
The customer register is in electronic form only and the equipment and software are properly protected and handled with care. When registry data is stored on Internet servers, the physical and digital security of hardware is adequately addressed. The registrar ensure that all information stored in the register is treated confidentially and only by the employees and partners whose job description it includes.
8. Right of inspection and right to request correction of information
Every person in the register has the right to check the information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check or request the rectification of data stored about them, the request must be sent in writing to the registrar. If necessary, the registar may ask the requester to prove their identity. The registrar will respond to the customer within the time limit set by the EU Data Protection Regulation (generally within one month).
10. Other rights related to the processing of personal data
A person in the register has the right to request the removal of their personal data from the register ("right to be forgotten"). Data subjects also have other rights under the EU's general data protection regulation, such as restrictions on the processing of personal data in certain situations. Requests should be sent directly and in person by email to the registrar. If necessary, the registar may ask the requester to prove their identity. The registrar will respond to the customer within the time limit set by the EU Data Protection Regulation (generally within one month).