PRIVACY POLICY

1. BACKGROUND

Dear Website Visitor / Prospective Customer, 

This is the privacy notice (“Privacy Notice”) of Telva’s website visitor and potential customer registry (“Registry”). 

A privacy notice is a statement or legal document (in privacy law) that discloses the ways a party processes (e.g., gathers, uses, discloses, and manages) personal data.

This Privacy Notice describes the processing of the personal data at Telva in relation to the following interest groups: website visitors and prospective private clients and representatives of prospective corporate clients.

Oy Telva Ab acts as the Controller of this Registry. In this Privacy Notice below, “We”, “Us”, “Telva” shall refer to Oy Telva Ab and all the affiliates within the Telva group.

In all matters relating to this Registry, we kindly ask you to contact us via email: info@telva.fi

2. USE

Telva’s Privacy Notice is prepared and disclosed as a PDF document and covers the processing of personal data in relation to any website governed by Telva, electronic contact forms that originate from Telva and any other form of contacting Telva as a prospective customer.

The websites governed by this Privacy Notice are:

3. PRIVACY POLICY

On what legal basis and for what purpose do we process personal data?

We only process personal data of data subjects on the following grounds in accordance with the EU General Data Protection Regulation (Regulation 2016/679, “GDPR”):

  • With the explicit consent of the data subject;
  • For the performance of a contract to which the data subject is a party;
  • to comply with the controller’s legal obligations; and
  • on the basis of a legitimate interest in providing information to our prospective clients.

The purpose of processing the personal data of the data subjects is to enable us to provide information on our webpages and to take care of the prospective customer relationship. Taking care of the prospective customer relationship includes for example answering the contact requests of our prospective customers and providing them with newsletters and other similar information from time to time. Furthermore, it includes possible contract negotiations and other preparation aiming at entering into a contract with the prospective customers. At the time of contracting, i.e., when prospective customers become customers, personal data can be transferred to our Customer Registry, the privacy notice of which is a separate document.

Lastly, we process the personal data in this Registry for our internal purposes based on our legitimate interests, which include, e.g., monitoring and recording statistics on the use of our websites and the number of contacts we get.

  • Enable electronic and direct marketing; and
  • Target advertising in our online services.

What data do we process?

We process the following personal data in connection with this Registry:

  • Basic information of the data subject, such as first name, surname and the preferred language, which is implied by the language in which the person approaches Us.
  • Contact information of the data subject such as e-mail address and phone number.
  • Information of the company and company’s contact persons such as names and contact details of the contact persons at the prospective customers.
  • Information of the prospective customer’s needs, which the customer itself voluntarily provides, e.g., via email or contact forms, such as concrete needs of the customer or a specific product it is interested to hear more about.
  • Information of the connection and device the data subject is using such as the IP address, device ID or other device identifier and cookies as well as information about which of our webpages You visit.
  • Information related to the data subject’s direct marketing consent’s opt-in/opt-out status.
  • Other possible information gathered with the data subject’s consent.

From where do we receive data?

We receive information primarily from the data subject him-/her-/itself. Regarding the prospective corporate clients, We can also receive information via other people at the company a data subject works for (e.g., names and contact information of contact persons in the contract, etc.). We can also receive information from Our sales representatives / distributors that are separate legal entities from Us. This comes into question , e.g., if a prospective customer first approaches Our representatives / distributors and their request is thereafter forwarded to Us.

When negotiating a contract with a prospective client we can also receive information from authorities, credit information companies, contact information service providers and other similar reliable sources. For the purposes described in this Privacy Notice, personal data may also be collected and updated from publicly available sources and based on information received from authorities or other third parties within the limits of the applicable laws and regulations. Data updating of this kind is performed manually or by automated means.

In addition, we can collect data that can be categorized as personal data about the visitors of Our websites through the usage of cookies. A cookie is a small text file that a web browser stores on your device. There are two types of cookies. Temporary session ID cookies close when you close your browser. Persistent cookies are stored in your browser’s memory. Cookies do not harm your device and neither you nor any other individual user can be identified from the information they collect.

Cookies help us to serve you better. Cookies are used to improve your experience on our websites. We use cookies to collect information about the use of our services, usage and other statistics.

To whom do we disclose data, and do we transfer data across borders?

We do not regularly disclose information of the Registry to external third parties. We can, however, disclose the information among companies within the Telva group and its official representatives and distributors. We are a globally present company, and we strive to provide our products and services to You, around the world. When We do transfer personal data across borders (which for EU citizens means outside of the EU/EEA) as a part of our operations, we make sure that the personal data in question is protected according to the privacy legislation in force from time to time. Furthermore, in addition to Us processing information ourselves, we can also use subcontractors (“Data Processors”) that process personal data on Our behalf. We may for example outsource some of our IT management or other functions to outside service providers on whose server the personal data may be stored. Also, the sales representatives / distributors mentioned above, that are separate legal entities from Us, can be considered as Our Data Processors (or alternatively as separate data controllers) to whom We may disclose information. This comes into question, e.g., if a prospective customer first approaches Us, but given the location of the prospective customer can be better served by Our representatives / distributors in the said prospective customer’s area. In this case their request can thereafter be forwarded to the representatives / distributors in question.

The data processing by Our Data Processors is always conducted pursuant to Our instructions to the Data Processor, i.e., under a personal data processing agreement between us and the processor.

If a prospective customer becomes Our customer, the processing of their data might continue within a customer relationship. For this purpose, personal data from this Registry can be moved into Telva’s Customer Registry as described in a separate Customer Registry Privacy Notice.

Lastly, We also ask the data subjects to take into account the role of other data controllers in the processing of personal data. In particular, We direct the data subject to read the privacy policy of Google Analytics, which We use.

How do we protect the data and for how long do we store it?

The information is collected into databases protected by firewalls, passwords and other technical measures. The databases and their respective backup copies are in locked premises and can be accessed only by certain pre-designated persons. Each user has a personal username and password to the systems where personal data are stored. We remind our employees on the importance of keeping their username and password safe on a regular basis.

We store the data if it is necessary for the purpose of processing the data. Personal data in this Registry is erased after one year has elapsed since the last contact with a specific prospective customer.

We regularly review the need for data storage considering the applicable legislation. In addition, we take all reasonable actions to ensure that no incompatible, outdated or inaccurate personal data are stored in the register considering the purpose of the processing. We correct or erase such data without delay.

What are your rights as a data subject?

As a data subject You have the right to access the personal data stored in this Registry concerning Yourself, and the right to require rectification or erasure of that data. You also have the right to withdraw Your consent and the right to data portability.

As a data subject, you may, under certain conditions, have the right, according to EU’s General Data Protection Regulation (applied from 25.5.2018), to object to processing or to request that the processing be restricted, and to lodge a complaint with a supervisory authority.

For specific personal reasons, you may also have a right to object to data processing concerning You, when processing the data is based on the prospective customer relationship. In connection to Your claim, you should identify the specific situation on which You object the processing. We can refuse to act on such request if the law allows. As a data subject You may have the right to object to the processing of Your personal data at any time free of charge, including profiling in so far as it relates to direct marketing.

All requests and requirements concerning this section should be submitted in writing to the e-mail address mentioned above.

4. CHANGES IN THE PRIVACY POLICY

Should we make amendments to this Privacy Notice, we will place the amended notice on our websites, with an indication of the amendment date.

This Privacy Notice was last amended on the 15.10.2024.