What is GDPR?

The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018. It applies to all organizations operating within the EU and those that offer goods or services to individuals in the EU, regardless of where the organization is based.

Our Commitment: Nova Chatbot is fully committed to GDPR compliance and protecting your personal data in accordance with these regulations.

Data Controller Information

Imperial Tech Limited

Address:
Imperial Tech Limited
London, United Kingdom
Contact:
Email: privacy@novachatbot.co.uk
Phone: +44 (0) 20 1234 5678

Personal Data We Collect

Account Information
  • Name and email address
  • Company information
  • Account preferences
  • Billing information
Chatbot Interactions
  • Conversation history
  • User queries and responses
  • Chatbot performance data
  • Usage analytics
Website Usage
  • IP address and location
  • Browser information
  • Page visit data
  • Device information
Technical Data
  • System logs
  • Error reports
  • Performance metrics
  • Security logs

Legal Basis for Processing

Purpose Legal Basis Description
Service Provision Contract Processing necessary to provide our chatbot services
Account Management Contract Managing your account and billing
Customer Support Legitimate Interest Providing customer service and support
Analytics Legitimate Interest Improving our services and user experience
Marketing Consent Sending marketing communications (with consent)
Legal Compliance Legal Obligation Complying with legal and regulatory requirements

Your GDPR Rights

Right to Access

You have the right to request a copy of all personal data we hold about you.

Right to Rectification

You can request correction of inaccurate or incomplete personal data.

Right to Erasure

You can request deletion of your personal data in certain circumstances.

Right to Restrict Processing

You can request limitation of how we process your personal data.

Right to Data Portability

You can request your data in a structured, machine-readable format.

Right to Object

You can object to processing based on legitimate interests.

Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements.

Data Type Retention Period Reason
Account Data 7 years after account closure Legal and accounting requirements
Chatbot Conversations 2 years Service improvement and support
Analytics Data 3 years Business intelligence and optimization
Marketing Data Until consent withdrawal Marketing communications

Data Security

We implement appropriate technical and organizational measures to protect your personal data.

Encryption

All data is encrypted in transit and at rest using industry-standard protocols.

Access Controls

Strict access controls and authentication mechanisms protect your data.

Regular Audits

We conduct regular security audits and assessments.

Staff Training

Our staff receive regular data protection training.

Exercising Your Rights

To exercise any of your GDPR rights, please contact us using the information below. We will respond to your request within 30 days.

Contact Information
Postal Address:
Data Protection Officer
Imperial Tech Limited
London, United Kingdom

Note: We may need to verify your identity before processing your request. This helps us protect your personal data and ensure it's not disclosed to unauthorized parties.

Supervisory Authority

If you believe we have not addressed your concerns satisfactorily, you have the right to lodge a complaint with your local data protection supervisory authority. In the UK, this is the Information Commissioner's Office (ICO).

Information Commissioner's Office:
Website: ico.org.uk
Phone: 0303 123 1113