GDPR Compliance
Data Protection & Privacy
Last Updated: January 12, 2025
AddonReview is committed to protecting the privacy and security of your personal data. We comply with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
Our GDPR Commitments
- Data processed lawfully, fairly, and transparently
- Data collected for specified, explicit, and legitimate purposes
- Data minimization - only collect what is necessary
- Data accuracy - kept up to date
- Storage limitation - retained only as long as necessary
- Integrity and confidentiality - appropriate security measures
Your Rights Under GDPR
As a data subject, you have the following rights:
Right to Access
Request a copy of your personal data
Right to Rectification
Request correction of inaccurate data
Right to Erasure
Request deletion of your personal data
Right to Restrict Processing
Limit how we use your data
Right to Data Portability
Receive your data in a portable format
Right to Object
Object to processing of your data
Data We Collect
We collect and process the following types of personal data:
- Account Information: Name, email address, company name
- Billing Information: Payment details, billing address
- Usage Data: How you interact with our services
- Technical Data: IP address, browser type, device information
- Customer Reviews: Reviews collected through your e-commerce store
Legal Basis for Processing
We process your personal data based on:
- Contract: Processing necessary for our contract with you
- Legitimate Interests: Processing necessary for our legitimate business interests
- Consent: Where you have given explicit consent
- Legal Obligation: Processing required by law
Data Transfers
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data outside the EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission.
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. Upon termination of your account, we will delete or anonymize your personal data within 90 days, unless retention is required by law.
Data Security
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including encryption of data in transit and at rest, regular security assessments, access controls, and employee training on data protection.
Data Protection Officer
For any questions about our GDPR compliance or to exercise your data protection rights, please contact our Data Protection Officer at: dpo@addonreview.com
Complaints
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with your local data protection authority. However, we encourage you to contact us first so we can try to resolve your concerns directly.