GDPR Compliance

Data Protection & Privacy

Last Updated: January 12, 2025

AddonReview is committed to protecting the privacy and security of your personal data. We comply with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

Our GDPR Commitments

  • Data processed lawfully, fairly, and transparently
  • Data collected for specified, explicit, and legitimate purposes
  • Data minimization - only collect what is necessary
  • Data accuracy - kept up to date
  • Storage limitation - retained only as long as necessary
  • Integrity and confidentiality - appropriate security measures

Your Rights Under GDPR

As a data subject, you have the following rights:

Right to Access

Request a copy of your personal data

Right to Rectification

Request correction of inaccurate data

Right to Erasure

Request deletion of your personal data

Right to Restrict Processing

Limit how we use your data

Right to Data Portability

Receive your data in a portable format

Right to Object

Object to processing of your data

Data We Collect

We collect and process the following types of personal data:

  • Account Information: Name, email address, company name
  • Billing Information: Payment details, billing address
  • Usage Data: How you interact with our services
  • Technical Data: IP address, browser type, device information
  • Customer Reviews: Reviews collected through your e-commerce store

Legal Basis for Processing

We process your personal data based on:

  • Contract: Processing necessary for our contract with you
  • Legitimate Interests: Processing necessary for our legitimate business interests
  • Consent: Where you have given explicit consent
  • Legal Obligation: Processing required by law

Data Transfers

Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data outside the EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission.

Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. Upon termination of your account, we will delete or anonymize your personal data within 90 days, unless retention is required by law.

Data Security

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including encryption of data in transit and at rest, regular security assessments, access controls, and employee training on data protection.

Data Protection Officer

For any questions about our GDPR compliance or to exercise your data protection rights, please contact our Data Protection Officer at: dpo@addonreview.com

Complaints

If you believe we have not handled your personal data properly, you have the right to lodge a complaint with your local data protection authority. However, we encourage you to contact us first so we can try to resolve your concerns directly.