EU-U.S. Data Privacy Framework (EU-U.S. DPF)
This EU-U.S. Data Privacy Framework (EU-U.S. DPF) was last updated on June 17th, 2024.
DuoCircle complies with the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) as set forth by the U.S. Department of Commerce. DuoCircle has certified to the U.S. Department of Commerce that it adheres to the EU-U.S. Data Privacy Framework Principles (EU-U.S. DPF Principles) with regard to the processing of personal data received from the European Union and the United Kingdom in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF. DuoCircle has certified to the U.S. Department of Commerce that it adheres to the Swiss-U.S. Data Privacy Framework Principles (Swiss-U.S. DPF Principles) with regard to the processing of personal data received from Switzerland in reliance on the Swiss-U.S. DPF. If there is any conflict between the terms in this privacy policy and the EU-U.S. DPF Principles and/or the Swiss-U.S. DPF Principles, the Principles shall govern. To learn more about the Data Privacy Framework (DPF) Program and to view our certification, please visit https://www.dataprivacyframework.gov/.
In compliance with the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF and the Swiss-U.S. DPF, DuoCircle commits to resolve DPF Principles-related complaints about our collection and use of your personal information. EU and UK individuals and Swiss individuals with inquiries or complaints regarding our handling of personal data received in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF should first contact DuoCircle at:
DuoCircle, LLC, 6060 Nancy Ridge Dr, Suite 100 San Diego CA 92121 or at privacy@duocircle.com.
Scope
This EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) Statement applies to all Personal Data (defined below) that is received by DuoCircle in the US from the EEA. DuoCircle commits to comply with the EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) and to the rights of EU and UK individuals and Swiss individuals in respect of such Personal Data.
DuoCircle Sites include:
alumniforwarding.com
autospf.com
commando.io
mailhostingservice.com
outboundsmtp.com
outboundemailfilter.com
phishprotection.com
tenantmigration.com
dmarcreport.com
Definitions
“Customer” or “Customers” means DuoCircle’s business customers that use the Services.“EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF)” means this EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF).
“Personal Data” means any information relating to an identified or identifiable individual, recorded in any form.
“Privacy Policy” means DuoCircle’s website privacy policy, available above and accessible at: https://www.duocircle.com/legal/privacy-policy.
“EU-U.S. DPF Principles” means the principles issued by the U.S. Department of Commerce and contained in Annex I of the European Commission’s decisions.
“Services” means the business analytics services and related technologies for monitoring internal and external data sources provided by DuoCircle in accordance with the Terms of Service accessible at https://www.duocircle.com/legal/.
“Site” means our website accessible a https://DuoCircle.com.
Types of Personal Data Collected
When you interact with us through our Services, we may collect Personal Data and other information from you, as further described below:
1. Personal Data That You Provide Through the Services:
We collect Personal Data from you when you voluntarily provide such information, such as when you contact us with inquiries, respond to one of our surveys, register for access to the Services or use certain Services.
2. Personal Data That We Receive From Our Customers:
In addition to our own data processing involving Personal Data, Charto.io may process certain Customer data at the direction of our Customers which may potentially include Personal Data. DuoCircle may cache this data and various aggregations and transformation (charts, graphs, maps, tables, dashboards, etc.) as part of normal operations as covered by our Terms of Service. In such instances, DuoCircle is acting as the data processor on behalf, and pursuant to the instructions, of our Customers, who act as the data controller (an entity that determines the purposes and means for processing personal data). If you have any questions about our processing of this information, you are advised to contact the DuoCircle’s Customer who has directed us to process the particular information.
3. Other Information:
Non-Identifiable Data: When you interact with DuoCircle through the Services, we receive and store certain personally non-identifiable information. Such information, which is collected passively using various technologies, cannot presently be used to specifically identify you. DuoCircle may store such information itself or such information may be included in databases owned and maintained by DuoCircle affiliates, agents or service providers. The Services may use such information and pool it with other information to track, for example, the total number of visitors to our Site, the number of visitors to each page of our Site, and the domain names of our visitors’ Internet service providers. It is important to note that no Personal Data is available or used in this process.
Cookies: In operating the Services, we may use a technology called “cookies.” A cookie is a piece of information that the computer that hosts our Services gives to your browser when you access the Services. Our cookies help provide additional functionality to the Services and help us analyze Services usage more accurately. For instance, our Site may set a cookie on your browser that allows you to access the Services without needing to remember and then enter a password more than once during a visit to the Site. In all cases in which we use cookies, we will not collect Personal Data except with your permission. On most web browsers, you will find a “help” section on the toolbar. Please refer to this section for information on how to receive notification when you are receiving a new cookie and how to turn cookies off. We recommend that you leave cookies turned on because they allow you to take advantage of some of the Services features.
Aggregated Personal Data: In an ongoing effort to better understand and serve the users of the Services, DuoCircle often conducts research on its Customer demographics, interests and behavior based on the Personal Data and other information provided to us. This research may be compiled and analyzed on an aggregate basis.
Third Party Tracking: We may allow third party service providers to use cookies or similar technologies to collect information about your browsing activities over time and across different websites following your use of the Services. For example, we use Google Analytics, a web analytics service provided by Google, Inc. Google Analytics uses cookies to help the website analyze how users use the Site and enhance your experience when you use the Services. For more information on how Google, Inc. uses this data, go to https://www.google.com/policies/privacy/partners/.
We use third party retargeting services, including AdRoll, which track users across web sites. Except for geo-location data (based on IP address), we do not provide these services with any Personal Data. If you do not wish to have this information used for the purpose of serving you targeted advertisements, you may opt out by visiting the following portals:
http://optout.networkadvertising.org and https://www.youronlinechoices.eu. Please note that opting out of targeted advertisement does not opt you out of being served advertising altogether. You will continue to receive generic advertisements.
We do not currently respond to web browser “do not track” signals. If we do so in the future, we will describe how we do so in this Privacy Policy. For more information about “do not track,” visit https://allaboutdnt.com/.
Our Use of Your Personal Data and Other Information:
DuoCircle uses the Personal Data you provide to us in a manner that is consistent with this Privacy Policy. For instance, if you contact us by email, we will use the Personal Data you provide to answer your question or resolve your problem. If you provide Personal Data to obtain access to the Services, we will use your Personal Data to provide you with access to such Services and to monitor your use of the Services. DuoCircle may also use your Personal Data and other non-personally identifiable information collected through the Services to help us improve the content and functionality of the Service, and to better understand our users. DuoCircle may use this information to contact you in the future to tell you about services we believe will be of interest to you. If we do so, each marketing communication we send you will contain instructions permitting you to “opt-out” of receiving future marketing communications. In addition, if at any time you wish not to receive any future marketing communications or you wish to have your name deleted from our mailing lists, please contact us at privacy@duocircle.com. If DuoCircle intends to use any Personal Data in any manner that is not consistent with this Privacy Policy, you will be informed of such anticipated use prior to or at the time at which the Personal Data is collected and you will be given an opportunity to opt out of such use. When we process Personal Data as a data processor on behalf of our Customers, we will process any Personal Data in accordance with purposes identified for such Personal Data by the applicable Customer and pursuant to the Customer’s instructions.
Our Disclosure of Your Personal Data and Other Information:
DuoCircle may disclose Personal Data to third-party service providers (such as providers of customer and lead management services, email communication and customer support services) and subcontractors (such as providers of compute and storage resources) who perform certain services or provide certain solutions on our behalf and under our instructions as necessary in connection with the performance of requested services or solutions. DuoCircle maintains contracts with these third parties restricting their access, use and disclosure of Personal Data in compliance with the EU-U.S Data Privacy Framework (DPF) Principles.
DuoCircle may also disclose Personal Data as necessary in connection with the sale or transfer of all or part of its business.
DuoCircle may also disclose Personal Data as required or permitted by law, or when DuoCircle believes that disclosure is necessary to protect its rights or to comply with a judicial proceeding, a court order, a law enforcement request, or other legal process, or lawful requests by public authorities, including to meet national security or law enforcement requirements.
In addition to the above, we may share Personal Data about you with others to the extent you consent to such sharing.
Choice:
DuoCircle will offer individuals the opportunity to choose (opt out) whether their Personal Data is (a) to be disclosed to third parties, except when disclosure is made to a third party that is acting as an agent to perform task(s) on our behalf and under our instructions or (b) to be used for a purpose that is materially different from the purpose for which it was originally collected or subsequently authorized by the individual. DuoCircle will provide individuals with clear, conspicuous and readily available mechanisms to exercise their choices should applicable circumstances arise. In order to request that DuoCircle not use an individual’s Personal Data, such individual should contact DuoCircle by email at: privacy@duocircle.com. Individuals may also opt out of receiving marketing messages from DuoCircle by notifying DuoCircle at: privacy@DuoCircle.com.
Data Integrity and Purpose Limitation:
Consistent with the EU-U.S. DPF Principles, we will limit collection of Personal Data to the information that is relevant for the purposes of processing and we will not process such Personal Data in a way that is incompatible with the purposes for which it has been collected or subsequently authorized by you. To the extent necessary for those purposes, we will also take reasonable steps to ensure that Personal Data is reliable for its intended use, accurate, complete and current. We will adhere to the EU-U.S. DPF Principles for as long as we retain Personal Data about you.
Accountability for Onward Transfer:
Pursuant to the EU-U.S. DPF Principles, DuoCircle remains accountable for Personal Data that it receives under the EU-U.S. DPF Principles and subsequently transfers to a third-party agent. In particular, DuoCircle remains responsible and liable under the EU-U.S. DPF Principles if third-party agents that it engages to process the personal data on its behalf do so in a manner inconsistent with the EU-U.S. DPF Principles unless DuoCircle proves that it is not responsible for the event giving rise to the damage.
Security:
We are committed to securing all Personal Data provided to us. We have deployed and maintain reasonable and appropriate process and technology measures to provide reasonable assurance that your Personal Data is secured against loss, misuse and unauthorized access, disclosure, alteration and destruction.
Access:
Upon request, DuoCircle will grant individuals reasonable access to Personal Data that it holds about them. In addition, DuoCircle will take reasonable steps to permit individuals to correct, amend, or delete information where it is inaccurate or has been processed in violation of the EU-U.S. DPF Principles.
DuoCircle will process all reasonable requests for access within a reasonable time period but reserves the right to restrict access in cases where the legitimate rights of persons other than the individual would be violated or where the burden or cost of providing access would be disproportionate to the risks to the individual’s privacy.
Recourse; Enforcement:
In compliance with the EU-U.S. DPF Principles, DuoCircle commits to resolve complaints about our collection or use of your personal information. EU and Swiss individuals with inquiries or complaints regarding our EU-U.S. DPF policy should first contact DuoCircle at: privacy@DuoCircle.com.
With respect to Personal Data received or transferred pursuant to the EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework, DuoCircle is subject to the regulatory enforcement powers of the US Federal Trade Commission (FTC).
In certain circumstances, the EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework provide the right to invoke binding arbitration to resolve complaints not resolved by other means, as described in Annex I to the EU-U.S. DPF Principles.
Comments:
If you have any questions, comments or concerns about our privacy practices, please contact us at DuoCircle, LLC, 6060 Nancy Ridge Dr, Suite 100 San Diego CA 92121 or at privacy@duocircle.com.