auroraflux
  • Home
  • About
  • Services
  • Contact
View Programs

GDPR Compliance

Last updated: January 15, 2024

Aurora Flux is committed to protecting the personal data of all individuals, including those residing in the European Economic Area (EEA). This page outlines how we comply with the General Data Protection Regulation (GDPR) and explains your rights under this regulation.

Our Role as Data Controller

Aurora Flux acts as a data controller for the personal information we collect from you. This means we determine the purposes and means of processing your personal data. Our contact details are:

Aurora Flux
250 University Avenue, Suite 800
Toronto, ON M5H 3E5
Canada
Email: [email protected]

Legal Basis for Processing

We process personal data based on the following legal grounds:

Consent

Where you have given clear consent for us to process your personal data for a specific purpose. For example, when you subscribe to our newsletter or accept marketing communications.

Contract Performance

Where processing is necessary to perform a contract with you or to take steps at your request before entering into a contract. This includes processing data to provide our coaching services.

Legitimate Interests

Where processing is necessary for our legitimate interests or the legitimate interests of a third party, provided your rights do not override those interests. This includes improving our services and website functionality.

Legal Obligation

Where processing is necessary to comply with a legal obligation to which we are subject.

Your Rights Under GDPR

If you are located in the EEA, you have the following rights regarding your personal data:

Right to Access

You have the right to request a copy of the personal data we hold about you. We will provide this information free of charge within one month of receiving your request.

Right to Rectification

You have the right to request that we correct any inaccurate personal data or complete any incomplete personal data we hold about you.

Right to Erasure

You have the right to request that we delete your personal data in certain circumstances, such as when the data is no longer necessary for the purpose it was collected.

Right to Restrict Processing

You have the right to request that we restrict the processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.

Right to Object

You have the right to object to the processing of your personal data in certain circumstances, including processing for direct marketing purposes.

Rights Related to Automated Decision-Making

You have the right not to be subject to a decision based solely on automated processing, including profiling, that produces legal effects or significantly affects you.

Exercising Your Rights

To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month. In some cases, we may need to verify your identity before processing your request.

If you are not satisfied with our response or believe we are processing your personal data in a way that violates GDPR, you have the right to lodge a complaint with a supervisory authority in your country of residence.

International Data Transfers

As Aurora Flux is based in Canada, your personal data may be transferred to and processed in Canada. Canada has been recognized by the European Commission as providing an adequate level of data protection. Where we transfer data to other countries, we ensure appropriate safeguards are in place, such as standard contractual clauses.

Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected. Our retention periods are based on:

  • The duration of our relationship with you
  • Legal obligations to retain data
  • Statute of limitations for legal claims
  • Business operational needs

Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit and at rest
  • Access controls and authentication requirements
  • Regular security assessments
  • Staff training on data protection

Data Breach Notification

In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly.

Updates to This Page

We may update this GDPR compliance information from time to time. We will notify you of any significant changes by posting the updated information on our website.

Contact Our Data Protection Team

For questions or concerns about our GDPR compliance or to exercise your data protection rights, please contact us at:

Email: [email protected]
Subject line: GDPR Inquiry

auroraflux

Helping Canadian professionals find their authentic voice and communicate with confidence since 2014.

Navigation

  • Home
  • About Us
  • Services
  • Contact

Programs

  • Foundation Speaker
  • Executive Presence
  • Keynote Mastery
  • Team Workshops

Legal

  • Privacy Policy
  • Terms of Use
  • Cookie Policy
  • GDPR

© 2024 Aurora Flux. All rights reserved. Serving professionals across Canada.

We use cookies to enhance your browsing experience and analyze site traffic. By continuing, you consent to our use of cookies. Learn more