Himosmajoitus - privacy policy


Privacy Policy and Personal Data File Description
in accordance with the Finnish Personal Data Act (523/1999), Sections 10 and 24
 
1. Data Controller
Himosmajoitus
Jukka Auterinen
Länsikeskuksentie 6
42100 JÄMSÄ, Finland
Tel: +358 20 787 1170
Email: info@himosmajoitus.fi
 
2. Contact Person Regarding the Register
Himosmajoitus
Jukka Auterinen
Länsikeskuksentie 6
42100 JÄMSÄ, Finland
Tel: +358 20 787 1170
Email: info@himosmajoitus.fi
 
3. Name of the Register
The name and purpose of the register is the Customer and Direct Marketing Register.
 
4. Purpose of Processing Personal Data
The legal basis for processing personal data under Section 8 of the Personal Data Act is the customer relationship, the customer’s consent, an assignment given by the customer, contracts between Himosmajoitus and the customer, and the fulfillment of rights and obligations based on legislation.
 
The purposes of processing company-related data include:
 
Identifying and distinguishing the customer.
 
Providing customer service and managing, maintaining, and developing the customer relationship.
 
Managing and developing customer relationships and communications, targeting marketing and customer communication, developing products and services, business development, and reporting.
 
Offering and marketing services and monitoring and implementing marketing communications.
 
Preventing and investigating misuse and problem situations.
 
Ensuring legal protection of customers and Himosmajoitus, as well as fulfilling legal and regulatory obligations.
 
 
5. Data Content of the Register
Customer basic information:
 
Name / Company name
 
Personal ID / Business ID
 
Postal address, postal code, and city
 
Phone number
 
Email address
 
 
Identifying information:
 
Invoice number
 
Customer number
 
 
Customer-related information:
 
Credit information
 
 
6. Regular Sources of Information
Customer information is verified when the contract is made. Additional information is collected during billing, service use, and customer service interactions.
 
Data may also be obtained and updated, in accordance with legislation, from external sources for purposes that have been communicated to the customer.
 
7. Cookies and Regular Disclosures of Data
A cookie is a small text file stored on a user’s device by their browser. Cookies contain a unique identifier that cannot be used to identify users personally.
 
Himosmajoitus uses cookies on its website to provide services and facilitate usage (e.g., so customers don’t have to log in every time). Cookies do not allow personal identification. Cookies are also used to analyze website usability, improve security, track use, and develop the service.
 
Cookies and the information collected via them can also be used to deliver targeted content, advertisements, and marketing communication. For example, after visiting our site, we may show ads related to previously viewed products on our own or partner websites.
 
Marketing partners’ cookies enable targeted advertising and measurement also across other partner websites as part of advertising networks.
 
Users can give or deny consent for cookies through browser settings. Some services may not function properly if cookies are disabled. The use of customer data for Facebook ad targeting can be restricted through Facebook ad settings.
 
To improve service usability, Himosmajoitus may conduct studies that record data such as individual page clicks or mouse movements.
 
Customer data may be transferred to the direct marketing register of Himosmajoitus.
 
Customer data may be disclosed for scientific or historical research purposes.
 
8. Transfer of Data Outside the EU or EEA
Personal data will not be disclosed to third parties operating outside of services provided under Himosmajoitus.
 
Data will only be disclosed to authorities as required by law, for example in cases of suspected misuse.
 
Himosmajoitus does not transfer or disclose personal data outside the European Union or European Economic Area.
 
9. Principles of Register Protection
The digital customer register of Himosmajoitus is protected through appropriate technical and administrative measures to ensure data confidentiality, integrity, and availability. Data and services are secured through firewalls, physical security of facilities, access controls, encryption, and active monitoring.
 
Manual materials are stored in locked premises accessible only to authorized personnel.
 
Personal data is protected from unauthorized access, and from illegal or accidental processing. Only specifically designated employees of Himosmajoitus and third-party service providers maintaining or developing the services under assignment are authorized to handle personal data, using personal usernames and passwords.
 
10. Data Retention Period
Customer data is retained for the period required by the Accounting Act, up to a maximum of 10 years, provided it is necessary for the business and the purposes of the register.
 
Data that is no longer necessary, outdated, or lacks legal basis for processing is anonymized or securely destroyed.
 
The need to retain data is reviewed every two years.
 
11. Accuracy of Data and Right to Rectify
According to Sections 26–28 of the Personal Data Act, customers have the right to inspect what information concerning them is stored in the register. Some information may be restricted, e.g., for reasons related to crime prevention or investigation.
 
Under Section 29, customers may update or change their personal information through customer service.
 
Himosmajoitus ensures the accuracy and up-to-dateness of customer data by updating information during contract formation and billing reviews.