Documents

GDPR and Privacy Policy

This document explains how personal data is processed in the BEIAElektro 4.0 HUB system in compliance with GDPR and applicable regulations.

1. Purpose

The platform processes personal data for authentication, project management, workflow execution, communication, security, and legal compliance.

2. Data processed

Typical personal data includes:

  • name and surname,
  • email address,
  • phone number,
  • role and work title,
  • organization and tax identifiers,
  • project assignments and activity logs,
  • uploaded documents and photos,
  • technical access data such as IP addresses and timestamps.

3. Legal basis

Processing may be based on contract performance, legitimate interests, legal obligations, or consent when required, especially for AI functionality or marketing communications.

4. Rights of the data subject

The data subject may request:

  • access to their data,
  • correction of incorrect data,
  • deletion of personal data,
  • limitation of processing,
  • objection to certain processing,
  • data portability,
  • withdrawal of consent.

5. Security

Appropriate technical and organizational measures are used to protect personal data from unauthorized access, loss, misuse, or damage. These include role-based access control, secure transfer, and backup policies.

6. Retention

Data is retained only for as long as necessary for the purpose of processing and in line with legal and contractual obligations. Once expired, data is deleted or anonymized.