The personal data processing regulations of Amethyst Jet 1927 ltd
Amber Jet Group SIA, Reg. No. 40203037686 (hereinafter referred to as the Company), with legal address: 22 Ziemelu Str. Business Aviation Center, Riga Airport, LV-1053 is committed to respecting your privacy and protecting your personal data. This personal data processing regulations (hereinafter referred to as the Policy) is effective from 25 May, 2018 (hereinafter referred to as the Effective Date).
The Policy defines the order, in which processes personal data. The policy is developed in accordance with the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (hereinafter referred to as the Regulation), as well as with other applicable legal acts in the sphere of data processing.
All personal data is obtained, held, and processed by the Company, in compliance with this Policy, any and all data protection related laws and regulations that are applicable to the Company (including without limitation, the Regulation, the applicable national data protection law in Latvia, and any data protection related terms in any agreement or contract in force between the Company and its customers in relation to the supply by the Company of services and/or products.
-
Data Protection Principles
- At Amber Jet Group SIA privacy is taken seriously. For this reason, the Company is committed to Processing data in accordance with its responsibilities under the Regulation, Article 5 (‘Principles relating to processing of personal data’):
- kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed; personal data may be stored for longer periods insofar as the personal data will be processed solely for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes subject to implementation of the appropriate technical and organisational measures required by the Regulation in order to safeguard the rights and freedoms of individuals; and
- processed in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures;
- processed lawfully, fairly and in a transparent manner in relation to individuals;
- collected for specified, explicit and legitimate purposes and not further processed in a manner that is incompatible with those purposes; further processing for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes shall not be considered to be incompatible with the initial purposes;
- adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed;
- accurate and, where necessary, kept up to date; every reasonable step must be taken to ensure that personal data that are inaccurate, having regard to the purposes for which they are processed, are erased or rectified without delay.
- At Amber Jet Group SIA privacy is taken seriously. For this reason, the Company is committed to Processing data in accordance with its responsibilities under the Regulation, Article 5 (‘Principles relating to processing of personal data’):
-
General Provisions
- This Policy applies to all Personal Data processed by the Company.
- The Responsible Person shall take responsibility for the Company’s ongoing compliance with this policy.
- Any Personal Data provided will only be used in accordance with this Policy. This Policy applies to Personal Data that we collect, use and otherwise Process in connection with the Company’s relationship with the Customer (as a client or potential client, use of Company’s Services, use of the Company’s website or mobile apps, booking the Services through third parties (such as agents, brokers and other carriers).
- This Policy applies to the Company’s Customer whether the Company Services are provided on a casual basis or the Customer entered into a contract with the Company. The Company’s Services acquired by the Customer from the Company will be subject to their own terms and conditions. In the event of any conflict between this Policy and the terms and conditions of any such Services, then the terms and conditions of those Services shall prevail.
-
Lawful, Fair and Transparent Processing
- To ensure its Processing of Personal Data is lawful, fair and transparent, the Company shall maintain a Register of Systems.
- The Register of Systems shall be reviewed at least annually. The Company shall process Personal Data on the basis of:
- Customer’s consent;
- legal agreement between the Company and the Customer that establishes a basis for data processing;
- legal obligations to which the Company is subject; and / or
- The processing of Personal Data is limited to the scope of purpose for which the data was collected. Access to Personal Data will be restricted to personnel who are required to process the Personal Data to fulfil their professional responsibilities and their duties to you as the Customer. Personal Data is not stored or processed longer than is necessary with respect to the data processing purposes that are listed above.
-
Company’s Obligations
- With respect to the Services, the Company is the Processor of Personal Data and Customer is the Controller of Personal Data.
- The Company shall Process the Personal Data to perform the Services in accordance with Customer’s documented instructions, agreements, specifications, descriptions.
- The Company shall maintain the confidentiality of any such Personal Data and shall take reasonable steps to ensure the reliability of any employee, agent or contractor who may have access to the Personal Data, ensuring in each case that access is limited only to those individuals who need to access the relevant Personal Data for the purposes necessary to perform the Services.
- To the extent that the Company experiences a Personal data Breach with respect to the Personal Data that the Company processes as part of its performance of the Services, the Company will notify Customer promptly upon becoming aware of such Personal Data Breach.
- The Company will provide all reasonable assistance to Customer with regards to any issues related to data protection to the extent required by applicable law.
-
Customer’s Responsibilities
- In performing the Services on behalf of the Customer, the Company is relying on the following information to be true and accurate:
- The Customer is the Controller and the Company is the Processor acting on the Customer’s behalf;
- The Customer shall comply with the applicable laws and regulations related to data protection and confidentiality;
- The Customer shall be responsible for obtaining the consent of the Data Subject for the Processing of the Personal Data;
- To the extent applicable the Customer shall be responsible for notifying or otherwise gaining approval of any regulatory body to the data transfer arrangements.
- In performing the Services on behalf of the Customer, the Company is relying on the following information to be true and accurate: