Le registre de traitement des données consommateurs est un élément clé de la conformité au RGPD

The consumer data processing register is a key element of GDPR compliance

THE treatment register is one of the key elements of the GDPR compliance and data management.

Here is an example of a processing register for consumer data which contains the following information: title, surname, first name, year of birth, postal address, mobile phone number, email address, credit card information, date and nature of purchase, delivery date.

Consumer Data Processing Register

Identification of the data controller:

  • Name: [your name or your company name],
  • Address: [your address],
  • Contact: [your email address or phone number].

Purpose of processing:

  • Management of orders and deliveries of products purchased by consumers,
  • Billing and payment for products purchased by consumers,
  • Management of consumer returns and complaints,
  • Marketing and communication with consumers for commercial offers similar to their purchases.

Legal basis for processing for GDPR compliance:

  • Execution of the contract with consumers for the management of orders, deliveries, payments and returns,
  • Legitimate interest in commercial communication with consumers.

Categories of personal data processed:

  • Title, surname, first name, year of birth, postal address, mobile phone number, email address, credit card, date and nature of purchase, delivery date.

Categories of recipients of personal data:

  • Payment providers for payment management,
  • Carriers for delivery management,
  • Customer services for returns and complaints management,
  • Marketing and communication providers for the management of commercial offers.

Duration of storage of personal data:

  • Payment data is kept for the period necessary to manage payments and invoicing,
  • Delivery data is kept for the period necessary to manage deliveries and returns,
  • Commercial communication data is retained until consumers object to its use.

Security measures implemented:

  • Restricted access to personal data,
  • Protection of personal data by password and encryption,
  • Regular backup of personal data.

To easily create your ad hoc processing registers, to comply with all legal requirements applicable to the protection of personal data and to be in GDPR compliance, Viqtor® accompanies you, assists you and guides you so that nothing is omitted. This is invaluable when carrying out numerous and varied processes for which it is necessary to create and maintain records, such as: payroll management, candidate CV database, suppliers, distributors, customers, prospects, etc.

Register of employee data processing

Among the most important elements for the GDPR compliance and data management is the treatment register.

Here is an example of a processing register for internal and external employee data which contains the following information allowing them to access and move around the secure premises of a company: title, surname, first name, position, department, company, personal address of their home, mobile telephone number, e-mail address, status, accreditation level, geolocation in the premises, biometric data: facial recognition and fingerprints.

Register of processing of data of internal and external collaborators for the GDPR compliance and of the data management.

Identification of the data controller:

  • Name: [your name or your company name],
  • Address: [your address],
  • Contact: [your email address or phone number].

Purpose of processing:

  • Management of access and movement of employees within the company premises,
  • Security of company premises.

Legal basis for processing for GDPR compliance:

  • Legitimate interest in the security of company premises.

Categories of personal data processed:

  • Title, surname, first name, position, department, company, personal home address, mobile phone number, email address, status, accreditation level, geolocation on the premises, biometric data: facial recognition and fingerprints.

Categories of recipients of personal data:

  • Corporate security officers,
  • Security service providers.

Duration of storage of personal data:

  • Geolocation data is kept for the period necessary to manage access and movement of employees within the company's premises,
  • Biometric data is retained until the employee stops working for the company.

Security measures implemented:

  • Restricted access to personal data,
  • Protection of personal data by password and encryption,
  • Physical access control to company premises,
  • Storage of biometric data in a secure environment,
  • Informing employees about the security measures implemented.
traitement des donnés personnels

To simply create your treatment records ad hoc and to comply with all applicable legal requirements for the protection of personal data, Viqtor® accompanies, assists and guides you so that nothing is omitted. This is invaluable when carrying out numerous and varied processing operations for which it is necessary to create and maintain records, such as: payroll management, candidate CV database, suppliers, distributors, customers, prospects, etc.

en_USEN