- Home • Privacy Policy In Accordance With Article 13 Of The Regulation
Privacy Policy In Accordance With Article 13 Of The Regulation
General Data Protection Regulation
This information is given in compliance with article 13 of Regulation (EU) 2016/679 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (General Data Protection Regulation or GDPR) to individuals interested in supporting the implementation of B-THENET (G.A. 101059812), funded by Horizon Europe Programme and coordinated by IZSLT (mail to info@bthenet.eu).
Joint Data Controllers
As of June 16, 2023, the Joint Controller Agreement is in effect among B-THENET Partners link, except for UCM. On a joint controllership basis and subject to the provisions of Article 26 of GDPR, the Parties shall jointly process personal data, for which they shall jointly determine the purposes and means. More information about the B-THENET Joint Controller Agreement is made available to interested Parties upon request.
Type of data processed
Personal data will be collected and stored on the project website. Data processed include Name, Surname, Email, IP address, and phone (optional).
Purposes of processing
The data subject’s personal data will be collected and used within B-THENET project for the following purposes:
● Receiving news, information, invitations to events and workshops, publications, announcements and newsletters relating to the activities conducted by B-THENET
● Management of requests for information, complaints or disputes by IZSLT and APRE as contact point.
Personal data collected are not subject to automated decision-making or profiling. Some online services and tasks can be automated, such as registrations of responses to surveys and registrations to our events, but they are not based on analysing the personal profile of the data subject.
As for the processing of personal data that is carried out by the social media platforms used by B-THENET, please consider the information provided by those platforms through their privacy policies. The personal data made available by users through the social media pages B-THENET manages, as part of its research purposes, are processed exclusively in order to implement the project and handle user interactions (comments, public posts, etc) in full compliance with the applicable legislation.
Legal basis for processing personal data
For the above purposes, the legal basis of the processing is the consent of the data subject to the processing of his or her personal data [art. 6.1.a GDPR]. Should you deny your consent, we will be unable to process your data.
Moreover, the Joint Controllers will process the data for the legitimate interests of the B-THENET website, namely the use of technical cookies [article 6.1.f of the GDPR]. On the other hand, the analytics cookies will be processed according to your consent. For more information, please read the cookies policy. Link
Data Subject Rights
In relation to his or her personal data, the data subject has the power to exercise the rights set out in Articles 15 to 21 under the GDPR, including the right to withdraw your consent at any time.
The rights set out above can be exercised in writing by sending an email to info@bthenet.eu.
You as data subject have also the right to lodge a complaint with the competent Supervisory Authorities according to art 77 of GDPR.
Data storage and retention
All personal data collected will be stored in Aruba (Cloud). Information collected about you will be kept strictly confidential. Only B-THENET Joint Controllers will have access to this information and the sole purpose of storing your data is for project activities.
Aruba secures all personal data through technical and organisational measures to ensure that it is protected from unauthorized access, alteration, or loss.
If the Data subject doesn’t exercise the withdrawn right, data shall be stored for no longer than 5 years after the final payment as Grant Agreement Data Sheet.
Any longer storage periods remain unaffected, in the event that they are required due to legal, accounting and/or fiscal obligations based on the laws and regulations in force.
Disclosure of data outside B-THENET
Your personal data may be disclosed outside of the project for specific reasons. In particular, your personal data may be made available to entities providing IT system management on behalf of controllers, competent authorities and/or public bodies, the European Commission, and supervisory authorities to comply with statutory requirements. Requests by data subjects to exercise their data protection rights shall be handled in a coordinated manner through the e-mail address info@bthenet.eu which shall be identified as a contact point for data subjects in the data protection information provided to them by each Party.
How data is processed
For the above-mentioned purposes, your data will be processed by controllers’ employees and other authorized individuals. Said employees, and other authorized individuals may consult, use, process, compare the data as well as carry out any other appropriate action, including using automated means, always in compliance with statutory requirements that ensure, inter alia, protection of the confidentiality and security of the personal data, as well as data accuracy, update and appropriateness to the purposes for which the data is collected and used, as stated above.
Data re-use
The data stored will be used for the activities relating to the B-THENET project. Moreover, the data could be used for other EU projects that may benefit from them and in accordance with the purpose of the consent given. This includes their processing for research purposes and dissemination activities. Your data will, under no circumstances, be sold to any third parties
Transfer of data outside the European Union
None of controllers shall carry out international transfers of the personal data processed during and after the lifecycle of the project and during the implementation of the project’s aims, according to the CHAPTER V “Transfers of personal data to third countries or international organisations” of GDPR.
Changes and updates
The Controllers may also make changes and/or additions to this privacy notice including due to regulatory changes. As consequence, the Controllers suggest controlling frequently the privacy policy in power on the website.
Data Breach
In the case of a personal data breach, the event will be handled in accordance with Articles 33-34 of the GDPR EU 2016/679 GDPR. The Controllers will undertake all steps necessary to minimize any possible negative consequences.