Register and Privacy Statement

This is Kala-Lappi Oy’s register in accordance with the EU General Data Protection Regulation (GDPR).
privacy statement. Prepared on 21 September 2023. Latest change 21.9.2023.

1. Register

Kala-Lappi Oy
Kapteeninväylä 7
70900 Toivala
Finland

2. The contact person responsible for the register

Vesa Lappi
CEO
+358 45 1569 225
vesa.lappi@kalalappi.fi

3. Register name

Kala-Lappi Oy’s customer, marketing and stakeholder register.

4. Legal basis and purpose of personal data processing

Management of the company’s customer relations. Collected personal data can be used for marketing purposes within the limits permitted and required by the Personal Data Act. Information will not be passed on. The information is not used for automated decision-making or profiling.

5. Data content of the register

– Name
– Address
– Email address
– Phone number
– Information regarding order or additional information requests
– The customer’s purchase history

IP addresses of website visitors and cookies necessary for service functions processed on the basis of a legitimate interest, e.g. to take care of information security and for the collection of statistical data of website visitors in those cases when they can be considered as personal data.

If necessary, consent is requested separately for third-party cookies.

6. Regular sources of information

The information to be saved in the register is obtained from the customer, e.g. from messages sent via www forms, by e-mail, telephone, social media services, contracts, customer meetings and other situations where the customer discloses their information. Contact information for companies and other organizations can also be collected from public sources such as websites, directory services and other companies.

7. Regular transfers of data and transfer of data outside the EU or EEA

Information is not regularly disclosed to other parties. Information can be published to the extent that it is
has been agreed with the customer.

8. Principles of registry protection

Care is taken in the processing of the register and the information processed with the help of information systems are properly protected. When registry data is stored on Internet servers, their hardware physical and digital information security is taken care of appropriately. The registrar takes care that stored data as well as server access rights and other personal data safety-critical information is handled confidentially and only by their employees by those whose job description it belongs to.

9. Right of inspection and right to demand correction of information

Every person in the register has the right to check their information stored in the register and demand the correction of any incorrect information or the completion of incomplete information. If the person wants to check the information stored about him or demand corrections, the request must be sent in writing to the controller. If necessary, the registrar may ask the requester to prove his identity. The controller responds to the customer within the time stipulated in the EU data protection regulation (generally within a month).

10. Other rights related to the processing of personal data

A person in the register has the right to request the deletion of their personal data from the register (“right to be forgotten”). Those registered also have other rights according to the EU’s General Data Protection Regulation, such as limiting the processing of personal data in certain situations. Requests must be sent in writing to the controller. If necessary, the registrar may ask the requester to prove his identity. The controller responds to the customer within the time stipulated in the EU data protection regulation (generally within a month).

11. Use of cookies

On our website, we use the so-called cookie function, i.e. cookies. The cookie is small, for the user’s computer a text file to be sent and stored there, which enables the administrator of internet pages to identify visitors who frequently visit the pages, to facilitate the login of visitors to the pages and to enable the compilation of composite information about visitors. With this feedback, we can to constantly improve the content of our pages. Cookies do not damage users’ computers or files. We use them in such a way that we can offer our customers each individual one
information and services according to needs.
If the user visiting our website does not want us to receive the aforementioned information using cookies, the choice must be made in the cookie settings of the browser: the settings appear the first time you access the site. It is good to take into account that cookies may be necessary for the proper functioning of some of the pages we maintain and the services we offer.
The website uses Complianz’s Privacy Suite for WordPress software for consent information for collecting. For this function, your IP address is anonymized and stored in our database.

Cookie Policy (EU)