GDPR Policy

1. Introduction

This GDPR (General Data Protection Regulation) Policy explains how Codex Marketplace complies with GDPR requirements and protects the personal data of individuals located in the European Economic Area (EEA).

2. Data Controller Information

Data Controller: Codex Marketplace

For GDPR-related inquiries, please contact us through our support system or the contact information provided on our website.

3. Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Consent: When you have given clear consent
  • Contract: To fulfill our contractual obligations
  • Legal Obligation: To comply with legal requirements
  • Legitimate Interests: For our legitimate business interests

4. Your Rights Under GDPR

4.1 Right to Access

You have the right to request access to your personal data. You can:

  • View your data in your account dashboard
  • Request a copy of your data
  • Receive information about how we use your data

4.2 Right to Rectification

You can correct inaccurate or incomplete personal data:

  • Update your information in your account settings
  • Request corrections through support

4.3 Right to Erasure (Right to be Forgotten)

You can request deletion of your personal data when:

  • Data is no longer necessary for its original purpose
  • You withdraw consent
  • Data has been unlawfully processed
  • Legal obligations no longer require retention

4.4 Right to Restrict Processing

You can request that we limit how we use your data in certain circumstances.

4.5 Right to Data Portability

You can request a copy of your data in a structured, machine-readable format.

4.6 Right to Object

You can object to processing of your data for:

  • Direct marketing purposes
  • Processing based on legitimate interests

4.7 Right to Withdraw Consent

You can withdraw consent at any time where processing is based on consent.

5. Data We Collect

5.1 Personal Data

  • Name and contact information
  • Account credentials
  • Payment information
  • Profile information
  • Communication data

5.2 Usage Data

  • IP address and device information
  • Browser type and version
  • Pages visited and time spent
  • Cookies and tracking data

6. How We Use Your Data

We use your personal data to:

  • Provide and improve our services
  • Process transactions
  • Communicate with you
  • Comply with legal obligations
  • Prevent fraud and abuse
  • Send marketing communications (with consent)

7. Data Sharing and Transfers

7.1 Third-Party Service Providers

We may share data with trusted service providers who:

  • Process payments
  • Provide hosting services
  • Send emails
  • Analyze website usage

7.2 International Transfers

Your data may be transferred outside the EEA. We ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses
  • Adequacy decisions
  • Other approved transfer mechanisms

8. Data Retention

We retain your personal data:

  • For as long as necessary to fulfill the purposes outlined in this policy
  • As required by law or legal obligations
  • Until you request deletion (subject to legal requirements)

9. Data Security

We implement appropriate technical and organizational measures to protect your data:

  • Encryption of sensitive data
  • Secure servers and networks
  • Access controls and authentication
  • Regular security assessments
  • Staff training on data protection

10. Cookies and Tracking

We use cookies and similar technologies. For detailed information, see our Cookie Policy. You can manage cookie preferences in your browser settings.

11. Children's Data

Our services are not intended for individuals under 16 years of age. We do not knowingly collect data from children. If we become aware of such collection, we will delete it immediately.

12. Data Breach Notification

In the event of a data breach that poses a risk to your rights and freedoms:

  • We will notify the relevant supervisory authority within 72 hours
  • We will notify affected individuals without undue delay
  • Notifications will include details of the breach and steps taken

13. Exercising Your Rights

To exercise your GDPR rights:

  • Log into your account and use available tools
  • Contact us through our support system
  • Email us at the address provided
  • We will respond within one month (may be extended by two months for complex requests)

14. Supervisory Authority

If you are not satisfied with how we handle your data, you have the right to lodge a complaint with your local data protection supervisory authority.

15. Updates to This Policy

We may update this GDPR Policy from time to time. We will notify you of significant changes and update the "Last Updated" date. Continued use of our services after changes constitutes acceptance.

16. Contact Information

For GDPR-related inquiries or to exercise your rights, please contact us:

  • Through your account dashboard support system
  • Via email at the address provided on our contact page
  • Include "GDPR Request" in your subject line for faster processing

We use cookies to personalize your experience. By continuing to visit this website you agree to our use of cookies

More