Privacy statement

Introduction StackSecure B.V. (“we” or “us”) respects the privacy of its users and ensures that personal data is treated with care. This privacy statement is intended for both website visitors and customers of StackAware and explains what data we collect, how we process it and what rights you have.

What data do we collect?

For website visitors

When you visit our website, we collect:
1. IP addresses: For security and analyzing website usage.
2. Cookies: For functional, analytical and marketing purposes (see our separate Cookie Statement for details).

For customers of StackAware and its employees

Data comes from your employer. When using our services, we process the following data:

1. Profile Information:
o Optional: A nickname.
o Optional: A self-uploaded profile picture.
o Required: First and last name.
o Business email address.

2. Learning and usage data:
o Progress in trainings and modules, to analyze and monitor progress.

3. Phishing simulations:
During phishing simulations, we collect:
o Behavior related to the simulation, such as:
▪ Opening an email (via a tracking pixel).
▪ Clicking on links (where we register the browser and operating system used, so we can make targeted improvement suggestions).
o Whether the participant clicked submit in a phishing form. Note: We do not collect entered usernames or passwords. The form does not send this data to us.

4. Data through the module maker:
When a customer uploads videos through the module maker, they are stored on Vimeo’s servers. We use a professional Vimeo account, so the content is not publicly accessible.

Purposes of data processing

We process your data only for the following purposes:

For website visitors
– Securing and improving our website.
– Analyzing usage statistics.
– Targeted advertising and marketing.

For customers of StackAware and its employees
– Providing personalized training and learning experiences.
– Analyzing learning performance and progress monitoring.
– Training employees against phishing risks through simulations.
– Enabling customer-specific content, such as videos through the module creator.

Legal basis for processing

We process personal data based on:
– Performance of a contract: For services we provide to clients.
– Consent: For setting marketing cookies.
– Justified interest: For security and improving our services.

Retention periods

Website visitors: Data such as cookies and IP addresses are retained according to the time periods specified in our Cookie Statement.
– Customers of StackAware and its employees: Data is retained for as long as the customer relationship exists and for up to 5 weeks thereafter, unless a longer retention period is required by law.

Sharing data with third parties

We do not sell data to third parties.
– Data is only shared when necessary for our services, such as:
o Vimeo: For streaming training videos, a connection is made to Vimeo’s streaming platform. This may involve sharing your IP outside the EEA.
– Data will be shared if StackSecure is required to do so as part of a legal investigation.

Data security

We take appropriate technical and organizational measures to protect your data from loss, unauthorized access or misuse.

Your rights

As a website visitor
You have the following rights regarding your personal data:
1. Inspection: You can request what data we hold about you.
2.Correction: You can have incorrect data corrected.
3.Deletion: You can request deletion of data, unless we are legally obliged to keep it.
4.Objection: You can object to the processing of your data.
5.Withdraw consent: For example, for cookies or marketing purposes.
6.Data portability: You can receive your data in a structured, digital format.

Please contact us at privacy@stack-secure.com to make a request. You also have the right to file a complaint with the Personal Data Authority if you believe we are processing your data unlawfully.

As an employee of customer of StackAware

StackSecure is generally a processor under the AVG and processes personal data under the responsibility of its clients, your employer. You may contact your employer with the above requests.

Cookie Statement

For details on the use of cookies, please see our separate Cookie Statement

Contact

For questions or complaints about this privacy statement, please contact us at:
– Email address: privacy@stack-secure.com
– Phone number: 085 060 6447

Changes to this statement

We reserve the right to change this statement. Please check this page periodically for updates.

Last updated: 04-12-2024