GDPR Compliance
Your data protection rights under the General Data Protection Regulation
Introduction
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that applies to the processing of personal data of individuals in the European Union and European Economic Area. Calm Flame is committed to ensuring compliance with GDPR principles and protecting your data rights.
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: When you have given clear consent for us to process your personal data for specific purposes
- Contract Performance: When processing is necessary to fulfill our contract with you (e.g., providing cooking classes you've booked)
- Legal Obligation: When we must process your data to comply with legal requirements
- Legitimate Interests: When processing is necessary for our legitimate business interests, provided your rights do not override those interests
Your Rights Under GDPR
If you are a resident of the EU/EEA, you have the following rights regarding your personal data:
Right to Access
You have the right to request copies of your personal data. We may charge a reasonable fee for additional copies beyond the first request.
Right to Rectification
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
Right to Erasure
You have the right to request that we erase your personal data under certain conditions, such as when the data is no longer necessary for the purposes it was collected or you withdraw consent.
Right to Restrict Processing
You have the right to request that we restrict the processing of your personal data under certain conditions, such as when you contest the accuracy of the data.
Right to Object
You have the right to object to our processing of your personal data under certain conditions, particularly for direct marketing purposes.
Right to Data Portability
You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.
Right to Withdraw Consent
When we rely on consent as the legal basis for processing, you have the right to withdraw your consent at any time. This will not affect the lawfulness of processing based on consent before withdrawal.
Right to Lodge a Complaint
You have the right to lodge a complaint with a supervisory authority if you believe we have violated your data protection rights.
How to Exercise Your Rights
To exercise any of your GDPR rights, please contact us at [email protected]. We will respond to your request within one month. In some cases, we may extend this period by an additional two months if your request is complex or we receive multiple requests.
When making a request, please provide sufficient information to allow us to verify your identity and locate your data. We may ask for additional information to confirm your identity before processing your request.
Data Protection Officer
For questions specifically related to data protection and GDPR compliance, you may contact our data protection contact at [email protected].
Data Transfers
When we transfer personal data outside the EU/EEA, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses approved by the European Commission
- Transfers to countries with an adequacy decision
- Other legally recognized transfer mechanisms
Automated Decision-Making
We do not use automated decision-making or profiling that produces legal effects or similarly significantly affects you.
Data Breach Notification
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach, as required by GDPR.
Children's Data
We do not knowingly process personal data of children under the age of 16 without parental consent. If you believe we have collected data from a child without appropriate consent, please contact us immediately.
Updates to This Page
We may update this GDPR information page to reflect changes in our practices or legal requirements. Please check back periodically for updates.
Contact Information
For any questions or concerns regarding GDPR compliance or to exercise your rights, please contact us:
Calm Flame
Email: [email protected]
Address: 47 Brunswick Street, Fitzroy VIC 3065, Australia
Supervisory Authority
If you are located in the EU/EEA and have concerns about how we handle your personal data, you have the right to lodge a complaint with your local data protection supervisory authority.