Personal Data Processing Policy
A Society AB [including our subsidiaries] (hereinafter “we”) respects your privacy and the right to have control over your personal data. Our guiding principles are simple. We will be open about what data we collect and why. Our processing of personal data is in accordance with the provisions of the applicable personal data legislation at any time, including the EU General Data Protection Regulation, GDPR, EU 2016/679.
Personal data we collect
We primarily collect the data directly from you within the framework of the relationship we have with you. You may be a contact person for one of our customers, suppliers and/or partners or also be a sub-consultant and/or job seeker. In short, we may process personal data for people with whom we interact within the framework of our operations as part of the care and maintenance of our business relationship with your employer or you personally.
Examples of personal data we may process include your name, contact information such as mobile phone number, address, email address, CV, LinkedIn profile, and other social media. We may also update your information from other public registers, such as via the Swedish Companies Registration Office, SPAR, etc. if it is deemed necessary to maintain good record keeping
We may also register personal data when you interact digitally with us in connection with:
When you enter your name, CV, social security number, postal address, email address and/or your mobile phone number on any of our websites.
If you contact us via email, our websites and social media.
If you sign up for any of our newsletters or register for any of our digital services.
Your visit to our websites and/or apps, including but not limited to traffic data, location data, weblogs and other communication data as well as e.g. the IP address, type of device, operating system and browser type used for the visit.
Purpose and legal basis
We process your personal data in light of the purposes set out below and the legal basis stated.
Purpose: To manage and maintain our customer or supplier and/or partner relationships with your company (where you are employed) or you as a contractor/partner, and to fulfil the obligations arising from applicable agreements, orders and requests, which may involve the processing of personal data in digital business support such as customer care systems and supplier databases.
Legal basis: Our legitimate interest in maintaining our business relationships and fulfilling what is expected under commercial agreements.
Purpose: To handle administration, invoicing, correspondence, etc. with our partners and enable good service, correct incorrect information and/or send information that has been requested or that we assess may be of your (or your employer’s) interest in light of our business relationship.
Legal basis: Our legitimate interest in maintaining our business relationships and fulfilling what is expected under commercial agreements.
Purpose: To manage and maintain our relationship with you as an individual contractor or job seeker, in order to match requests to open assignments and positions.
Legal basis: Our legitimate interest in maintaining and fulfilling what is expected in our business relationships and fulfilling agreements to the extent that you have registered/signed up for this.
Purpose: To perform, administer, develop and improve our digital services (websites, apps, databases, etc.), which may include analysis of user behavior and statistical data at an aggregate level, as well as storage and analysis.
Legal basis: Our legitimate interest in providing and ensuring functioning digital services and ensuring effective information provision and marketing about our business.
Purpose: To contact you via email, app, SMS, or post about offers, promotions or services that we believe may be of interest to your employer or you (note that you can refuse this marketing).
Legal basis: Our legitimate interest in offering and marketing services and products that we assess are of interest to your employer or you.
Information that may be disclosed
We may disclose your personal data to companies within our group within the framework of the cooperation we have within the group of companies and which we consider to be of interest and relevance to the business relationship we have with your employer or you. We may also share personal data with service providers that we have engaged to fulfill the purposes of our processing of your personal data. These service providers provide IT services and marketing services unless otherwise informed. If you are a commissioned or job seeker, information may also be disclosed to external customer or pa
partner companies as part of our work to find assignments for you.
We only cooperate with partners who process personal data within the EU/EEA or with companies that maintain the same level of protection as within the EU/EEA. All transfers of personal data comply with the requirements of the GDPR.
Storage and processing of personal data
The processing takes place in accordance with applicable legislation and means that personal data is not retained for a longer period than is necessary with regard to the purposes of the processing. We will store your personal data as long as you are an active and potential customer, supplier (including sub-consulting partner or job seeker), or partner of ours. If our relationship has ended and/or it is not considered reasonable for it to be reactivated, we will process your data. Such a review takes place periodically and at least once a year. Unless we have specifically pointed this out, or obtained your specific approval, personal data belonging to persons who have been inactive in their relationship with us is processed no later than after 3 years of inactivity.
Some information may be retained for longer when required by law, such as the Accounting Act.
In all processing and storage of personal data, confidentiality and the relevant level of organizational and technical security measures are observed based on the risk and sensitivity of the data being processed.
Personal data processing agreement and other applicable terms
If your personal data processed by us is subject to a processing agreement that we have entered into with your employer or other party who is responsible for your personal data, such processing agreement (to the extent appropriate) takes precedence over what is stated in this policy. In such a case, we will process your personal data in accordance with what follows according to such processing agreement. Similarly, if you have registered for any of our services, mailings, etc., the terms and conditions presented in connection with your use of such service apply.
Your rights and choices
You have rights regarding your personal data and you have the opportunity to influence your information and what is saved. We will, on our own initiative, yours and/or our partners’ initiative, correct data that is found to be incorrect. You can also request that your data be deleted or that its use be restricted by contacting us (for contact methods, see the heading “How to contact us”). If you believe that your rights are not being respected by us, you are welcome to contact us or you can contact the privacy protection authority (formerly the Swedish Data Protection Authority). You have the right, under certain circumstances, to receive the personal data that you have provided to us and that concerns you in an electronic format that is commonly used and have the right to transfer such data to another data controller (data portability). You also have the right to object to the processing of your personal data that is based on our legitimate interest. If this happens, we must demonstrate compelling legitimate grounds that outweigh your interests, rights and freedoms for continuing the processing.
You can opt out of receiving marketing communications from us at any time by – where relevant – updating your account settings by clicking on “Receive more or less…” in the e-mail and SMS communications we send you. You are always welcome to contact us at info@asociety.se for help in refusing our communications.
You can obtain information about which personal data are registered by requesting a so-called register extract from us in writing.
Links to other websites
In the event that our website contains links to third-party websites, homepages, or material published by third parties, these links are for informational purposes only. Since we have no control over the content of these websites or their material, we are therefore not responsible for their content. We are also not responsible for any damage or loss that may arise from the use of these links.
Cookies
We use “cookies” to track your activity on our website. Cookies are small pieces of data that our website stores on your computer. These are activated based on your preferences when you visit our website so that we can better understand what type of content you prefer. If you prefer that we do not store cookies on your computer, you should change the settings of your browser so that it rejects cookies from us. You should be aware that this means that you will not be able to benefit from some of the information found on our website. This policy is only applicable to cookies between your computer and our website. It does not cover cookies provided by advertisers. The information collected in cookies is available to us and our website developers. Below you will find information about the cookies we use together with those that
provides cookies.
Google Analytics
To learn more about Google Analytics and your privacy, visit the “How Google uses data when you use our partners’ sites or apps” page at www.google.com/policies/privacy/partners/. To opt out of being tracked by Google Analytics when using our website, visit http://tools.google.com/dlpage/gaoptout.
How to contact us
For further information about personal data management or if you have any questions, please contact us as follows:
A Society AB
Attn: Data Protection Officer
Postal address: Mobilvägen 10,
223 62 Lund
E-mail address:
info@asociety.se