Privacy Policy – Orkest.net
Effective Date: July 21, 2024
This Privacy Policy describes how Orkest Tecnologia e Desenvolvimento de Software LTDA ("Orkest", "we", "our") collects, uses, stores and protects your information when you use our services, in compliance with the General Data Protection Law (LGPD) and the General Data Protection Regulation (GDPR).
1. Who We Are
Company: Orkest Tecnologia e Desenvolvimento de Software LTDA
Headquarters: São Paulo, SP – Brazil
Website: https://orkest.net
E-mail: [email protected]
2. Settings
- Personal Data: Any information relating to an identified or identifiable natural person.
- Data Subject: The natural person to whom the personal data refers.
- Controller: The natural or legal person who determines the purposes and means of processing personal data.
- Operator: The natural or legal person who carries out the processing of personal data on behalf of the controller.
- Processing: Any operation performed on personal data, such as collection, production, reception, classification, use, access, reproduction, transmission, distribution, processing, archiving, storage, deletion, evaluation or control of information, modification, communication, transfer, dissemination or extraction.
3. Data We Collect
We collect different types of personal data when you explicitly authorize the connection via LinkedIn Member Data Portability API:
- Registration Information: Full name, email address, phone number and other information provided at the time of registration.
- Professional Information: Job title, company, professional experience and other information related to your professional profile.
- Third-Party Information: Professional contact data provided by you or collected from public, professional sources for the purpose of creating posts, if available on LinkedIn via API and with your authorization,
4. Purposes of Data Processing
We use personal data collected for the following purposes:
- Providing and managing our services, including creating and managing user accounts.
- Personalizing the creation of posts.
- Complying with legal and regulatory obligations.
5. Legal Basis for Processing
The processing of personal data is carried out based on the following legal assumptions:
- Consent: When you give us explicit permission to process your data for specific purposes.
- Performance of Contract: When processing is necessary to fulfill contractual obligations.
- Legal or Regulatory Obligation: To fulfill legal or regulatory obligations.
- Legitimate Interest: When processing is necessary to meet our legitimate interests, provided that the fundamental rights and freedoms of the data subject do not prevail.
6. Data Sharing
We do not share your personal data with third parties, except in the following circumstances:
- Orkest hosts on Microsoft Azure, which has certificates such as ISO 27001 among others.
- With public authorities, when required by law or to protect our legal rights.
We ensure that all third parties with whom we share your data comply with applicable data protection laws.
7. International Data Transfer
Your personal data may be transferred to and stored on servers in Brazil and/or the United States. In such cases, we adopt appropriate measures to ensure that your data is treated with the same level of protection required by the LGPD and GDPR, such as standard contractual clauses and internationally recognized certifications. Orkest operates only with Microsoft Azure, so we can allocate in any location supported by Microsoft Azure. We currently only operate in Brazil and the United States.
8. Data Retention
We retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. When we no longer need to process your data, we will securely delete or anonymise it.
9. Data Security
We have implemented appropriate technical and organisational measures to protect your personal data against unauthorised access, misuse, alteration and destruction. These measures include:
- Encryption of data in transit and at rest.
- Strict access controls and multi-factor authentication.
- Continuous monitoring of our systems for suspicious activity.
- Regular training of our employees on information security practices.
10. Your Rights
You have the following rights in relation to your personal data:
- Access: Obtain confirmation about the existence of processing and access to your personal data.
- Correction: Request the correction of incomplete, inaccurate or outdated data.
- Anonymization, blocking or deletion: Request the anonymization, blocking or deletion of unnecessary, excessive or data processed in disagreement with the LGPD.
- Portability: Request the portability of data from another service or product provider.
- Delete: Request the deletion of personal data processed based on your consent.
- Information: Be informed about the public and private entities with which we share data. data.
- Revocation of consent: You can revoke your consent at any time by expressing your consent.
To exercise your rights, please contact us by email: [email protected].
11. Cookies and Similar Technologies
We use cookies and similar technologies to enhance the functionality of our website. You can set your browser to refuse all or some cookies, or to alert you when websites set or access cookies. If you disable or refuse cookies, please note that some parts of this website may become inaccessible or not function properly.
12. Children's Privacy
Our services are not intended for children under 18 years of age. We do not knowingly collect personal data from children. If we become aware that we have collected personal data from a child, we will take steps to delete that information as quickly as possible.
13. Automated Decisions
We do not use automated decision-making processes that produce legal or similarly significantly effects on you. Any personalization of content or recommendations is based on non-automated analysis.
14. Links to Third-Party Sites
Our website may contain links to third-party websites, primarily social media sites. We are not responsible for the privacy practices of those websites. We encourage you to read the privacy policies of every website you visit.
15. Changes to this Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on our website and updating the effective date. We encourage you to review this policy regularly to stay informed about how we are protecting your information.
16. Contact
If you have any questions, requests or concerns regarding this Privacy Policy or the processing of your personal data, please contact us through the channels below:
We are committed to responding to all requests as soon as possible, respecting the legal deadlines established by the LGPD and GDPR.
17. Complaints and Oversight
If you believe that your data has been processed in a manner incompatible with this Policy or with applicable data protection laws, you have the right to lodge a complaint with the National Data Protection Authority (ANPD) in Brazil or with the competent data protection supervisory authority in your jurisdiction.
For more information, visit: https://www.gov.br/anpd/
18. Updates to this Policy
This Privacy Policy may be modified to reflect changes in our practices, technological advances, legal changes or other operational reasons. Whenever there is an update, we will post the new version on this page and inform you of the effective date at the beginning of the document.
We recommend that you read this document periodically so that you are always up to date on how we protect your information.