GDPR Compliance

Effective Date : 13 June 2025

Company Information

1. Introduction and Scope

This document outlines Connekit-eo Inc.'s commitment to compliance with the General Data Protection Regulation (GDPR) (EU) 2016/679. As a Delaware-incorporated digital marketing agency operating AI-powered tools and e-wallet services, we process personal data of EU residents and are therefore subject to GDPR requirements.

Scope of Application :

2. Data Controller Information

3. Lawful Basis for Processing

3.1 Contract Performance (Article 6-1-b)
3.2 Legitimate Interests (Article 6-1-f)
3.3 Consent (Article 6-1-a)
3.4 Legal Obligation (Article 6-1-c)

4. Categories of Personal Data Processed

4.1 Client and Customer Data
4.2 E-Wallet Specific Data
4.3 AI-Generated Data

5. Data Processing Activities

5.1 Digital Marketing Services

Purpose : deliver targeted campaigns for clients
Recipients : client organizations, advertising platforms, analytics providers
Retention : 3 years post-campaign or client relationship termination

5.2 AI Tool Operations

Purpose : AI-powered marketing insights and automation
Retention : aggregated data indefinitely; personal data 2 years

5.3 E-Wallet Services

Purpose : digital payments and transactions
Retention : 7 years for financial records; 5 years for transaction data

6. International Data Transfers

6.1 Transfer Mechanisms
6.2 Key Transfer Recipients

7. Data Subject Rights

Connekit-eo Inc. facilitates the following rights for EU data subjects:

7.1 Right of Access (Article 15)
7.2 Right to Rectification (Article 16)
7.3 Right to Erasure (Article 17)
7.4 Right to Restrict Processing (Article 18)
7.5 Right to Data Portability (Article 20)
7.6 Right to Object (Article 21)

8. Automated Decision-Making and Profiling

8.1 AI-Powered Marketing Decisions
8.2 E-Wallet Risk Assessment
8.3 Customer Segmentation

9. Data Security Measures

9.1 Technical Safeguards
9.2 Organizational Measures
9.3 E-Wallet Specific Security

10. Data Retention

10.1 General Retention Policy
10.2 E-Wallet Data Retention
10.3 Legal Hold Exceptions

11. Data Breach Procedures

11.1 Incident Response Plan
11.2 Regulatory Notification
11.3 Communication Protocol

12. Vendor and Third-Party Management

12.1 Data Processing Agreements
12.2 Due Diligence Process

13. Employee and Contractor Data

13.1 HR Data Processing
13.2 Contractor Management

14. Children’s Data Protection

14.1 Age Verification
14.2 Special Protections

15. Privacy by Design and Default

15.1 System Development
15.2 Default Settings
*

16. Training and Awareness

16.1 Staff Training Program
16.2 Awareness Initiatives

17. Monitoring and Compliance

17.1 Regular Auditing
17.2 Performance Metrics

18. Document Control

18.1 Version Management
18.2 Distribution

19. Regulatory Information

19.1 Supervisory Authority
19.2 Legal Framework

This GDPR compliance statement was last reviewed and approved by the leadership team of Connekit-eo Inc. on 13 June 2025.
For any questions regarding this compliance overview, please contact our Data Protection Officer at infocompte@connekit-eo.io.

This page outlines our public commitment to data protection and GDPR compliance. Connekit-eo Inc. continuously updates its practices to meet evolving privacy standards and regulatory expectations.