Skip to content

Commit 2281588

Browse files
Sofie Toft Kristensengitbook-bot
authored andcommitted
GITBOOK-36: Minor adjustments to GDPR docs
1 parent ae5ec55 commit 2281588

File tree

3 files changed

+20
-15
lines changed

3 files changed

+20
-15
lines changed

13/umbraco-engage/SUMMARY.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -126,7 +126,7 @@
126126
* [Security and privacy](security-and-privacy/README.md)
127127
* [Retention periods of data](security-and-privacy/retention-periods-of-data.md)
128128
* [Anonymization](security-and-privacy/anonymization.md)
129-
* [GDPR + EU regulation friendly](security-and-privacy/gdpr/README.md)
129+
* [GDPR & EU regulation](security-and-privacy/gdpr/README.md)
130130
* [How to become GDPR compliant using cookiebot](security-and-privacy/gdpr/how-to-become-gdpr-compliant-using-cookiebot.md)
131131
* [How it works](security-and-privacy/how-it-works.md)
132132

Lines changed: 16 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,4 @@
1-
# GDPR + EU regulation friendly
2-
3-
{% hint style="info" %}
4-
This document is a work in progress and is subject to change without warning.
5-
{% endhint %}
1+
# GDPR & EU regulation
62

73
**Disclaimer**: Always check you are GDPR compliant with your own privacy office or legal department
84

@@ -17,29 +13,36 @@ Umbraco Engage principles:
1713
* Umbraco Engage uses specific retention periods and personal data is not kept longer than necessary.
1814
* Umbraco Engage has set up its software according to the principles of privacy by design and by default.
1915

20-
## GDPR compliance
16+
## GDPR Compliance
2117

2218
Umbraco Engage has been designed with the principles of privacy by design and privacy by default in mind. For example, the following measures have been taken:
2319

24-
* The retention period for **the Umbraco Engage cookie is 365 days by default**. The data is **anonymized after two years**, and **fully deleted after four years**;
25-
* The IP address is pseudonymized by default;
26-
* The use of view and click behaviour is optional;
20+
* The retention period for **the Umbraco Engage cookie is 365 days by default**.
21+
* The data is **anonymized after two years**, and **fully deleted after three years**.
22+
* The IP address is pseudonymized by default.
23+
* The use of view and click behavior is optional.
2724
* Neither Umbraco Engage nor any other third party has access to the data\
28-
(except for, for example, your own hosting provider), as the cookie is first\
25+
(except for, for example, custom hosting provider), as the cookie is first\
2926
party.
3027

31-
You can change the default settings. However, we do not recommend doing so, as they are set in line with the General Data Protection Regulation (hereinafter: GDPR).
28+
You can change the default settings. However, we do not recommend doing so, as they are set in line with the General Data Protection Regulation (GDPR).
3229

3330
### Information obligation
3431

35-
When using Umbraco Engage, this means that you, as a customer, have to inform about the use of Umbraco Engage, which personal data is processed, why it is processed and how. In order to comply with this information obligation set by the GDPR, **you can add the following text to your privacy (and cookie) statement**:
32+
When using Umbraco Engage, this means that you, as a customer, have to inform about the use of Umbraco Engage, which personal data is processed, why it is processed, and how. To comply with the information obligation set by the GDPR, **you can add the following template to your privacy (and cookie) statement**:
3633

3734
> _On our website we use_ Umbraco Engage\_. This is add-on software from\_ Umbraco\_, which allows us, through the use of a cookie, to analyze the website behavior of the website visitor. Based on this information, we can improve the user experience and personalize content for each specific website visitor. In order to do so, we process, amongst other things, your pseudonymized IP address, cookie ID, website and clicking behavior (optional), how you got to visit our website and your browser data. Only we have access to this personal data. **The cookies will be deleted from your device after one year. The personal data collected through the use of the cookie will be retained for a maximum of two years. Hereafter, the data will be anonymized and retained for another two years**. This way, we can identify trends on the website and improve the website.\_
3835
36+
{% hint style="info" %}
37+
Remember to adjust the template to match the configuration on your website.
38+
{% endhint %}
39+
40+
41+
3942
### Cookie consent 🍪
4043

4144
[The cookie of Umbraco Engage can be categorized as an analytical and personalization cookie in one](../../developers/introduction/the-umbraco-engage-cookie/), as the cookie is used to analyze website visitor behavior and to personalize the content of the website based on this behavior. For analytical and personalization cookies consent is required, based on the GDPR and the ePrivacy Directive.
4245

43-
As a customer and the controller of the personal data processed by the use of Umbraco Engage, **it is your responsibility to obtain consent from the website visitor for the use of the Umbraco Engage cookie**. Consent can be obtained by means of a cookie banner.
46+
As a customer and the controller of the personal data processed by the use of Umbraco Engage, **it is your responsibility to obtain consent from the website visitor for the use of the Umbraco Engage cookie**. Consent can be obtained using a cookie banner.
4447

4548
You can [control the features of Umbraco Engage](../../developers/introduction/the-umbraco-engage-cookie/module-permissions.md) and give your visitors total control over which features they which to enable.

13/umbraco-engage/security-and-privacy/retention-periods-of-data.md

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,9 @@ description: >-
99

1010
There is no reason to store your visitor data forever. As privacy is an important aspect of Umbraco Engage, you have tools to ensure you do not store the data forever.
1111

12-
You can [configure](../developers/settings/configuration.md) Umbraco Engage to delete three data types after a certain period.
12+
You can [configure](../developers/settings/configuration.md) Umbraco Engage to delete three types of data after a certain period.
13+
14+
<table><thead><tr><th width="282">Type of data</th><th width="217">Anonymized</th><th>Deleted</th></tr></thead><tbody><tr><td><strong>Raw Data</strong></td><td>-</td><td>5 days</td></tr><tr><td><strong>Control Group Data</strong></td><td>-</td><td>180 days</td></tr><tr><td><strong>Processed Data</strong></td><td> 2 years</td><td>3 years</td></tr></tbody></table>
1315

1416
* **Raw data** is collected in [the first phase of the data flow](../developers/introduction/dataflow-pipeline/data-collection.md). This data is stored and parsed a few moments later. By default, this data gets deleted after 5 days. It is recommended that this data is stored for no longer than 30 days.
1517
* **Control group data** is used for [personalization](../developers/personalization/) purposes. When a visitor visits a personalized page, Umbraco Engage keeps track of whether that visitor is in a control group for user experience consistency. By default, this gets deleted after 180 days. The recommendation is to not increase this.

0 commit comments

Comments
 (0)