{"id":53,"date":"2025-08-04T15:10:52","date_gmt":"2025-08-04T13:10:52","guid":{"rendered":"https:\/\/trendidivat.hu\/en\/?page_id=53"},"modified":"2025-08-04T15:10:52","modified_gmt":"2025-08-04T13:10:52","slug":"privacy-policy","status":"publish","type":"page","link":"https:\/\/trendidivat.hu\/en\/privacy-policy\/","title":{"rendered":"Privacy Policy"},"content":{"rendered":"
<\/p>\n
From data controller <\/em><\/strong>The records to be kept by the controller must contain the following information:<\/p>\n It is also recommended to describe the processing activity in a few sentences and to specify the legal basis for the purpose (possible legal bases are set out in Article 6(1) and, for special categories of personal data, in Article 9(2)).<\/p>\n <\/p>\n Name of data controller: Trendidivat Fashion Kft.<\/strong> Phone: +36 ….<\/strong> E-mail: trendidivatfashionkft@gmail.com<\/strong> Data Controller’s representative: J\u00f3zsef Katona <\/strong> Phone: +36 ….<\/strong> E-mail: trendidivatfashionkft@gmail.com<\/strong><\/p>\n <\/p>\n (with whom personal data are shared)<\/td>\n for the fulfilment of legal (notification) obligations,<\/p>\n establishment, maintenance and termination of employment relationships, contact management, payment of wages…<\/td>\n performance of a legal obligation,<\/p>\n consent of the data subject<\/td>\n <\/td>\n processing based on consent for an indefinite period or until the withdrawal of the data subject’s consent<\/td>\n for issuing invoices, contacting the customer,<\/p>\n contract fulfilment<\/td>\n telephone number, basic data necessary for issuing the invoice (name, address\/address, tax number) and all personal data, including sensitive data, which are collected in the course of the performance of the matter covered by the mandate<\/td>\n (suppliers), contacting the partner<\/td>\n phone number<\/p>\n <\/td>\n <\/p>\n <\/p>\n DATA PROTECTION INCIDENT RECORD<\/strong><\/p>\n <\/p>\n A data breach is a breach of security<\/strong> thatresults in the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, personal data<\/strong> transmitted, stored or otherwise processed. A personal data breach may cause physical, pecuniary or non-pecuniary damage to natural persons, including loss of control over their personal data or restriction of their rights, discrimination, identity theft or misuse, financial loss, unauthorised impersonation, damage to reputation, damage to the confidentiality of personal data protected by professional secrecy or other significant economic or social harm to the natural persons concerned. The data protection incident must be notified to the data protection authority<\/strong> (using a so-called ‘model data protection incident report<\/strong> ‘, the content of which is specified in the GDPR) without undue delay and, if possible, no later than 72 hours after the data protection incident has come to its attention,<\/strong> unless<\/strong> the data protection incident is unlikely to pose a risk<\/strong> to the rights and freedoms of natural persons. The data breach notification must include:<\/p>\n If the notification isnot made within 72 hours, it must be accompanied by the reasons justifying the delay.<\/strong> It is also the responsibility of the data processor<\/strong> to notify the data controller of<\/strong> the personal data breach without<\/strong> undue delay<\/strong> after becoming aware of it. If the personal data breach is likely to result in a high risk<\/strong> to the rights and freedoms of natural persons, the controller shall inform the data subjects of<\/strong> the personal data breach without undue delay. The notification shall include the information referred to in points (b)(c)(d). The data subject need not be informed if one of the following conditions is met:<\/p>\n The data controller shall keep a record of<\/strong> the data breaches, which shall be recorded in the register:<\/p>\n The supervisory authority may request the production of records during the inspection and use them as a basis for checking compliance with the requirements relating to data protection incidents.<\/p>\n <\/p>\n DATA PROTECTION INCIDENT RECORD<\/strong><\/p>\n <\/p>\n Name of data controller: Trendidivat Fashion Kft.<\/strong> Phone: +36 ….<\/strong> E-mail: trendidivatfashionkft@gmail.com<\/strong> Data Controller’s representative: J\u00f3zsef Katona <\/strong> Phone: +36 ….<\/strong> E-mail: trendidivatfashionkft@gmail.com<\/strong><\/p>\n <\/p>\n Date<\/td>\n <\/p>\n <\/p>\n DATA BREACH NOTIFIER<\/strong><\/p>\n <\/p>\n A data breach is a breach of security<\/strong> thatresults in the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, personal data<\/strong> transmitted, stored or otherwise processed. A personal data breach may cause physical, pecuniary or non-pecuniary damage to natural persons, including loss of control over their personal data or restriction of their rights, discrimination, identity theft or misuse, financial loss, unauthorised impersonation, damage to reputation, damage to the confidentiality of personal data protected by professional secrecy or other significant economic or social harm to the natural persons concerned. The data protection incident must be notified to the data protection authority<\/strong> (using a so-called ‘model data protection incident report<\/strong> ‘, the content of which is specified in the GDPR) without undue delay and, if possible, no later than 72 hours after the data protection incident has come to its attention,<\/strong> unless<\/strong> the data protection incident is unlikely to pose a risk<\/strong> to the rights and freedoms of natural persons. The data breach notifier must include:<\/p>\n If the notification isnot made within 72 hours, it must be accompanied by the reasons justifying the delay.<\/strong> It is also the responsibility of the data processor<\/strong> to notify the data controller of<\/strong> the personal data breach without<\/strong> undue delay<\/strong> after becoming aware of it. If the personal data breach is likely to result in a high risk<\/strong> to the rights and freedoms of natural persons, the controller shall inform the data subjects of<\/strong> the personal data breach without undue delay. The notification shall include the information referred to in points (b)(c)(d). The data subject need not be informed if one of the following conditions is met:<\/p>\n The data controller shall keep a record of<\/strong> the data breaches, which shall be indicated in the record:<\/p>\n The supervisory authority may request the production of records during the inspection and use them as a basis for checking compliance with the requirements relating to data protection incidents.<\/p>\n <\/p>\n DATA BREACH NOTIFIER<\/strong><\/p>\n <\/p>\n Name of data controller: Trendidivat Fashion Kft.<\/strong> Phone: +36 …<\/strong> E-mail: trendidivatfashionkft@gmail.com<\/strong> Representative of the Data Controller: J\u00f3zsef Katona <\/strong> Phone: +36 …<\/strong> E-mail: trendidivatfashionkft@gmail.com<\/strong><\/p>\n <\/p>\n Date<\/td>\n categories of data subjects and<\/p>\n approximate number of data subjects,<\/p>\n categories of data affected by the incident<\/p>\n and approximate number of data subjects<\/td>\n <\/p>\n","protected":false},"excerpt":{"rendered":" RECORD OF PROCESSING ACTIVITIES From data controller The records to be kept by the controller must contain the following information: the name and contact details of the controller (and, where applicable, the name and contact details of the joint controller, the controller’s representative and the Data Protection Officer); the purposes of the processing (some…<\/p>\n","protected":false},"author":4,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"page-aszf.php","meta":{"_acf_changed":false,"footnotes":""},"class_list":["post-53","page","type-page","status-publish","hentry"],"acf":[],"yoast_head":"\n\n
\n\n
\n Purpose of data processing<\/td>\n Legal basis for data processing<\/td>\n Categories of persons concerned<\/td>\n Categories of personal data<\/td>\n Recipients<\/p>\n 3. transfers to the country and guarantees<\/td>\n Time limits foreseen for cancellation<\/td>\n Technical and organisational measures taken to ensure the security of data processing (if possible)<\/td>\n<\/tr>\n \n processing of employee data<\/p>\n performance of an employment contract,<\/p>\n workers<\/td>\n name, address, date and place of birth, mother’s name, social security number, tax identification number, telephone number, e-mail address, education, bank account number, number of children,<\/p>\n data are transferred to the company carrying out the accounting, payroll services in order to fulfil a legal obligation, no other data are transferred<\/td>\n No transfer to country 3.<\/td>\n processing necessary for compliance with a legal obligation for the period specified in the legislation,<\/p>\n employee information, training, IT system protection: firewall, virus protection, password protection<\/td>\n<\/tr>\n \n customer data management<\/p>\n consent of the data subject, performance of the contract<\/td>\n customer, contact person provided by the customer,<\/td>\n name, e-mail address,<\/p>\n transmission of invoice data to accountancy firms, other data transmission to authorities, courts, if necessary<\/td>\n No transfer to country 3.<\/td>\n indefinitely or until the withdrawal of the data subject’s consent<\/td>\n employee information, training, IT system protection: firewall, virus protection, password protection<\/td>\n<\/tr>\n \n managing partner data<\/p>\n consent of the data subject, performance of the contract<\/td>\n partner, contact person provided by partner<\/td>\n name, e-mail address,<\/p>\n transmission of invoice data to an accounting firm, no other data transmission<\/td>\n No transfer to country 3.<\/td>\n indefinitely or until the withdrawal of the data subject’s consent<\/td>\n employee information, training, IT system protection: firewall, virus protection, password protection<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n \n
\n
\n
\n\n
\n Serial number<\/td>\n Date<\/p>\n Facts related to the data breach (nature of the breach, categories and approximate number of data subjects, categories and approximate number of data subjects affected by the breach)<\/td>\n Impact of the data breach, likely consequences<\/td>\n Measures taken to remedy\/mitigate a data breach<\/td>\n Has the supervisory authority \/ stakeholders been informed, if yes, when<\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n \n
\n
\n
\n\n
\n Serial number<\/td>\n Date<\/p>\n Nature of the data breach,<\/p>\n Data Protection Officer \/ Contact Name<\/td>\n Contact<\/td>\n Likely consequences<\/td>\n Measures taken to remedy\/mitigate a data breach<\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n \n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n <\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n