1. Purpose
This document defines the conditions under which DisaTime processes personal data on behalf of the customer in the context of the use of the service.
How DisaTime protects, hosts and processes data as part of its SaaS service.
This document defines the conditions under which DisaTime processes personal data on behalf of the customer in the context of the use of the service.
The customer acts as data controller.
DisaTime acts as a technical subcontractor.
The customer determines the purposes of the processing, the categories of data recorded and the persons concerned. DisaTime processes data only to enable the operation of the service.
Depending on the use of the software, the data may include:
The customer remains responsible for the content of the data he records in DisaTime.
The data subjects may include, in particular, the client's employees, the client's customers and collaborators.
DisaTime ensures that persons authorized to access the systems are subject to an obligation of confidentiality and only access data when strictly necessary.
DisaTime may use technical subcontractors to ensure the operation of the service, in particular hosting or infrastructure providers.
These subcontractors are subject to security and confidentiality obligations.
In the event of a data breach that may affect the customer's data, DisaTime will inform the customer as soon as possible to enable it to comply with its legal obligations.
DisaTime will reasonably assist the customer to enable them to respond to requests related to access, rectification and erasure rights.
At the end of the contract, the data may be returned to the customer upon request or deleted after a reasonable period.
In order to guarantee continuity of service and protection against data loss, the system may be subject to regular technical backups.
These backups are intended exclusively for restoring the service in the event of a technical incident or for data recovery in the event of database corruption or loss.
DisaTime does not carry out any analysis, exploitation or voluntary consultation of the content of the data stored in these backups.
DisaTime does not access customer data in the normal course of operating the service.
Any possible access to data is limited to the following cases:
Our team remains available for any questions related to privacy or GDPR.