As of May 25, 2018, the GDPR has entered into effect, creating new laws around how businesses process and manage the personal data of clients.

GDPR Overview

  • What is the GDPR?
  • How does it impact email machine translation and language processing technologies?
  • How does Omniscien Technologies enable customers to comply with this regulation?
  • What measures do I need to take in order to be in compliance with the GDPR?

Please note: This page explains the impact of GDPR on the use of Omniscien Technologies products and services only and is not applicable to any other aspects of your business. It should not be considered legal advice and is for informational purposes only.

FAQ (Frequently Asked Questions)

What is the GDPR?

GDPR is the new European legislation meant to replace the 1995 Data Protection Directive

This regulation, which can be read in full on the European Union law website, is the new European law governing the use and handling of individuals’ personal data.

It has 3 primary objectives:

  • To standardize European data protection regulations.
  • To give citizens control over how their personal data is used.
  • To make sure that companies are aware of their responsibilities regarding personal data.

Who does GDPR apply to?

If you collect or process the personal data of any European citizen, regardless of the country in which your company is based, the GDPR affects your business.

GDPR has also eliminated the distinctions between various types of businesses — including B2B, B2C, for-profit, and nonprofit — meaning the law applies equally to all organizations that process the personal data of European citizens.

When should you be ready for GDPR?

All relevant actors are required to be in compliance with the GDPR as of May 25th, 2018.

What penalties will be applied as a result of GDPR?

Companies that are found to be in violation of the GDPR may be fined anywhere from 2-4% of annual revenue, or up to 20 million dollars, whichever is the larger amount.

How is GDPR different from the previous regulations?

One of the main goals of the GDPR is to extend the rights of European residents in regards to the handling of their personal data. This can be summarized as follows:

  • More access and control over the storage and processing of personal data for consumers
  • A tighter definition of consent and personal data
  • More transparency into the use of their personal data once it has been collected

New rights for users

The GDPR has created new rights of access and data protection for “data subjects”:

  • Right to rectification: The data subject may request that their personal data be updated or corrected.
  • Right to be forgotten: The data subject may request that their personal data be permanently deleted.
  • Right to portability: The data subject may request that their personal data be sent to another organization or competitor.
  • Right to object: The data subject may object to specific types of processing or uses of their personal data.
  • Right of access: The data subject has the right to be informed of any and all of their personal data that has been collected, as well as its intended use.

A new definition for consent

One of the big changes in the GDPR is the new definition of consent, which should now be “given freely” and provided in the form of a “positive action” for each planned use case involving the subject’s personal data.

Opt-out practices (whereby subjects are automatically subscribed to a list, leaving it up to them to unsubscribe) and passive opt-in practices (pre-checked boxes in subscription forms) are now prohibited under the new regulation.

Opt-in is now the only way to get explicit consent, and therefore the only legal means by which organizations can obtain and use customer contact information.

This means that from now on you must:

  • Provide additional opt-in forms for each of the different ways you plan to use personal data from your customers (e.g. newsletter, automated emails, profiling, etc.)
  • Ask your users for permission each time you want to use their personal data in a new way.

It is important to note that this new definition of consent also applies retroactively to the personal data of European residents collected before May 28th, 2018.

If you have already received consent for the use of this data, you do not need to ask for it again. However, if your current lists do not comply with the GDPR, you must ask for explicit permission from your contacts with the use of an opt-in form.

More transparency, new requirements for risk control…

This page is mostly concerned with summarizing the implications of your data sharing and utilization practices, but the GDPR also includes numerous other requirements: record keeping, nominating a Data Protection Officer, implementing a management risk process, etc.

Depending on your business and the nature of the personal data you process, the implications of the GDPR can be extremely far-reaching.

To better understand the requirements and legal ramifications for your organization, we recommend you consult a legal advisor specializing in personal data regulations.

What measures has Omniscien Technologies taken to be in compliance with the GDPR?

Leading up to the implementation of GDPR on 25 May 2018, Omniscien Technologies took many necessary steps in order to ensure users’ rights in accordance with the new laws. We have continued to review policies to ensure that we are compliant with GDPR regulations.

As an Omniscien Technologies customer, GDPR gives you new protection rights and assures better access to your personal data.

Rectify your personal information at any time from your account settings. You can also contact us directly to edit or rectify your information.

Right to Rectification: Rectify your personal information at any time from your account settings. You can also contact us directly to edit or rectify your information.

Right to Portability: Upon request, we will export your personal data so that it can be transferred to a third party or competitor.

Right of Access: We are transparent about the data that we collect and what we do with it. To familiarize yourself with this, please refer to our privacy policy. You can contact us at any time to access and modify any of your personal data.

Right to be Forgotten: Cancel your Omniscien Technologies subscription and close your account at any time. You can send us a request to erase all your data, which we will complete within 30 days.

Right to Object: Unsubscribe at any time to any specific use of your information (newsletter, automatic emails, etc.).

How can Omniscien Technologies help you answer requests related to your customers’ data?

GDPR provides new rights for your users and customers as well. Thanks to the measures that Omniscien Technologies has taken to be compliant with the new regulations, you will be able to answer any requests from users who are looking to exercise their new rights regarding their personal data stored in your database.
Right to Rectification: You can rectify your contacts’ information at any time. You can also contact us directly to ask us to rectify or delete your data.

Right to Portability: Upon request, we will export your personal data so that it can be transferred to a third party or competitor.

Right of Access: Make sure that you explain in your privacy policy how you plan to use the personal data that you collect. If your customers make a request to exercise their right of access, you can export their personal data to a file.

Right to be Forgotten: If one of your contacts wishes to exercise their right to be forgotten, you can simply delete them from your lists in Omniscien Technologies. This will also erase all their personal data. If one of your contacts sends a valid request directly to us, we will inform you and remove their personal data from your account, as well as from any other Omniscien Technologies accounts who have personal data on this contact, when applicable.

How can you ensure that you are in compliance with GDPR?

Consult with your legal counsel

The information on this page is designed to help prepare Omniscien Technologies users for the GDPR in the context of our services and should not be taken as legal advice. Additionally, there may be parts of the legislation that affect other aspects of your business as well.

We recommend you seek qualified legal counsel to determine what compliance measures you need to carry out to be fully compliant with the GDPR.

Learn how to rectify and delete your data

The right to access, modify and delete data is one of the key points of the GDPR.

Update your subscription forms

We recommend that you study and update the wording of your subscription and data gathering forms so that they are as explicit as possible regarding how requested and provided information will be used. Include affirmative language that clearly states the user agrees to the stated terms.

Delete the data that you no longer need

One of the main objectives of the GDPR is to minimize the risks of data breaches or leaks and prevent the misuse of European residents’ personal data.

This is why it is better to delete data for customers who are inactive or no longer customers. If you are not using this information, then it is more advisable to discard it.