Legal
Privacy policy
EyesClear as a strategy does not retain client data. EyesClear provides an advanced transaction MIS system for banks, and the data the product processes is very sensitive — so no data leaves client premises and it is never processed on EyesClear development systems.
Privacy policy
Responsibility matrix
All EyesClear team members are required to take action on incidents.
- CEO — escalation point, and periodically reviews incidents.
- DPO — second line of communication, managing the incident response.
- Product management team — first line of communication, responding to incidents identified or raised.
Identity and access
EyesClear's incident management system retains user contact information. Contact information is created through a maker-and-checker process, and the password is set by the user at the point of raising an incident or logging into the support portal.
You always have the right to access the personal information we store about you. If you wish to further limit our use of your personal information, please contactinformationsecurity@eyesclear.com.
We only share your information as required by law, or if EyesClear is acquired by or merged with another company — we don't plan on that, but if it happens, we'll notify you well before any information about you is transferred and becomes subject to a different privacy policy.
EyesClear does not share an individual's personal data with non-agent third parties. If this policy changes in the future, we will notify individuals and provide them with an opportunity to opt out of having their data shared.
Your rights with respect to your information
GDPR gives people under its protection certain rights with respect to their personal information collected by us on this site. EyesClear recognises and will comply with GDPR and those rights, except as limited by applicable law. The rights under GDPR include:
- Right of access. Your right to access the personal information we gather about you, and to obtain information about the sharing, storage, security and processing of that information.
- Right to correction. Your right to request correction of your personal information.
- Right to erasure. Your right to request, subject to certain limitations under applicable law, that your personal information be erased from our possession (also known as the "right to be forgotten").
- Right to complain. Your right to make a complaint regarding our handling of your personal information with the appropriate supervisory authority.
- Right to restrict processing. Your right to request restriction of how and why your personal information is used or processed.
- Right to object. Your right, in certain situations, to object to how or why your personal information is processed.
- Right to portability. Your right to receive the personal information we have about you, and to transmit it to another party.
- Right not to be subject to automated decision-making. Your right to object to and prevent any decision that could have a legal, or similarly significant, effect on you from being made solely on the basis of automated processes. This right is limited if the decision is necessary for performance of a contract between you and us, is allowed by applicable European law, or is based on your explicit consent.
All of these rights can be exercised by contactinginformationsecurity@eyesclear.com. You may also have the right to make a GDPR complaint to the relevant supervisory authority; a list of supervisory authorities is available atedpb.europa.eu.
Security and encryption
All data is encrypted via SSL/TLS when transmitted from our servers to your servers.
Cookies
In order to improve our services and this website, and to provide more convenient, relevant experiences, we and our vendors may use cookies, web beacons and similar devices to track your activities. See the cookie policy for detail and for how to control them.
Third parties
EyesClear uses third-party vendors and hosting partners to provide the necessary hardware, software, networking, storage and related technology required to provide our services. A current list of vendors is available on request.
Data deletion
When you cancel your account, you can request that your data be deleted by contactinginformationsecurity@eyesclear.com. This information cannot be recovered once it has been permanently deleted.
Transferring personal data from the EU
Since EyesClear does not hold client data, the data sits on your servers and the choice of location is at your discretion. EyesClear provides the necessary support for a transfer if needed, but management of the data location sits with your internal teams.
Law enforcement
While we may be required to disclose your personal information in response to a lawful request by public authorities, including to meet national security or law enforcement requirements, EyesClear won't otherwise hand your data over to law enforcement unless a court order says we have to. Unless we are legally prevented from doing so, we will always inform you when such requests are made, and will provide delayed notice if a legal prohibition is lifted.
Location of site and data
This site is operated in the United Kingdom.
Changes and questions
EyesClear may update this policy from time to time; we will notify you about significant changes by emailing the account owner or by placing a prominent notice on our site. You can access, change or delete your personal information at any time by contactinginformationsecurity@eyesclear.com, or by post at EyesClear Ltd, Level39, One Canada Square, London E14 5AB, United Kingdom.
Questions about this privacy policy? Please contactinformationsecurity@eyesclear.com and we will be happy to answer them.
This policy has been adapted from the Basecamp open-source policies, CC BY 4.0.
