GDPR Addendum

Last modified: November 3, 2021

This GDPR Addendum (“GDPR Addendum”) supplements the information contained in the Privacy Notice (the “Privacy Notice”). We adopt this GDPR Addendum to comply with the European Union’s General Data Protection Regulation 2016/679, or GDPR. If you are a resident of the European Economic Area (“EEA”) or the United Kingdom (UK), you may have additional rights under the GDPR with respect to your Personal Data, as outlined below. Capitalized terms used but not defined in this GDPR Addendum have the definitions assigned to them in the Privacy Notice.

In this GDPR Addendum, we use the terms “Personal Data”, “Data Controller” and “Processing” as they are defined in the GDPR.  Generally, “Personal Data” refers to information that can be used to individually identify a person, “Data Controller” refers to the legal entity which determines the purpose and means of the Processing of Personal Data and “Processing” refers to actions that can be performed in connection with data such as collection, use, storage and disclosure.

For purposes of the GDPR, Quadicore acts as the Data Controller of your Personal Data that you provide to us. However, we also process certain Personal Data of your customers or contacts in connection with our provision of services to you. In these cases, we process the Personal Data of your customers and contacts on your behalf. If we receive inquiries about Processing Personal Data from your customers or contacts, we will direct such inquiries to you as the Data Controller of such Personal Data.

 

Legal Basis for Processing Personal Data

Personal Data can only be Processed under the GDPR if there is at least one lawful basis to do so. We rely on the following legal grounds for Processing your information:

Legitimate Interest
  • Providing you with information about Quadicore ‘s Products and Services, and offering and improving our Products and Services.
  • Facilitating your movement through the Quadicore websites and your use of our Services.
  • Providing you with requested information or technical, product and other support.
  • Measuring and understanding the effectiveness of the content we serve to you and others.
  • Diagnosing problems with our Services in order to conduct troubleshooting.
  • Conducting data analysis, testing, research, and statistical and survey analysis.
  • Conducting our security and compliance programs.
  • Communicating with customers and website visitors.
Contractual Necessity
  • Providing the requested Services to you and ensuring the proper functioning of our Services.
Consent
  • Enhancing our advertising and marketing efforts to improve our websites by monitoring and analyzing trends, usage and activity in connection with our Services.
  • Providing direct marketing communication.
  • Targeting prospective customers with our products or services.
  • Assisting us in offering you a personalized experience or otherwise tailoring our websites, products and service offerings to you and to ensure content from our websites is presented in the most effective manner for you and your device.
Sharing with Service Providers and Vendors

We share Personal Data with vendors, service providers and agents who work on our behalf and provide us with services related to the purposes described in our Privacy Notice. The categories of service providers we share your Personal Data with include:

  • Cloud hosting services;
  • Analytics services;
  • Marketing and advertising services;
  • Advertising networks;
  • Customer relationship management services;
  • Customer support services;
  • Software services;
  • E-commerce services;
  • Professional services;
  • Fraud detection and deterrence services;
  • Storage services;
  • Search engine optimization services; and
  • Information technology services.

For purposes of the GDPR, we enter into contracts with such service providers that prohibit them from using any of your Personal Data for any purpose beyond the purpose for which it was shared.

Legal Process

If legally required to do so, or if we have a good faith belief that such disclosure is reasonably necessary, we may disclose your Personal Data to courts of law, public authorities and other relevant third parties (such as internet service providers), to meet national security or law enforcement requirements, conduct an investigation, respond to a civil or criminal or court order, to bring legal action, prevent harm to others or pursue other relief.

This disclosure can include transferring your information to the India, U.S. and other countries outside the EEA.

Cookies, tracking technologies and online advertising

We use Tracking Technologies in the course of our business. Information about the technologies we use, why we use them (for example, in connection with online advertising), and how you can control them can be found in our Cookie Notice.

You can select your cookie preferences upon your first visit to our site. If you choose to change your preferences, you may do so at any time by clicking the “Cookie Preferences” link in the footer of our website homepage.

When you opt out of cookies, you will be opted out of all non-required cookies. You cannot opt out of required cookies because these cookies are required to help our websites work correctly. For example, these cookies allow you to navigate our website and use essential features, including secure areas and shopping baskets.

Data Transfers

In order for us to provide the Services to you, your Personal Data will be transferred to and stored in the United States. Your Personal Data is also processed by staff operating outside the EEA, such as in India and Singapore, who work for us or for one of our suppliers. We will take all steps reasonably necessary to ensure that your Personal Data is treated securely and in accordance with this GDPR Addendum.

All transfers of Personal Data (i) within the Quadicore corporate family, as further described in the Privacy Notice, and (ii) to third parties, will be under the European Commission’s model contracts for the transfer of Personal Data to third countries (i.e., the standard contractual clauses), pursuant to Decision 2004/915/EC and 2010/87/EU.

Although not currently relied upon as a legal basis for transfer, Quadicore participates in and has certified its compliance with the EU-U.S. Privacy Shield Framework and the Swiss-U.S. Privacy Shield Framework (together, the “Frameworks” or the “Privacy Shield Frameworks”). Quadicore is committed to subjecting all Personal Data received from the EEA, UK and Switzerland, respectively, in accordance with each Privacy Shield Framework, and to the Framework’s applicable Principles. To learn more about the Privacy Shield Framework, and to view our certifications, visit the U.S. Department of Commerce at https://www.privacyshield.gov/list

Quadicore is responsible for the Processing of Personal Data it receives, under each Privacy Shield Framework, and subsequently transfers to a third party acting as an agent on its behalf. Quadicore complies with the Privacy Shield Principles for all onward transfers of Personal Data from the EEA, UK and Switzerland, including the onward transfer liability provisions.

With respect to Personal Data received or transferred pursuant to the Privacy Shield Frameworks, Quadicore is subject to the regulatory enforcement powers of the Indian MSME. In certain situations, we may be required to disclose Personal Data in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.

If you have an unresolved privacy or data use concern that we have not addressed satisfactorily, please contact our U.S.-based third party dispute resolution provider (free of charge) at https://feedback-form.truste.com/watchdog/request.
Under certain conditions, as more fully described on the Privacy Shield website, you may be entitled to invoke binding arbitration when other dispute resolution procedures have been exhausted.

You can contact the Data Protection Officer listed below to obtain a copy of the data transfer agreement or more information regarding the relevant safeguard we put in place. For more information about the EU-US Privacy Shield Framework and the Swiss-US Privacy Shield Framework, please visit the U.S. Department of Commerce’s Privacy Shield website.

 

Your Privacy Rights

Privacy Right Summary
Access You can request more information about the Personal Data we hold about you and request a copy of such Personal Data.
Rectification If you believe that any Personal Data we are holding about you is incorrect or incomplete, you can request that we correct or supplement such data.
Erasure You can request that we erase some or all of your Personal Data from our systems.
Withdrawal of Consent If we are Processing your Personal Data based on your consent (as indicated at the time of collection of such data), you have the right to withdraw your consent at any time.
Portability You can ask for a copy of your Personal Data in a machine-readable format. You can also request that we transmit the data to another Data Controller where technically feasible.
Objection You can contact us to let us know that you object to the further use or disclosure of your Personal Data for certain purposes, such as for direct marketing purposes.
Restriction of Processing You can ask us to restrict further Processing of your Personal Data.
Right to File Complaint You have the right to lodge a complaint about Quadicore's practices with respect to your Personal Data with the supervisory authority of your country or EU member state.

Contact Us and Complaints

If you have any questions about this Privacy Notice or our data handling practices, or you wish to make a complaint, you may contact our Data Protection Officer at privacy@quadicore.com or by regular mail at:

Data Protection Officer

Quadicore Technologies
76-77, Nava India Rd, KR Puram
Avarampalayam, Peelamedu,
Coimbatore, Tamil Nadu 641006

In addition, you may raise a complaint with the Dutch Supervisory Authority (Autoriteit Persoonsgegevens) using the contact details below, or with your local Supervisory Authority.

Autoriteit Persoonsgegevens
Postbus 93374
2509 AJ DEN HAAG