On this page, we have gathered information about the General Data Protection Regulation (2016/679) (GDPR) and how EasyPark handles personal data.
Core Definitions
GDPR: General Data Protection Regulation (2016/679). An EU regulation harmonizing personal data processing rules across the EU/EEA. It defines business requirements and individual rights.
Personal Data: Any information relating to a living person used to directly or indirectly identify them. Examples: Names, photographs, phone numbers, email addresses, vehicle registration plates, and GPS coordinates.
Data Subject: The individual to whom the personal data relates.
Data Controller: The individual or organization determining the purposes and means of processing personal data.
Data Processor: The person or entity processing personal data on behalf of the data controller.
GDPR Scope & Compliance Rules
Geographic Applicability: Applies to all companies processing personal data of EU/EEA residents, regardless of the company's physical location (includes organizations outside the EU/EEA offering goods/services to EU/EEA residents).
Article 5 Compliance Requirements (Personal Data Must Be):
Processed lawfully, fairly, and transparently.
Collected for specified, legitimate purposes.
Sufficient, relevant, and limited to what is necessary.
Accurate, kept up to date, and stored only as long as necessary.
Processed securely to ensure appropriate data protection.
Legal Basis & Consent
Processing Requirements: Companies must have a legal basis to process personal data.
Valid Legal Bases: Contractual necessity with the data subject, compliance with legal obligations, or explicit consent from the data subject.
Consent & Information: Data subjects must be informed about how data is processed, and consent must be obtained when legally required.
EasyPark Internal Policies & Security
Detailed Processing Info: Full descriptions of EasyPark’s data processing and legal grounds are located in the EasyPark Privacy Policy.
Security Measures: * Implemented an Information Security Management System (ISMS) compliant with ISO 27001.
Appointed a Head of Information and IT Security.
Established internal controls via the ISMS.
Third-Party Vendors: EasyPark uses external vendors for services. EasyPark has executed Data Processing Agreements (DPAs) with all vendors processing personal data on its behalf.
Privacy Requests & DPO Contact
Verification Policy: All privacy requests undergo a manual verification process before any account information is processed or released.
Data Protection Officer (DPO) Email: dpo@easypark.net
)