Knowledge · privacy · accessibility

GDPR — the General Data Protection Regulation

Your responsibilities for personal data when using IdRelay

Personal data in your campaigns

The GDPR is the EU’s General Data Protection Regulation and has applied since 25 May 2018. Email addresses, phone numbers and other information that can be linked to a person are covered by the rules.

You determine the purpose

As the customer, you are responsible for the processing of recipient data that you determine: why data is collected, your legal basis and how long it will be retained. You also need to inform recipients and be able to handle their rights.

Interdo AB processes data on your behalf

Interdo AB is the data processor for the customer’s recipient data in IdRelay. The data processing agreement describes this assignment. Read about our security measures.

Interdo AB’s privacy policy applies to our own processing of contact and customer data.

Practical guidance

Only process the data you need and keep it up to date. Special rules apply to sensitive personal data. Read our guidance before using IdRelay.

Current guidance is available from the Swedish Authority for Privacy Protection, IMY.