Data Protection: User Rights, Legal Grounds, and Lawfulness of Processing

Introduction

At auditgearx, we understand that personal data is more than just information โ€” it's an extension of your identity. That's why we handle your data in strict compliance with both the Swiss Federal Act on Data Protection (revDSG) and, where applicable, the European General Data Protection Regulation (GDPR). This page outlines your rights, the legal basis we rely on, and how we ensure your data is processed lawfully and transparently.

Your Rights as a Data Subject

Whether you're located in Switzerland, the EU, or the EEA, you are entitled to specific, enforceable rights regarding your personal data. At auditgearx, these rights are not treated as formalities โ€” they are embedded into the way our systems, processes, and interfaces are designed.

๐Ÿ”น Right to Access

You have the right to request detailed information about the personal data we process about you, including its origin, the purpose of processing, and whether it has been shared with third parties.

๐Ÿ”น Right to Rectification

If any data we hold about you is incorrect, outdated, or misleading, you can request a correction without undue delay.

๐Ÿ”น Right to Erasure

Also known as the "right to be forgotten," you can ask us to delete your personal data when it is no longer necessary for the original purpose, if you withdraw your consent, or if its continued processing is unlawful.

๐Ÿ”น Right to Restrict Processing

In certain scenarios โ€” such as when you contest the accuracy of your data or object to its processing โ€” you may request a temporary suspension of all processing activities involving your data.

๐Ÿ”น Right to Data Portability

You may request to receive a structured, commonly used, and machine-readable copy of your data, or have it transmitted directly to another data controller, provided this is technically feasible.

๐Ÿ”น Right to Object

If your data is processed based on legitimate interests or for direct marketing purposes, you may object to such processing at any time.

๐Ÿ”น Right to Withdraw Consent

Where processing is based on your consent (e.g., optional cookies, newsletters, or custom profiling), you may withdraw that consent at any time. This will not affect the legality of any processing already carried out.

To exercise any of the above rights, contact us via info@oauditgearx.com. In some cases, identity verification may be required to prevent unauthorized data access.

Legal Grounds for Processing

auditgearx only processes personal data when there is a clearly defined legal basis under Swiss and EU law. Depending on the context, we may rely on one or more of the following grounds:

โœ” Consent of the Individual

You have explicitly given us permission to process your personal data for one or more specific purposes โ€” such as receiving promotional content, enabling optional features, or participating in surveys.

โœ” Contractual Necessity

When you create an account, use a service, or make a purchase through auditgearx, we process your data to fulfill our contractual obligations โ€” including account maintenance, usage tracking, payment processing, or customer support.

โœ” Legal Obligation

In certain cases, we are legally required to retain or disclose certain data โ€” such as for accounting, anti-money laundering, or compliance with Swiss or EU regulations.

โœ” Legitimate Interest

We may process your data for reasons such as ensuring platform security, preventing misuse, understanding service performance, or enhancing the user experience. This is done with minimal impact on your privacy and never overrides your fundamental rights.

Categories of Data We Process

Depending on your interaction with auditgearx, we may process:

Identification data: name, email address, preferred language, region

Usage data: session duration, feature interaction, navigation behavior

Device data: IP address, browser type, operating system, device fingerprint

Communication data: inquiries, feedback, chat interactions

Security data: login history, multi-factor authentication logs, access tokens

We do not knowingly collect sensitive personal data such as health information, religious beliefs, or biometric identifiers unless strictly necessary and with your express consent.

Swiss-Specific Requirements (revDSG)

The revised Swiss Federal Act on Data Protection, in effect since September 1, 2023, introduces several obligations for Swiss-based services and controllers. At auditgearx, we adhere to:

Transparency obligations: You are informed at the time of data collection about purpose, retention, and recipients

Data protection by design: Privacy features are integrated at both the system architecture and interface level

Cross-border safeguards: Any transfer of personal data outside Switzerland or the EU is governed by binding legal instruments or equivalency decisions

Data breach notification: In the event of a data security incident, we notify the Swiss Federal Data Protection and Information Commissioner (FDPIC) without delay

Vendor accountability: We execute written agreements with all service providers who process data on our behalf, ensuring full compliance with applicable laws

Contact for Data Protection Requests

For any question, concern, or formal request relating to your data rights, please write to us at:

Email: info@oauditgearx.com

We handle each inquiry individually and respond within the legally mandated timeframes โ€” typically within 30 days, and sooner whenever possible.