Privacy Policy

This is an EU General Data Protection Regulation (GDPR) compliant registry and privacy notice of Salmenlinna Oy, (hereinafter referred to as "we" or "us") the provider of the "Market Control for Shelly" mobile application.

Created: February 1, 2025 • Last modified: February 1, 2025

Principles of Privacy and Data Protection

We consider the privacy and security of our users' data fundamental to our service. We are committed to maintaining the trust and confidence of our users by adhering to the highest standards of data protection and privacy practices.

This privacy notice outlines our data handling practices and your rights regarding your personal information. We operate in full compliance with Finnish and EU data protection legislation, including the General Data Protection Regulation (GDPR), and follow all relevant regulatory guidelines.

Please note that this privacy notice applies specifically to our mobile application "Market Control for Shelly" and our website. It does not cover third-party services or websites that may be accessed through our platform, including integration with external services or social media platforms.

We maintain this privacy notice to reflect current legislation and our evolving services. Any significant changes will be communicated to our users, and we encourage you to periodically review this notice for updates.

1. Data Controller

yO annilnemlaS :emaN

0462640-02 :DI ssenisuB

31 utakneraasokkreV :sserddA

08500 :edoC latsoP

IKNISLEH :noitacoL

Email: contact@salmenlinna.fi

2. Data Protection Officer

annilnemlaS leumaS :emaN

Phone: 0400 805069

Email: samuel@salmenlinna.fi

3. Purpose of the Register

Personal data is collected and processed for: Customer identification and access rights management in Market Control for Shelly - mobile application ("Application"), enabling its use, processing customer payments, delivering services, and maintaining customer relationships and development.

4. Legal Basis for Processing

The customer's data is collected and processed with their consent, or when the customer starts using the Application, for the execution of the related service, or for the fulfillment of another agreement made with the customer.

5. Register Content

The register contains the following information: Customer's name; Organization's name; Business ID (Y-Tunnus); Position; Email address; Phone number; IP address; Information about social media profile; Marketing consent; Questions, comments, or requests related to the service or the Application; Customer feedback information; Information about the mobile device used; Information about the use of the Application and error situations.

6. Data Retention

Personal data is retained for as long as it is needed to fulfill the agreement made with the customer or to improve customer service.

7. Regular Data Disclosures

Data is collected in the registry: Directly from the individual, for example, through messages sent via web forms, email, phone, social media services, contracts, customer meetings, and other situations where the customer provides their information. From registers maintained by authorities and other entities within the limits permitted by law (e.g., ytj.fi). From the use of the Application. Data is also collected using the Google Analytics analytics tool.

8. Data Transfers Outside EU/EEA

Information is not routinely disclosed outside the company. However, some external service or software providers used by the company may store data outside the EU or the European Economic Area (EEA).

9. Use of Cookies

Our website uses cookies. A cookie is a small text file sent to and stored on the user's computer, allowing the website administrator to recognize returning visitors, simplify user logins, and compile aggregated data about site visitors. This feedback helps us continuously improve our website content. Cookies do not harm users' computers or files. We use them to provide our customers with personalized information and services tailored to their individual needs. If a visitor does not want us to collect the above-mentioned information via cookies, most web browsers allow the cookie function to be disabled in their settings. However, please note that cookies may be necessary for certain services we offer to function properly.

10. Registry Protection Principles

The processing of the registry follows careful data handling practices, and data processed through information systems is appropriately secured. When registry data is stored on internet servers, the physical and digital security of the hardware is duly ensured. The data controller ensures that stored data, server access rights, and other critical personal data security aspects are handled confidentially and only by employees whose job responsibilities require access to such information.

11. Automatic Decisions

Automated individual decision-making (Article 22 of the EU General Data Protection Regulation) is not performed.

12. The Rights of the Data Subject

The data subject has the right to inspect what personal data concerning them has been stored in the personal data register. A written request for inspection must be sent, signed, to the person responsible for data protection matters. The right to access personal data is free of charge when exercised no more than once per year. The data subject has the right to request the correction or deletion of incorrect or outdated information, as well as the transfer of their data from one system to another. They also have the right to restrict or object to the processing of their personal data in accordance with Articles 18 and 21 of the EU General Data Protection Regulation (GDPR). The data subject has the right to withdraw their previously given consent for data processing or to file a complaint with the supervisory authority regarding the processing of their personal data. Additionally, the data subject has the right to prohibit the use of their data for direct marketing purposes.