The European Union General Data Protection Regulation (GDPR) went into effect on May 25th, 2018. To help you understand what this means as a business owner in the tour and activity industry, we’ve compiled some frequently asked questions below.
What is the GDPR?
The GDPR replaces the Data Protection Directive established in 1995, strengthening the security and protection of EU citizens’ personal data. For example, it includes rights for residents of the European Economic Area and Switzerland to request data erasure or lodge a complaint with relevant supervisory authorities.
What is the relationship between FareHarbor and my business under the GDPR?
As a “Data Processor”, FareHarbor can help answer questions you may have about GDPR, data privacy, or data security. Please review the documentation found on our legal page at fareharbor.com/legal and if you have any further questions, please reach out to firstname.lastname@example.org.
What if a customer asks me for a copy of their data?
If a customer of yours that is a resident of the EU or Switzerland asks for a copy of their data—or for their data to be deleted—as your data processor under GDPR, we will help you comply with that request. Please use our Data Request Form, which can be found on this page.
Where can I learn more?
We have published a brief overview of GDPR, PCI Compliance, and Organizational Security and Infrastructure at fareharbor.com/legal/overview.