Skip to content

Instantly share code, notes, and snippets.

@sergeliatko
Created April 12, 2024 18:35
Show Gist options
  • Save sergeliatko/67f4a5d5add9303884649e6b67128946 to your computer and use it in GitHub Desktop.
Save sergeliatko/67f4a5d5add9303884649e6b67128946 to your computer and use it in GitHub Desktop.
PPA Believe Outline (build by arrawy walk recursive on output JSON)
PRIVACY POLICY
Introduction and Overview of Privacy Policy
Identification of Data Controller and Scope of Privacy Policy.
Scope and Role Definitions in Data Processing for Digital Distribution and Services
Commitment to Secure Data Processing and Privacy Protection.
Acknowledgment and Agreement to Privacy Policy Terms by Users.
Declaration of Independence from Third-Party Privacy Policies and Liability Disclaimer.
Applicability of Privacy Policy to Various Stakeholders.
Restrictions on Minors' Subscription and Purchase Requirements Including Parental Consent.
Right to Amend Privacy Policy Under GDPR and Notification Procedures.
1. What information or personal data do We collect from You and why?
1 Scope of Data Collection and Processing for Contractual Obligations and Service Provision.
Exclusion of Sensitive Personal Data Collection and Processing Request.
Specification of Mandatory Data Provision in Contracts and Registration Forms.
1.1 Personal Data
Definition of Personal Data and Scope of Information Collected :
- Categories of Personal Data: Individual's Name Details ;
- Postal Address Requirements for Invoicing or Delivery ;
- Contact Phone Number Requirement ;
- Collection of Email Address Information ;
- Categories of Banking and Financial Information Collected ;
- Categories of Personal Information: Passport and ID Numbers ;
- Preferred Communication Language for Sites and Services
- Confidential Information for Personal Identifier or Password Recall Assistance ;
- Collection of Minors' Parental or Legal Guardian Contact Information ;
- Required Information for Performing Artists or Representatives in Recordings and Music Videos ;
- Required Metadata for Identification of Works and Assigns in Recordings and Music Videos ;
- Tax Identification Number Collection Condition for Specific Service Registrations ;
- Details of Products or Services in Customer's Cart ;
- Collection of IP Addresses and MAC Addresses for User Identification and Site Usage Recording ;
- Collection of User Demographic Information ;
- Collection of User Music Preferences and Platform Data ;
- Collection of Technical Information Including Cookies.
- Collection and Revocation of Consent for Geolocation Data Use ;
- Requirement for User-Provided Third Party Data Consent.
1.2 Other information
Collection of Non-Personally Identifiable Information.
Processing Conditions and Purposes for Non-Identifiable Information as Described in Section 3.
Categories of Other Information Collected :
- Collection of User Device and Browser Information for Accessing Services ;
- Collection of Data from Widgets, Mobile Applications, and Communication Services ;
- Collection and Use of Server Log Files for Service Management and Diagnostics ;
- Collection of Information Through Cookies and Similar Technologies ;
- Collection of Non-Identifying Demographic Information ;
- Analytical Use of Service Information for Performance Enhancement ;
- Creation of User Profiles through Information Cross-Referencing ;
- User Feedback Collection through Surveys and Questionnaires on Product, Service, and Site Usage.
2. How do we collect Your Data?
Sources of Data Collection :
- Sources of Your Data: Contractual Agreement with Us ;
- Account Creation and Service Subscription Conditions ;
- Acceptance of Terms Through Site Interaction ;
- Types of Interactions Covered: Purchases ;
- Subscription to Newsletters and Communications Agreement ;
- Claims Submission for Products or Services ;
- Sources of Personal Information: Concert or Event Tickets Purchase ;
- Sources of Personal Information: Public Databases ;
- Sources of Personal Data: Commercial or Media Partnerships ;
- Sharing of Personal Data Through Third-Party Social Network or Service Connections ;
- Collection of Personal Data Through Participation in Promotional Activities.
Methods of Collecting Other Information :
- Methods of Collecting Other Information: Browsers, Devices, and Digital Applications ;
- Sources of Information Collection: Server Log Files ;
- Data Collection through Cookies with Reference to Cookie Policy ;
- Consent-Based Geolocation Data Collection ;
- Sharing of Information and Data Clause.
3. What do We process Your Data for?
Purpose of Data Processing :
- Purposes for Processing Your Data: Account Creation and Management ;
- Performance of Contractual Obligations and Delivery of Services and Products ;
- Purposes for Conducting and Processing Payment Transactions ;
- Customer Support and Inquiry Response Obligations ;
- Organizing and Managing Participation in Promotional Activities ;
- Communication Methods with User for Various Purposes ;
- Enhancement and Customization of User Experience and Social Media Sharing Functions ;
- Implementation and Enhancement of Site and Service Security Measures Including Fraud Prevention and GDPR Compliance ;
- Analysis and Improvement of Services and Sites Functionality and Usage Trends ;
- Customization and Enhancement of Marketing and Promotional Strategies ;
- Sharing or Purchasing Gifts and Music-Related Content with Contacts and Other Users
- Fulfillment of Legal Obligations
- GDPR Compliance in Personal Data Management and Administration
4. On what legal ground can We process Your Data?
Basis for Data Processing: Introduction :
- Basis for Data Processing: User Consent ;
- Basis of Processing Personal Data: Contractual Agreement ;
- Legal Obligation as a Basis for Processing Personal Data ;
- Justification of Processing Based on Legitimate Interests.
5. Who receives Your data?
4 Data Access and Security Compliance Clause.
Enumeration of Potential Data Recipients :
- List of Data Recipients: Subsidiaries ;
- Disclosure of Information to Third-Party Service Providers ;
- Use of Sales Data for Ranking and Distribution Purposes for Performing Artists and Representatives.
- Authorization for Third-Party Advertising and Promotional Communications to Users ;
- Authorized Disclosure of User Data by Third-Party Promotional Campaign Organizers :
- Compliance with Applicable Laws Including International Regulations ;
- Compliance with Legal Requests from Domestic and Foreign Authorities ;
- Enforcement of Contract and Protection of Business Activities Clause ;
- Protection of Rights, Security, and Property Clause ;
- Exercise and Defense of Legal Rights Clause ;
- Legal Rights Protection and Damage Limitation Clause ;
- Authorization for Data Transfer in Case of Business Restructuring or Asset Transfer ;
- Authorization for Data Transfers with Explicit Consent ;
- Purposes for Data Transfer: Satisfying a Public Interest ;
- Protection Against Fraud, Abuse, and Contract Violations ;
- User's Discretion to Share Data and Service Provider Responsibility Clause
- Disclaimer on Liability for Voluntarily Shared Data and Its Distribution.
6. How long do We use Your Data for? (data retention period)
Data Retention Policy and Criteria.
Overview of Data Retention Criteria :
- Contract Duration as Data Retention Criterion ;
- Legal Retention Period as Mandated by Applicable Law ;
- Duration of Consent for Specific Data Use ;
- Duration of Consent for Data Collection from Prospects Without Subscription or Purchase ;
- 6 Retention Period for Cookies with Specific Exceptions.
Data Deletion and Anonymization Policy.
7. Hosting-storage and transfer of your data outside the European Union
Jurisdiction and Data Hosting Location Statement.
International Data Transfer and Protection Measures.
Access to User Data by Foreign Law Enforcement and Regulatory Authorities.
Disclosure of User Data to Third Parties for Site Maintenance, Security, and Enhancement.
Third-Party Data Protection and Security Obligations.
Governing Principles for Data Transfers Outside the European Union
8. Security measures
Implementation of Comprehensive Security Measures for Data Protection.
Commitment to Implementing Recognised Security Standards for Data Protection.
Data Protection Measures Implemented by the Company :
Opportunity to Create a Secure User Account with Unique Identifier and Password.
Recommendations for Enhancing Data Protection by Changing Passwords and Keeping Identifiers Confidential.
9. Your rights
Applicability of the French Data Protection Act to Residents of France.
Overview of GDPR Rights for EU/EEA Residents :
- GDPR Right to Information: Obtaining Clear and Understandable Usage Details of Personal Data ;
- Right of Access: Entitlement to Obtain Personal Data Held by the Entity ;
- Right to Rectification, Opposition, and Limitation of Personal Data ;
- Right to Erasure and Its Impact on Account Access and Services ;
- Right to Object to Direct Marketing and Modify Communication Preferences ;
- Right to Withdraw Consent for Data Processing Based on Consent ;
- Right to Data Portability Clause.
Procedure to Exercise Data Protection Rights.
Guidance for Contacting Data Protection Authority if Request Unfulfilled.
10. What if a data breach occurs?
GDPR Compliance: Reporting Data Breach to Authorities and Notification to Affected Parties.
Compliance with Applicable Information Security Breach Reporting Laws Based on Data Subject Location and Other Factors.
11. How can You contact us?
Contact Information for Believe Music
Special Notes for Specific User Groups and Residents :
Contact Information for Believe Data Protection Officer for Singapore Residents
Contact Information for Data Protection Inquiries by Residents of the People’s Republic of China
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment