We take Privacy and Data Protection really seriously and we work hard on making sure that our business, website and internal computer systems comply with national and international legislation with regards to data protection and user privacy. Please read this policy carefully as it describes what type of information we collect and why we do it.
1 Personal Information and Data Collection
361degreesLAB collects and uses personal information for the following reasons:
1.1 Site visitation tracking
Like most websites, this site uses Google Analytics (GA) to track user interaction. We use this data to determine the number of people using our site, to better understand how they find and use our web pages and to see their journey through the website.
Although GA records data such as your geographical location, device, internet browser and operating system, none of this information personally identifies you to us. GA also records your computer’s IP address which could be used to personally identify you but Google do not grant us access to this. We consider Google to be a third party data processor (see section 3 below).
1.2 Contact form
Should you choose to contact us using the contact form on our Contact page, the data that you supply will be stored in the internal CRM system of this website hosted by Wix.com. Additionally, the data will be collated into an email and sent to us over the Simple Mail Transfer Protocol (SMTP). Our own SMTP servers are protected by TLS (sometimes known as SSL) meaning that the email content is encrypted using SHA-2, 256-bit cryptography before being sent across the internet. The email content is then decrypted by our local computers and devices. However, not all mail servers are secured in such a way. Therefore, we would suggest that you always consider email as an insecure medium and not include personal, confidential or otherwise sensitive information within an email.
1.3 Newsletter subscription (online)
If you choose to join our email newsletter, the email address and preferences that you submit to us will be stored within our websites database and our internal CRM database. On our website, we use 123FormBuilder application to collect the newsletter subscriptions. 123FormBuilder is an official third party developer app for our website host Wix.com. It is bound by the Wix App Market – Partner Program Agreement, which among others, contains restrictions on how they may access, store and use the Non-personal and Personal Information their users and/or Users-of-Users provide them. 123FormBuilder allows us create custom forms on wix.com. We choose this application, as we want to offer a diversified subscription options. We consider 123FormBuilder to be a third party data processor (see section 3 below).
Additionally to storing you subscription preferences in 123FormBuilder database, your subscription application will be collated into an email and sent to us over the Simple Mail Transfer Protocol (SMTP). We transfer the data received from 123FormBuilder to our protected CRM database. The reason for keeping the internal database is that our website CRM is not yet giving us a proper control features to log the diverse preferences for newsletter subscription and at the same time lots of subscriptions are coming via different channels: offline forms (see Section 1.4) and ticket purchase and reservation (see section 1.5).
Your email address and subscription preferences will remain within 123Form database and our internal database for as long as we continue to use 123FormBuilder services as an application or until you specifically request removal from the lists. You can do this by unsubscribing using the unsubscribe links contained in any email newsletters that we send you or by requesting removal via email. When requesting removal via email, please send your email to us using the email account that is subscribed to the mailing list.
If you are under 16 years of age you MUST obtain parental consent before joining our email newsletter. We strive to deliver only relevant content for you, so the frequency of our communication will depend on what types of updates you choose to receive.
1.4 Newsletter subscription (offline)
During our events, we offer participants to subscribe to our updates via a printed subscription form. We then transfer the data from the subscription sheets to our database and use it for sending custom newsletters. Similar to online subscriptions, the email data collected remains in our internal database until you specifically request removal from the list. You can do this by unsubscribing using the unsubscribe links contained in any email newsletters that we send you or by requesting removal via email.
1.5 Ticket purchase and reservation
When you purchase or reserve a ticket for one of our events, workshops or training via our website or third party application (Eventbrite), you are requested to leave your name and email for receiving the ticket and all communication about any possible changes (cancellation, reminder, time or location change, etc.). Additionally, we ask you if you are willing to receive updates from 361degreesLAB. If you opt in, we log your email address and preferences to our CRM database for further communication. If you opt out from all updates, your email address will not be stored in our CRM systems and we will contact you only to communicate about the event. The record of your ticket purchase that includes your name and email address will be kept in our website database (hosted by Wix.com) or Eventbrite system for maximum of 3 years for the legal and bookkeeping purposes. After that period all information will be deleted. We consider Eventbrite and Wix.com to be a third party data processor (see section 3 below).
1.6 Recruitment purposes
Should you choose to apply for a job or an internship with us, we ask you to fill in the application with a number of questions on our website. This application is built using 123FormBuilder. 123FormBuilder is an official third party developer app for our website host Wix.com. It is bound by the Wix App Market – Partner Program Agreement, which among others, contains restrictions on how they may access, store and use the Non-personal and Personal Information their users and/or Users-of-Users provide them. 123FormBuilder allows us create custom forms on wix.com. Additionally to storing your application in 123FormBuilder database, your application will be collated into an email and sent to us over the Simple Mail Transfer Protocol (SMTP). We will store your application in 123FormBuilder database for the period of 1 year, unless you explicitly ask us to delete it. You can do it by sending us an email request to recruitment [@] 361degreeslab.com. After 1 year, your application will be permanently deleted from our database.
1.7 Contact via Facebook Messenger
Should you choose to contact us via Facebook Messenger, we will be able to collect the conversation history with our chatbot powered by Chatfuel, and information contained in your public social media profile, such as your name, your avatar photo, your time zone, your gender, your language settings, and any other information you provide through the chatbot or Facebook Messenger. We consider Chatfuel to be a third party data processor (see section 3 below).
1.8 Assessments via Facebook Messenger
We offer to do different skill assessments via 361degreesLAB Messenger. These assessments are conducted by a chatbot powered by Chatfuel. It allows us to communicate with you and collect all the necessary information to complete the assessment. Should you choose to do the assessment using Facebook Messenger, we automatically receive your public social media profile, such as your name, your avatar photo, your time zone, your gender, your language settings, and any other information you provide through the chatbot. Your data is being stored for benchmark purposes, but it will never be shared with others, other than completely anonymized. If you want to have your personal data removed from our database, all it takes is an email to info [@] 361degreeslab.com.
2 About this website’s server
3 Our third party data processors
We use a number of third parties to process personal data on our behalf. These third parties have been carefully chosen and all of them comply with the EU General Data Protection Regulation 2018 (GDPR).
4 Data Breaches
We will report any unlawful data breach of our database or the database(s) of any of our third party data processors to any and all relevant persons and authorities within 72 hours of the breach if it is apparent that personal data stored in an identifiable manner has been stolen.