GDPR Compliance
Last Updated: June 3, 2026
General Data Protection Regulation
solar-rhythm is committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR). This page explains how we comply with GDPR requirements and what rights you have regarding your personal information.
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: When you provide explicit consent for specific processing activities
- Contract Performance: When processing is necessary to fulfill our service obligations to you
- Legal Obligation: When we must process data to comply with legal requirements
- Legitimate Interests: When processing serves our legitimate business interests without overriding your rights
Your GDPR Rights
Under GDPR, you have the following rights regarding your personal data:
Right to Access
You have the right to request copies of your personal data. We may charge a reasonable fee for additional copies or manifestly unfounded requests.
Right to Rectification
You have the right to request correction of inaccurate personal data and to complete incomplete personal data.
Right to Erasure
You have the right to request deletion of your personal data under certain conditions, including when:
- The data is no longer necessary for the purpose it was collected
- You withdraw consent and there is no other legal ground for processing
- You object to processing and there are no overriding legitimate grounds
- The data has been unlawfully processed
Right to Restrict Processing
You have the right to request restriction of processing your personal data under certain circumstances, such as when you contest the accuracy of the data.
Right to Data Portability
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
Right to Object
You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.
Rights Related to Automated Decision Making
You have the right not to be subject to decisions based solely on automated processing, including profiling, which produces legal effects or similarly significantly affects you.
How to Exercise Your Rights
To exercise any of your GDPR rights, please contact us at [email protected]. We will respond to your request within one month of receipt. In complex cases, we may extend this period by two additional months and will inform you of the extension.
Data Protection Officer
For questions specifically related to data protection and GDPR compliance, you may contact our data protection team at [email protected].
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements. When data is no longer needed, we securely delete or anonymize it.
International Data Transfers
If we transfer your personal data outside the European Economic Area, we ensure appropriate safeguards are in place to protect your data in accordance with GDPR requirements.
Data Breach Notification
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you without undue delay in accordance with GDPR requirements.
Supervisory Authority
You have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work, or place of the alleged infringement if you believe our processing of your personal data violates GDPR.
Changes to GDPR Compliance
We may update this GDPR compliance information to reflect changes in our practices or legal requirements. Significant changes will be communicated through our website.
Contact Information
For any questions about our GDPR compliance or to exercise your rights, please contact us at [email protected].