← Back to Form
Last Updated: September 23, 2025 | Effective Date: September 23, 2025

Privacy Policy

πŸ‡ͺπŸ‡Ί GDPR Compliance Notice: This privacy policy is designed to comply with the European Union's General Data Protection Regulation (GDPR). As a research organization processing personal data of EU residents, we are committed to protecting your fundamental rights and freedoms with respect to the processing of your personal data.

SEEDBiomed ("we," "our," "us," or "the Controller") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.seedbiomed.com and use our services in accordance with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and other applicable data protection laws.

1. Controller Information

Data Controller: SEEDBiomed Research Organization
Contact: privacy@seedbiomed.com
Website: www.seedbiomed.com

πŸ›‘οΈ Data Protection Officer (DPO):
Email: dpo@seedbiomed.com
The DPO is available to address any questions or concerns regarding data protection and your privacy rights under GDPR.

2. Legal Basis for Processing (GDPR Article 6)

We process your personal data based on the following legal grounds under GDPR:

3. Personal Data We Collect

3.1 Data You Provide Directly

Personal information you voluntarily provide includes:

3.2 Data We Collect Automatically

4. Your Rights Under GDPR (Articles 12-23)

βš–οΈ Your Fundamental Rights: Under GDPR, you have comprehensive rights regarding your personal data. These rights are free to exercise and we must respond within one month.

πŸ” Right of Access (Article 15)

You have the right to obtain confirmation of whether we process your personal data and, if so, to access that data and receive specific information about our processing activities.

✏️ Right to Rectification (Article 16)

You have the right to obtain correction of inaccurate personal data and to have incomplete personal data completed.

πŸ—‘οΈ Right to Erasure (Article 17)

You have the right to obtain erasure of your personal data under specific circumstances, including when data is no longer necessary or you withdraw consent.

⏸️ Right to Restrict Processing (Article 18)

You have the right to restrict processing of your personal data in certain circumstances, such as when accuracy is contested.

πŸ“€ Right to Data Portability (Article 20)

You have the right to receive your personal data in a structured, commonly used format and to transmit it to another controller.

🚫 Right to Object (Article 21)

You have the right to object to processing based on legitimate interests or for direct marketing purposes, including profiling.

πŸ€– Right Regarding Automated Decision-Making (Article 22)

You have the right not to be subject to automated decision-making, including profiling, that produces legal or similarly significant effects.

↩️ Right to Withdraw Consent (Article 7(3))

Where processing is based on consent, you have the right to withdraw that consent at any time without affecting prior lawful processing.

4.1 How to Exercise Your Rights

To exercise any of these rights, you may:

Response Time: We will respond to your request within one month. In complex cases, we may extend this by two additional months and will inform you of the extension within the first month.

5. Data Retention Periods (GDPR Article 5(1)(e))

We retain personal data only for as long as necessary for the purposes for which it was collected:

Data Type Retention Period Legal Basis
Newsletter subscribers Until unsubscription Consent duration
Contact inquiries 3 years Legitimate interest
Website analytics (anonymized) 26 months Google Analytics standard
Research collaboration data Duration of project + 5 years Academic research requirements
Legal compliance records As required by law Legal obligation
Cookies 13 months maximum GDPR/ePrivacy compliance

6. International Data Transfers (GDPR Chapter V)

🌐 Cross-Border Data Protection: When we transfer your data outside the EU/EEA, we ensure adequate protection through approved safeguards.

Some of our service providers are located outside the European Economic Area (EEA). When we transfer personal data internationally, we ensure appropriate safeguards are in place:

6.1 Third Country Transfers

We currently transfer data to the following regions with these safeguards:

7. Data Processing Principles (GDPR Article 5)

We adhere to GDPR's fundamental processing principles:

8. Data Protection Impact Assessments (GDPR Article 35)

We conduct Data Protection Impact Assessments (DPIAs) for processing activities that are likely to result in high risks to your rights and freedoms. This includes:

9. Data Breach Notification (GDPR Articles 33-34)

In the event of a data breach that poses risks to your rights and freedoms:

10. Supervisory Authority and Complaints (GDPR Article 77)

πŸ“ Right to Complain: You have the right to lodge a complaint with a data protection supervisory authority, particularly in your EU member state.

If you believe your data protection rights have been violated, you may lodge a complaint with:

11. Consent Management (GDPR Article 7)

Where we rely on your consent for processing:

12. Automated Decision-Making and Profiling (GDPR Article 22)

We do not engage in automated decision-making or profiling that produces legal effects or similarly significantly affects you. If this changes, we will:

13. Updates to This Privacy Policy

We may update this Privacy Policy to reflect changes in our practices or applicable law. Material changes will be communicated through:

14. Contact Information

πŸ”’ Data Protection Contacts

General Privacy Inquiries:
Email: privacy@seedbiomed.com

Data Protection Officer:
Email: dpo@seedbiomed.com

Data Subject Rights Requests:
Online Form: Submit Request
Email: rights@seedbiomed.com

SEEDBiomed Research Organization
Website: www.seedbiomed.com

Response Commitment: We will respond to your inquiry within one month (extendable to three months for complex requests).

15. Governing Law and Jurisdiction

This Privacy Policy is governed by:

πŸ“‹ Compliance Statement: This privacy policy has been designed to comply with GDPR, Dutch national data protection law, and other applicable regulations. It should be reviewed by qualified legal counsel to ensure full compliance with your specific circumstances and evolving legal requirements.