GDPR Compliance

GDPR Compliance in GrabStar

We are compliant with the EU’s General Data Protection Regulations (GDPR), and updated our privacy policy to be compliant with. Although these changes were spurred by European law, we think privacy is super important and so those changes apply to everyone, no matter where you’re located.

What is GDPR?

The GDPR is a comprehensive data protection law that came into effect on May 25, 2018. It replaced existing EU law to strengthen the protection of “personal data” and the rights of the individual. It’s a single set of rules which governs the processing and monitoring of EU data.

Does it affect me?

Yes, most likely. If you hold or process the data of any person in the EU, the GDPR will apply to you, whether you’re based in the EU or not.

How GrabStar prepared for GDPR

Our teams worked hard to ensure we complied with GDPR. This was a massive overhaul of processes and data models to make sure we met our legal obligations and did the best thing for our customers while still letting us move fast, scale, and build great products.

Here are the main things we did:

Strong data protection commitments are a key part of GDPR’s requirements. Our updated data processing agreement shares our privacy commitments and sets out the terms for GrabStar and our customers to meet GDPR requirements. This is available for customers to sign upon request.

We have a dedicated Data Protection Officer to oversee and advise on our data management. Get in touch by emailing [email protected]

Security is a priority for us. We have regular external audits, pen tests, and bug bounties. We’ve built a robust security framework, achieving International Compliance standards, and reviewed our internal access design to ensure the right people have access to the right level of customer data.

Still Questions?

Feel free to reach out if you have any questions about GDPR.