GDPR - Data Protection

Information about your rights under the General Data Protection Regulation (GDPR) and how we protect your personal data.

Last updated: August 6, 2025

About GDPR

The General Data Protection Regulation (GDPR) is a comprehensive data protection and privacy regulation in the European Union that came into effect on May 25, 2018. BIOLINK is committed to complying with GDPR and protecting your data privacy rights.

This page explains your rights under GDPR and how you can exercise these rights in relation to the personal data we process.

Your Rights Under GDPR

1. Right to Information

You have the right to clear, transparent, and easily understandable information about how we use your personal data and your rights. This information is provided in our Privacy Policy.

2. Right of Access

You have the right to confirmation as to whether your personal data is being processed, and if so, you have the right to access that personal data along with certain information about how it is used.

3. Right to Rectification

You have the right to ask us to correct inaccurate personal data or complete incomplete data. You can update your profile information through your account dashboard.

4. Right to Erasure ("Right to be Forgotten")

In certain circumstances, you have the right to ask us to delete your personal data. This includes situations where:

  • Personal data is no longer necessary for its original purpose
  • You withdraw consent and there is no other legal basis for processing
  • Personal data has been unlawfully processed
  • You object to processing and there are no overriding legitimate interests

5. Right to Restrict Processing

You have the right to ask us to restrict the processing of your personal data in certain circumstances, such as when you challenge the accuracy of the data or the lawfulness of processing.

6. Right to Data Portability

You have the right to receive personal data you have provided to us in a structured, commonly used, and machine-readable format, and the right to transmit that data to another controller.

7. Right to Object

You have the right to object to the processing of your personal data based on our legitimate interests or for direct marketing purposes.

8. Rights Related to Automated Decision Making

You have the right not to be subject to decisions based solely on automated processing, including profiling, which produces legal effects or significantly affects you.

Data We Collect

Account Data

  • Username and email address
  • Password (stored in hashed form)
  • Account creation date
  • Account preferences and settings

Bio Link Profile Data

  • Display name and bio
  • Profile photo and background images
  • Links and descriptions you add
  • Theme settings and customizations

Analytics Data

  • Visitor counts and link clicks
  • Device and browser information (anonymous)
  • General geographic location data
  • Visit times and dates

Technical Data

  • IP addresses (for security and analytics)
  • Server logs and performance data
  • Cookies and tracking technologies

Legal Basis for Processing

We process your personal data based on the following legal bases:

Consent

For certain activities such as email marketing or non-essential cookies, we rely on your explicit consent.

Contract Performance

Processing is necessary to provide the bio link services you request and maintain your account.

Legitimate Interests

We process data for our legitimate interests in operating and improving services, preventing fraud, and ensuring security.

Legal Obligation

In some cases, we may need to process data to comply with legal obligations.

Data Sharing with Third Parties

Service Providers

We may share data with trusted service providers who help us operate the platform, such as:

  • Hosting and cloud infrastructure providers
  • Analytics and monitoring services
  • Email service providers
  • Payment processors (if applicable)

Legal Requirements

We may disclose personal data if required by law or in response to valid legal requests from public authorities.

International Transfers

If we transfer personal data outside the European Economic Area (EEA), we ensure adequate protection through:

  • European Commission adequacy decisions
  • Standard contractual clauses
  • Approved certifications or codes of conduct

Data Retention

We retain your personal data only as long as necessary for the purposes we collected it or as required by law:

Account Data

Stored while your account is active or as needed to provide services. After account deletion, data is deleted within 30 days unless required to be retained by law.

Analytics Data

Aggregated and anonymous analytics data may be stored for longer periods for research and service improvement purposes.

Security Logs

Security and access logs are stored for up to 12 months for security and fraud prevention purposes.

Data Security

We implement appropriate technical and organizational security measures to protect your personal data:

Technical Measures

  • Data encryption in transit and at rest
  • Strong access controls and authentication
  • Security monitoring and intrusion detection
  • Regular data backups and recovery plans

Organizational Measures

  • Data privacy training for staff
  • Data protection policies and procedures
  • Regular privacy impact assessments
  • Data protection contracts with service providers

How to Exercise Your Rights

To exercise your GDPR rights, you can:

Through Your Account

  • Log into your account dashboard to update or delete information
  • Download your profile data from account settings
  • Manage privacy and communication preferences

Contact Us

For requests that cannot be handled through your account, please contact us through our contact page including:

  • Full name and registered email address
  • Clear description of your request
  • Identity verification (for security)

Response Time

We will respond to your GDPR requests within one month of receiving a valid request. In complex cases, we may extend this period by up to two additional months with notification.

Data Breaches

If a personal data breach occurs that is likely to result in high risk to your rights and freedoms, we will:

  • Notify supervisory authorities within 72 hours
  • Notify you without undue delay
  • Take steps to mitigate the impact of the breach
  • Conduct thorough investigation and report findings

Right to Lodge a Complaint

If you are not satisfied with how we handle your personal data or respond to your requests, you have the right to lodge a complaint with a data protection supervisory authority in the EU country where you live or work.

We encourage you to contact us first so we can try to resolve your concerns directly.

Changes to GDPR Policy

We may update this GDPR information from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons.

Significant changes will be communicated to you via email or prominent notice on our platform.

Contact Us

If you have questions about your GDPR rights or how we process your personal data, please contact us:

  • Through our contact page
  • Email: privacy@vitamin4testicles.store

We are committed to protecting your privacy and will be happy to help you with any GDPR-related questions or concerns.

Powered by

BIOLINK

Shorten, share, and track your links with ease. A fast and reliable URL shortener for all your needs.

Fast
Mobile First
SEO

© 2025 BIOLINK. All rights reserved.