How do we keep your Personal Data safe?

Neste has appropriate technical measures and organizational security policies and procedures in place designed to protect Personal Data and information from loss, misuse, alteration, or destruction. Access to systems and applications used for Personal Data processing are limited to personnel who need the data for carrying out their job tasks. Where Neste engages third parties to host electronic data on its behalf, Neste requires them to meet appropriate information security requirements.

When Personal Data processing involves manual processing, it is done on premises accepted for such use. These premises are protected with various types of security measures, such as access control systems and camera surveillance.

The safety and security of your information also depends on you. You should maintain good internet security practices. Where you have password-protected access to an account or certain parts of the Site or Services, you are responsible for keeping this password confidential. You should not share your password with anyone. You must prevent unauthorized access to your account and Personal Data by selecting and protecting your password appropriately and limiting access to your computer or device and browser by signing off after you have finished accessing your account. If your email account or Facebook account is compromised this could allow access to your account with us if you have given us those details and/or permitted access through those accounts.

If your email account is compromised it could be used to ask us to reset a password and gain access to your account with us.If you think that any of your accounts have been compromised you should change your account credentials with us, and in particular make sure any compromised account does not allow access to your account with us. The information you share in public areas may be viewed by other users. We’ll never email you to ask for your password or other account login information. If you receive such an email, please send it to us so we can investigate.

You hereby release and forever discharge us and our affiliates, subsidiaries, officers, directors, employees, and agents, and their respective successors and assigns, and you will indemnify, defend and hold us harmless, from and against any liability, claim, or cost (including attorneys’ fees), arising directly or indirectly from any failure by you to maintain the security of your email or other accounts that directly or indirectly results in an unauthorized third party having access to such email or accounts or causes us to transfer funds based on instructions purporting to have originated from you (i.e., “wire transfer fraud” or “business email compromise” events).

How long do we retain your Personal Data?

The time periods for which we retain your Personal Data depend on the purposes for which we use it. We will keep your Personal Data for as long as your account is active, or as long as you are a registered account holder or user of our Services or for as long as we have another business purpose to do so (such as, but not limited to, for business, tax, or legal purposes) and, thereafter, for no longer than is required or permitted by law, or our records retention policy, reasonably necessary for internal reporting and reconciliation purposes, or to provide you with feedback or information you might request. This period of retention is subject to our review and alteration.

Following termination or deactivation of your user account, we may retain your profile information and all information posted to public areas of the Website. Following termination or deactivation of your user account, we may retain your Personal Data and other data, but will maintain it as confidential according to the Terms, this Privacy Policy, and as required by applicable law. We have the right to delete all of your Personal Data and other data after termination of your user account without notice to you.

We may retain De-Identified Personal Data for as long as we deem appropriate.

Even if you delete your account, keep in mind that the deletion by our Service Providers may not be immediate and that the deleted information may persist in backup copies for a reasonable period of time. We may retain De-Identified Personal Data for as long as we deem appropriate.

Notices; Opting Out

By providing us with your email address (including by “following,” “liking,” linking your account to our Website or Service or other services, etc., on a third party website or network), you consent to our using the email address to send you Service-related notices by email, including any notices required by law, in lieu of communication by postal mail.

You also agree that we may send you notifications of activity regarding the Service, the Website, and/or the Mobile App to the email address you give us, in accordance with any applicable privacy settings. We may use your email address to send you other messages or content, such as, but not limited to, newsletters, additions or changes to features of the Service, or special offers.

If you do not want to receive such email messages, you may opt out by emailing us your opt-out request or, where available, by clicking “unsubscribe” at the bottom of our e-newsletter. Opting out may prevent you from receiving email messages regarding updates, improvements, special features, announcements, or offers. You may not opt out of Service-related emails.

You can add, update, or delete information as explained above. When you update information, however, we may maintain a copy of the unrevised information in our records. You may request deletion of your account by emailing us. It is your responsibility to maintain your current email address with us.

Share this