GDPR Compliance

Effective Date: 08-05-2025

1. Scope & Applicability

We comply with the EU General Data Protection Regulation (GDPR) for users in the European Economic Area (EEA). This policy supplements our Privacy Policy and applies to:

  • Visitors from the EEA
  • All users of paid consultancy services
  • Subscribers to newsletters/tools

2. Data Controller

CareerFather.com (operated by [CareerFather, India]) acts as the Data Controller under GDPR.
Registered Office: Purulia, West Bengal

3. Lawful Basis for Processing

PurposeLegal BasisData Types
Free blogs/tools accessLegitimate interest (Art. 6(1)(f))Cookies, IP address
Paid consultancyContract fulfillment (Art. 6(1)(b))Name, email, payment details
NewslettersExplicit consent (Art. 6(1)(a))Email, preferences

4. Your GDPR Rights

As an EEA user, you may:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate information
  • Erasure: Delete your data (“Right to be Forgotten”)
  • Restriction: Limit processing under certain conditions
  • Portability: Receive your data in machine-readable format
  • Object: Opt-out of processing based on legitimate interests

To exercise these rights, email dpo@careerfather.com with “GDPR Request” in the subject line.

5. Data Security Measures

We implement safeguards per GDPR Article 32:

  • SSL encryption for all data transfers
  • Role-based access controls to personal data
  • Regular security audits of third-party processors (e.g., payment gateways)

6. International Data Transfers

Data may be transferred to India under GDPR Article 45 adequacy decisions or using Standard Contractual Clauses (SCCs) with vendors.

7. Retention Periods

  • Consultancy records: 5 years post-service
  • Newsletter data: Until consent withdrawal
  • Cookies: Up to 30 days (essential) or 12 months (analytics)

8. Data Protection Officer (DPO)

Contact our EU Representative/DPO for GDPR-specific inquiries:
Email: admin@careerfather.com
Response Time: 30 calendar days (as per GDPR Article 12)

Related Documents: Privacy Policy | Data Processing Addendum (for enterprise clients)