GDPR

General Data Protection Regulation (GDPR) Policy

Ataraxis is committed to protecting the privacy and personal data of individuals in the European Economic Area (EEA). This page outlines how we comply with the General Data Protection Regulation (GDPR).

1. Who We Are

Ataraxis provides offshore hiring services and virtual assistant support to businesses globally. For GDPR purposes, we act as a “data controller” when we collect and process personal data via our website, forms, or service communications.

2. What Data We Collect

We may collect:

  • Your name, email address, and phone number
  • Company name and role
  • IP address and device/browser data
  • Information submitted through contact forms, intake forms, or job applications

3. Why We Collect It

We use this data to:

  • Provide our services
  • Respond to inquiries
  • Match you with talent or hiring opportunities
  • Improve our website and user experience
  • Send updates or offers (if you opt in)

4. Legal Basis for Processing

We process your data under the following legal bases:

  • Consent – When you opt into communications
  • Contractual necessity – When providing services you’ve requested
  • Legitimate interests – For analytics, site performance, and service improvement
  • Legal obligation – When required by law

5. Your GDPR Rights

Under the GDPR, you have the right to:

  • Access your personal data
  • Correct inaccurate information
  • Delete your data (“right to be forgotten”)
  • Restrict or object to processing
  • Data portability – receive your data in a machine-readable format
  • Withdraw consent at any time

To exercise your rights, contact us here for any requests.

6. Data Sharing & Transfers

We never sell your data. We may share your data with trusted service providers (e.g., CRM, email platforms) only as needed to deliver our services. If data is transferred outside the EEA, we ensure appropriate safeguards such as Standard Contractual Clauses.

7. Data Retention

We retain your data only for as long as necessary to fulfill the purposes outlined above, or as required by law.

8. Security Measures

We implement encryption, access controls, and secure hosting practices to protect your data.

Questions or Concerns?

If you have questions or wish to submit a data request, contact us here.

If you are in the EEA and believe your data has been mishandled, you also have the right to lodge a complaint with your local Data Protection Authority (DPA).