We are committed to protecting your personal data and respecting your privacy rights under the General Data Protection Regulation (GDPR).
Last updated: September 27, 2026
At Risenexa, we take data protection seriously. We are committed to complying with the General Data Protection Regulation (GDPR) and ensuring that your personal data is processed lawfully, fairly, and transparently.
This page explains your rights under GDPR, how we handle your data, and how you can exercise your privacy rights.
Data Controller: Risenexa Ltd.
Contact Email: [email protected]
If you have any questions or concerns about how we process your personal data, please contact our Data Protection Officer at the email address above.
Under the General Data Protection Regulation, you have the following rights regarding your personal data:
You have the right to request a copy of the personal data we hold about you. We will provide this information in a commonly used electronic format.
You have the right to request correction of any inaccurate or incomplete personal data we hold about you. We will update your information promptly.
You have the right to request deletion of your personal data when there is no compelling reason for us to continue processing it, subject to certain legal obligations.
You have the right to request that we restrict processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit it to another data controller.
You have the right to object to the processing of your personal data based on legitimate interests, direct marketing, or for research/statistical purposes.
Where we process your data based on your consent, you have the right to withdraw that consent at any time. This will not affect the lawfulness of processing before withdrawal.
You have the right to lodge a complaint with your local supervisory authority if you believe we have not complied with GDPR requirements.
We process your personal data based on the following lawful grounds:
We collect and process the following categories of personal data:
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements. When you delete your account, we will delete or anonymize your personal data within 90 days, unless we are required to retain it for legal purposes.
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes encryption, access controls, regular security assessments, and employee training.
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). We ensure that such transfers are protected by appropriate safeguards, such as Standard Contractual Clauses approved by the European Commission.
To exercise any of your GDPR rights, please contact us at [email protected] with your request.
Please include the following information in your request:
We will respond to your request within 30 days of receipt. If we need additional time, we will inform you of the extension and the reasons for it.
In some cases, we may need to verify your identity before processing your request to ensure the security of your personal data.
If you have any questions about how we handle your personal data or wish to exercise your GDPR rights, our Data Protection team is here to help.