GDPR Compliance

How KeyboardingTest.com complies with the General Data Protection Regulation (GDPR) and protects your rights.

Last updated: December 9, 2024

GDPR Commitment

KeyboardingTest.com is committed to protecting the privacy and rights of our users. We fully comply with the General Data Protection Regulation (GDPR) of the European Union. This page explains your rights under the GDPR and how we uphold them.

1. Data Controller Information

KeyboardingTest.com is the data controller for personal data collected through our website. As the data controller, we determine the purposes and means of processing your personal data.

Data Controller: KeyboardingTest.com

Contact Email: admin@KeyboardingTest.com

3. Data We Collect

We collect and process the following categories of personal data in compliance with GDPR principles:

Account Information

  • Name and email address
  • Authentication provider information (Google, GitHub)
  • Account preferences and settings

Typing Test Data

  • Typing speed and accuracy measurements
  • Test completion times and dates
  • Lesson progress and achievements

Technical Data

  • IP address and browser information
  • Device type and operating system
  • Usage data and site interaction
  • Cookies and similar technologies

4. Your Data Rights

Under the GDPR, you have the following rights regarding your personal data:

Right to Access

You can request a copy of the personal data we hold about you and information about how we process it.

Right to Rectification

You can request that we correct any inaccurate or incomplete personal data we hold about you.

Right to Erasure

You can request that we delete your personal data in certain circumstances (the "right to be forgotten").

Right to Restriction

You can request that we restrict the processing of your personal data in certain circumstances.

Right to Data Portability

You can request to receive your personal data in a structured, commonly used, and machine-readable format.

Right to Object

You can object to the processing of your personal data in certain circumstances, particularly for direct marketing.

5. How to Exercise Your Rights

You can exercise your GDPR rights in the following ways:

  • Self-Service: Many of your rights can be exercised directly through your account settings, where you can view, update, and delete certain personal information.
  • Email Request: Contact us at admin@KeyboardingTest.com with "GDPR Request" in the subject line.
  • Contact Form: Use our contact form and select "GDPR Request" as the subject.

Response Time: We will respond to your request within 30 days. In complex cases, we may extend this period by an additional 60 days, in which case we will inform you of the extension.

To protect your privacy, we may need to verify your identity before processing your request.

6. International Data Transfers

KeyboardingTest.com may transfer your personal data to countries outside the European Economic Area (EEA). When we do so, we ensure appropriate safeguards are in place to protect your data:

  • Standard Contractual Clauses: We use EU-approved Standard Contractual Clauses with our service providers.
  • Privacy Shield: Where applicable, we work with US-based service providers certified under the EU-US Privacy Shield Framework.
  • Adequacy Decisions: We transfer data to countries that the European Commission has determined provide adequate protection.

You can request a copy of the safeguards we have put in place by contacting us at admin@KeyboardingTest.com.

7. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements:

Account Information

Retained for the duration of your account plus 30 days after account deletion.

Typing Test Data

Retained for the duration of your account. Anonymous test data may be retained for statistical purposes.

Technical Data

Log data is typically retained for 90 days. Aggregated analytics data may be retained indefinitely.

When your data is no longer needed, we will securely delete or anonymize it so that it can no longer be associated with you.

8. Data Security Measures

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk:

  • Encryption: Data in transit and at rest is encrypted using industry-standard protocols.
  • Access Controls: Strict access controls limit who can access your data within our organization.
  • Regular Audits: We conduct regular security assessments and audits of our systems.
  • Staff Training: Our team receives regular data protection and security training.
  • Secure Infrastructure: We use reputable cloud providers with robust security certifications.

We regularly review and update our security practices to maintain the highest standards of data protection.

9. Data Breach Procedures

In the unlikely event of a data breach that poses a risk to your rights and freedoms:

  • Notification Timeline: We will notify the relevant supervisory authority within 72 hours of becoming aware of the breach.
  • User Communication: We will inform affected users without undue delay, describing the nature of the breach, likely consequences, and measures taken.
  • Documentation: We maintain records of all data breaches, including facts, effects, and remedial actions taken.

Our breach response plan is regularly tested and updated to ensure we can respond effectively to any security incidents.

10. Contact Our DPO

For any questions about our GDPR compliance or to exercise your data protection rights, please contact our Data Protection Officer:

Email: admin@KeyboardingTest.com

Subject Line: "GDPR Inquiry - [Your Name]"

If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.

This GDPR Compliance statement is effective as of December 9, 2024. We may update this statement from time to time to reflect changes in our practices or legal requirements.