Create a bespoke document in minutes, Â or upload and review your own.
Get your first 2 documents free
Your data doesn't train Genie's AI
You keep IP ownership of your information
Data Protection Policy And Privacy Notice
"I need a Data Protection Policy and Privacy Notice for my small Irish e-commerce business that sells handmade crafts online, with specific focus on cookie usage and marketing communications to customers in the EU."
1. Introduction: Overview of the policy's purpose and scope, including the organization's commitment to data protection
2. Definitions: Clear explanations of key terms used throughout the policy (e.g., personal data, processing, data controller, data subject)
3. Information We Collect: Detailed categories of personal data collected and the legal bases for processing
4. How We Use Your Information: Purposes of data processing and the legal bases for each purpose
5. Data Sharing and Transfers: Information about third parties with whom data is shared and international data transfers
6. Your Rights: Explanation of data subject rights under GDPR and how to exercise them
7. Data Security: Measures taken to protect personal data and prevent unauthorized access
8. Data Retention: How long different types of personal data are retained and why
9. Contact Information: Details of the Data Protection Officer or responsible person and how to contact them
1. Cookies and Tracking Technologies: Required if the organization operates websites or apps using cookies or similar technologies
2. Children's Privacy: Required if services may be accessed by or data collected from children under 16
3. Marketing Communications: Required if the organization engages in direct marketing activities
4. Automated Decision Making: Required if the organization uses automated processing to make significant decisions
5. Special Categories of Data: Required if processing sensitive personal data such as health information or biometric data
6. Employee Data Processing: Required if the policy covers employee data processing activities
1. Schedule 1: Data Processing Activities Register: Detailed inventory of data processing activities, including purposes, categories of data, and retention periods
2. Schedule 2: Technical and Organizational Security Measures: Detailed description of security measures implemented to protect personal data
3. Schedule 3: Cookie List: Comprehensive list of cookies used, their purposes, and duration
4. Schedule 4: Approved Third-Party Processors: List of approved data processors and sub-processors with processing purposes
5. Appendix A: Data Subject Rights Request Form: Template form for individuals to submit requests regarding their personal data
6. Appendix B: Data Breach Response Procedure: Step-by-step procedure for handling personal data breaches
Authors
Technology and Software
Healthcare and Medical Services
Financial Services
Retail and E-commerce
Education
Professional Services
Manufacturing
Telecommunications
Public Sector
Non-profit Organizations
Media and Entertainment
Transportation and Logistics
Real Estate
Construction
Insurance
Tourism and Hospitality
Legal
Compliance
Information Technology
Information Security
Human Resources
Marketing
Customer Service
Operations
Risk Management
Internal Audit
Data Protection
Privacy
Executive Leadership
Quality Assurance
Chief Privacy Officer
Data Protection Officer
Chief Information Security Officer
Compliance Manager
Legal Counsel
IT Director
Risk Manager
Human Resources Director
Marketing Manager
Customer Service Manager
Operations Manager
Chief Executive Officer
Chief Technology Officer
Information Security Manager
Privacy Analyst
Data Protection Coordinator
Audit Manager
Find the exact document you need
Customer Privacy Notice
A GDPR-compliant Customer Privacy Notice for use in Ireland, outlining how organizations collect, process, and protect customer personal data under Irish law.
Employee Data Privacy Notice
An Irish law-compliant notice detailing how an organization processes employee personal data under GDPR and the Data Protection Act 2018.
Data Processor Privacy Notice
An Irish law-governed privacy notice for data processors, outlining data handling practices and GDPR compliance requirements.
Data Protection Policy And Privacy Notice
An Irish law-compliant Data Protection Policy and Privacy Notice that outlines personal data handling practices and data subject rights under GDPR and Irish data protection legislation.
Data Protection Privacy Notice
An Irish law-compliant privacy notice outlining an organization's personal data processing activities under GDPR and Irish Data Protection Act 2018.
External Privacy Notice
An Irish law-compliant privacy notice detailing how an organization handles personal data in accordance with GDPR and Irish data protection requirements.
Data Collection Notice
An Irish law-compliant notice detailing how personal data is collected and processed, meeting GDPR and Irish Data Protection Act requirements.
Cookie Consent Notice
A legal notice for Irish websites explaining cookie usage and obtaining user consent in compliance with Irish and EU data protection laws.
Global Privacy Notice
An Irish law-compliant Global Privacy Notice outlining international data processing practices and privacy rights under GDPR and global privacy regulations.
Applicant Privacy Notice
An Irish law-compliant privacy notice for job applicants explaining how their personal data is handled during recruitment, meeting GDPR and local data protection requirements.
Data Privacy Notice And Consent Form
An Irish law-compliant document that explains an organization's data processing activities and obtains GDPR-valid consent from individuals.
Data Processing Notice
An Irish law-compliant Data Processing Notice that informs individuals about how their personal data is processed under GDPR requirements.
Privacy Policy Notice
A legal document detailing an organization's data processing practices and privacy commitments under Irish and EU data protection laws, including GDPR compliance requirements.
Data Protection Notice
A mandatory privacy notice under Irish law and GDPR that explains how an organization handles personal data and individuals' privacy rights.
Download our whitepaper on the future of AI in Legal
³Ò±ð²Ô¾±±ð’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ³Ò±ð²Ô¾±±ð’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
Our bank-grade security infrastructure undergoes regular external audits
We are ISO27001 certified, so your data is secure
Organizational security
You retain IP ownership of your documents
You have full control over your data and who gets to see it
Innovation in privacy:
Genie partnered with the Computational Privacy Department at Imperial College London
Together, we ran a £1 million research project on privacy and anonymity in legal contracts
Want to know more?
Visit our for more details and real-time security updates.
Read our Privacy Policy.