Personal Information Protection and Electronic Documents Act
1. Accountability: TenAgents ensures that client personal data is processed securely and follows industry-standard practices. Client data is stored and processed in Google Cloud Platform (GCP) data centers, known for their robust security services. The company designates a Privacy-Security Officer and conducts regular reviews of both internal processes and third-party processors to ensure data protection.
2. Identifying Purposes: Client data collected by TenAgents serves specific, explicit, and legitimate purposes, tailored to each client's business and use case. This data is used to facilitate emergency communications as per contracted terms and agreements.
3. Consent: TenAgents obtains explicit consent from clients for the use, processing, and storage of their personal information.
4. Limiting Collection: The essential requirements for TenAgents' SaaS service include First Name, Last Name, and E-mail address. Any additional data provided to TenAgents' SaaS is at the discretion of the user.
5. Limiting Use, Disclosure, and Retention: TenAgents does not share or sell any client data. Data provided by clients is solely used for service delivery as outlined in contractual agreements. Data transferred to suppliers is strictly for service delivery purposes and is governed by contractual agreements. Data retention is defined in contractual agreements and data is purged within 60 days of contract termination.
6. Accuracy: Clients have complete control over their data through a Web-Based User Interface (WebUI) provided by TenAgents. The accuracy of data inputted into the system is the responsibility of the client.
7. Safeguards: TenAgents employs industry-leading safeguards to protect user data, which resides within Google Cloud Platform (GCP) data centers. GCP's security features align with national and international standards. TenAgents also conducts data governance training, annual security awareness, access control audits, and encryption to enhance safeguards.
8. Openness: TenAgents keeps clients informed about data usage through its Privacy Notice, Security, and Privacy articles, and whitepapers.
9. Individual Access: Clients have full control over their data through the Web-Based User Interface (WebUI), including data entry, deletion, and modification. TenAgents also implements a Subject Access Request (SAR) procedure to grant individuals the right to access their data and confirm its processing.
10. Challenging Compliance: TenAgents undergoes independent third-party audits to ensure compliance with privacy regulations, which is documented on the company's Privacy webpage.
Please note that TenAgents has taken extensive measures to ensure compliance with PIPEDA regulations and to safeguard client data. For more information about PIPEDA, you can visit the Office of the Privacy Commissioner of Canada's website.