DataInfometrix is committed to processing personal data lawfully, fairly, and transparently. This statement explains how we comply with the EU and UK General Data Protection Regulation (GDPR) when we provide B2B data and marketing services, and the rights available to data subjects.
We handle personal data in accordance with the GDPR principles: lawfulness, fairness and transparency; purpose limitation; data minimization; accuracy; storage limitation; integrity and confidentiality; and accountability. We apply these principles across how we source, verify, store, and supply business contact data.
Depending on the engagement, DataInfometrix may act as a data controller (for example, for data we compile and supply, and for our own website and client relationships) or as a data processor (where we process data on documented instructions from a client). We enter into data processing agreements with clients and sub-processors where required.
For B2B contact data used in business marketing, we primarily rely on legitimate interests — the interest of businesses in reaching other businesses with relevant offerings — balanced against the rights and freedoms of individuals. Where consent is the appropriate basis (for example certain electronic marketing under ePrivacy/PECR rules), we rely on consent. We also process data to comply with legal obligations.
Where we rely on legitimate interests, we conduct and document a balancing assessment to ensure our interest in providing B2B data does not override the interests, rights, and freedoms of the individuals concerned. We limit processing to business and professional contact information used for relevant business outreach, and we honor objections and opt-outs.
Personal data in our B2B database is obtained from permission-based and publicly available professional sources, including business directories, professional networks, company websites, public registers, partner contributions, and opt-in channels. Records are verified before use and refreshed on a recurring cycle.
If your personal data is processed by us, you have the right to:
To exercise any right, email [email protected] or use our contact page. We will verify your request and respond within one month, as required by the GDPR. There is no charge for a standard request. If you object to processing or direct marketing, we will add your details to our suppression list and cease the relevant processing.
Where we transfer personal data outside the EEA or UK, we rely on appropriate safeguards such as adequacy decisions or standard contractual clauses, to ensure your data continues to receive an equivalent level of protection.
We keep personal data only as long as necessary for the purposes for which it was collected and to meet legal obligations. We apply technical and organizational measures designed to protect personal data against unauthorized access, loss, or misuse, and review these measures regularly.
If you are in the EEA or UK and believe we have not handled your data in accordance with the law, you have the right to lodge a complaint with your local data protection supervisory authority. We would, however, appreciate the chance to address your concerns first.
For any GDPR-related question or request, contact [email protected] or write to DataInfometrix, 7901 4th St N Ste 300, St Petersburg, FL 33702, USA. See our Privacy Policy for full details on our data practices.
Email our compliance team at [email protected] or reach us directly.