RxPhoto is a Fully GDPR Compliant Platform

Complying with GDPR is a priority for our customers, and it's equally a priority for us. That's why we've made RxPhoto fully GDPR compliant and updated our Privacy Policy to reflect the regulation for our EU visitors.

Privacy policy

What We've Done to Be GDPR Compliant

Data Storage

We store your personal data for the duration of your use of our services. No form submission data you provide will be transferred outside of the EU.

Data Protection Officer

We've designated a Data Protection Officer (DPO) at RxPhoto. To reach our DPO, email dpo@rxphoto.com.

Right to Erasure and Data Portability

Under GDPR, you are entitled to the Right to Erasure and the Right to Data Portability. RxPhoto provides forms to submit a valid request to exercise either of these rights.

Cookies

We use cookies to personalize content, provide social media features, and analyze traffic. You can choose to allow cookies or turn them off at any time.

Lawful Basis of Processing

GDPR requires us to identify a lawful basis for each way we use your personal data. To learn more about the purposes for which we use your data and our legal basis for doing so, click Learn More below.

Deletion

If you need to remove data from your account, contact RxPhoto and your data will be deleted without undue delay. If you cancel your RxPhoto account, all data will be automatically deleted within 60 days.

Data Processing Agreement (DPA)

We've signed data processor agreements with each of our sub-processors to ensure the security of RxPhoto customer data. A list of sub-processors is available upon request. To obtain a DPA, email dpo@rxphoto.com.

Security

RxPhoto redirects all incoming traffic to the secure HTTPS version of rxphoto.com, ensuring proper encryption of data both in transit and at rest using the latest protocols and ciphers. For more information on our security protocols and data breach policy, click Learn More below.