Privacy Policy

ECCP avoids collecting unnecessary personal data and follows a privacy by design

ECCP avoids collecting unnecessary personal data and follows “privacy by design” and “data minimization” policies for data processing and retention.

The ECCP can receive information and personal data through its websites, email notifications, and other interactions means, and may include:

  • Information you provide about yourself when you use our Services
  • Information collected automatically and shared by your device for connectivity, such as your IP address, software configurations, etc. Such data may be logged for security reasons
  • Cookies and similar technologies: We limit the use of “cookie” technology and other similar technologies. Detailed information on the cookies we use and the way to deactivate them is available on the Cookies Policy page.

In principle, our Services are not directed to persons under 16 years of age. Any participant to an ECCP Service who is a minor of age shall have a parental agreement before sharing any personal data with us. Anyone who becomes aware that someone under 16 years of age has provided us with personal data without parental agreement should contact us.

ECCP stores its data in Europe. The data retention period is minimized and data that are not useful anymore are deleted. The data retention period is determined by taking into account the legal, security, management and other legitimate Service requirements.

Personal data are processed with care and strict rules are applied to avoid any unnecessary data transfers to third parties or to geographic locations that may expose the data at risk. We may share personal data in the following cases:

  • With Data Processors and Partners for our Services and activities, such as online payment solutions, onsite registration processes, or data storage infrastructure. The list of data processors is available by simple request to the data protection officer.
  • When Required by Law or for legitimate purpose, such as: protecting the legal rights and safety of ECCP, its partners, and the users of its Services.
  • For Reporting: We usually use aggregated and anonymized data when reporting on the participants to our events. However, names and affiliations of members or participants attending ECCP activities may appear in public reports, press releases and through other information means.

We use physical, technical, and administrative measures to safeguard information in our possession against loss, theft and unauthorized use, disclosure, or modification. Please note, however, that no data transmission or storage can be guaranteed to be 100% secure. As a result, while we strive to protect the information we maintain, we cannot ensure or warrant the security of any information that you transmit to us. If you identify any weakness in our security, please inform us.

Users have rights on their personal data. You may contact our Data Protection Officer in order to assert your rights as a Data Subject, including the right to access, rectify, erase your personal data; the right to withdraw consent and to restrict or object to the processing of your personal data; and the right to portability of your personal data. Data Subjects also have the right to lodge a complaint with a supervisory authority in case their rights would be violated.

We may revise this Privacy Policy from time to time and make changes at our sole discretion. The most current version of the policy will govern our use of your information and will be available on the ECCP website: By continuing to access or use the Services after those changes become effective, you agree to be bound by the revised Privacy Policy.

The European Center on Certification and Privacy is commited to protect and handle with care all personal data under its control. All data subjects have rights on their personal data. If you have shared personal data with us and have request related to your personal data that would be under our control, feel free to contact our Data Protection Officer by using our contact form and starting your message with the word "privacy" or "DPO". 

The ECCP processes personal data for the sole purposes of its aims, activities and Services, including:

  • Registration, invoicing and billing of users of ECCP Services
  • Membership applications and management, including membership fees invoicing
  • Informing ECCP users and visitors about ECCP related events and activities
  • Improving users experience on our website
  • Authenticating, securing and collecting statistics on remote connections
Copyright © 2019 ECCP. All Rights Reserved.