====== Privacy Policy ====== This Privacy Policy explains how the ISGAN Smart Grid Wiki ("we", "us", "our") processes your personal data in accordance with the General Data Protection Regulation (GDPR). **Controller Identity** [Full legal name of controller/organisation, e.g., "ISGAN c/o Austrian Institute of Technology AIT"] [Full address, e.g., "Giefinggasse 4, 1210 Vienna, Austria"] Contact: [vitaliy.soloviy@ait.ac.at] [Data Protection Officer (if applicable): Name, contact details] [EU Representative (if controller outside EU): Name, contact details] ===== 1. Data We Collect and Purposes ===== We collect and process personal data for specific, legitimate purposes: | Data Category | Purposes | Lawful Basis | |---------------|----------|--------------| | **Account Information** (Username, Real Name, Email Address) | Account management, edit attribution, communication | Contract (Art. 6(1)(b) GDPR); Legitimate interests (Art. 6(1)(f) GDPR: wiki transparency) | | **Contribution History** (Edits attributed to account) | Version control, transparency, public wiki record | Legitimate interests (Art. 6(1)(f) GDPR: integrity of public knowledge base) | | **Analytics Data** (via GoatCounter: no cookies, no PII, site+IP+User-Agent in memory) | Website usage analysis | Legitimate interests (Art. 6(1)(f) GDPR: service improvement) [Specify balancing test if needed] | | **Server Logs** (IP addresses) | Security (DDoS/spam prevention) | Legitimate interests (Art. 6(1)(f) GDPR: site security) | **Voluntary Provision**: Providing account data is optional but required for contributions. Without it, you can only view the wiki. ===== 2. Recipients and Processors ===== We share data only with: - **Hosting Provider**: OpalStack [EU-based servers; Data Processing Agreement in place] - **Analytics Provider**: GoatCounter [EU-based servers; privacy-preserving] [No other recipients unless applicable, e.g., "No transfers to third parties for marketing"] ===== 3. International Transfers ===== [All data stored within EU/EEA. / If transfers: "Data transferred to [country] under [Standard Contractual Clauses / Adequacy Decision / other safeguard]"] ===== 4. Retention Periods ===== | Data Category | Retention Period | |---------------|------------------| | Account Information | For duration of account + [X years] after deletion request, or until no longer needed | | Contribution History | Indefinitely (public wiki record for integrity/transparency) | | Analytics Data | GoatCounter default: [check GoatCounter docs, typically 1 year] | | Server Logs | 30 days (security purposes only) | ===== 5. Your GDPR Rights ===== You have the right to: - Access, rectification, erasure, restriction of processing - Object to processing (including profiling) - Data portability (where applicable) - Withdraw consent (where processing is consent-based) - Lodge a complaint with the Austrian Data Protection Authority (DSB): [dsb.gv.at] Requests: Contact [vitaliy.soloviy@ait.ac.at]. Response within 1 month. **Note on Contributions**: Public edit history cannot be fully erased (legitimate interest in wiki integrity), but account details can be anonymized. ===== 6. Automated Decision-Making ===== [No automated decisions / Specify if any with details under Art. 22 GDPR] ===== 7. Security and Hosting ===== Hosted by OpalStack (EU servers). Logs kept 30 days solely for security, then deleted automatically. ===== 8. Updates to This Policy ===== We may update this policy. Changes posted here; significant updates notified by email. ===== 9. Contact ===== Questions? Email: vitaliy.soloviy@ait.ac.at Last updated: [Date] This wiki is a non-commercial ISGAN resource. No fees apply.