Privacy Policy of cOMmon
​1. Introduction
​
cOMmon values the privacy of all its Members and processes personal data in accordance with the General Data Protection Regulation (GDPR) and applicable European law.
This Privacy Policy explains what data we collect, how it is used, and what rights you have.
​
​
2. Data Controller
​
The entity responsible for processing your data is:
cOMmon ~ Solvondo BV
Waalstraat 81, 9870 Zulte, Belgium
0866.464.574
​
​
3. Data Collected
​
We only collect data necessary for use of the platform:
-
Identification data: name, e-mail address, password.
-
Profile information: biography, skills, interests, photo, location indication.
-
Transaction data: contributions, membership payments, credits/tokens.
-
Communication: messages, support requests, participation in projects and events.
-
Technical data: IP address, cookies, usage statistics.
​
​
4. Purposes of Processing
​
We use personal data to:
-
Create and manage accounts.
-
Match and connect Members.
-
Manage contributions and memberships.
-
Carry out financial and cooperative administration.
-
Keep the platform safe and improve services.
-
Communicate with Members (updates, opt-in newsletters).
​
​
5. Legal Basis
​
Data is processed on the basis of:
-
Performance of contract (membership and platform use).
-
Consent (newsletter, optional features).
-
Legal obligation (accounting and tax compliance).
-
Legitimate interest (platform security, fraud prevention).
​
​
6. Sharing of Data
​
-
We never sell personal data.
-
Data may be shared with processors who support us, such as:
-
Hosting providers (within the EU).
-
Mailing tools (for communication with consent).
-
Payment providers (for membership contributions).
-
-
All processors are bound by GDPR-compliant agreements (DPAs).
​
​
7. International Transfers
​
Data is generally stored within the EU. Transfers outside the EU only occur with providers under the EU-US Data Privacy Framework or through Standard Contractual Clauses (SCC).
​
​
8. Data Retention
​
-
Account data: as long as the account is active.
-
Transaction data: minimum 7 years (legal bookkeeping requirement).
-
Data can be deleted on request unless legal obligations require retention.
​
​
9. Security Measures
​
We take appropriate technical and organizational measures to protect personal data, including:
-
Encryption of passwords and secure connections (SSL).
-
Secure servers and access control.
-
Regular security updates and audits.
​
​
10. Rights of Members
​
Under the GDPR, you have the right to:
-
Access, correct, or delete your data.
-
Data portability.
-
Restrict or object to processing.
-
File a complaint with the data protection authority.
​
​
11. Cookies & Tracking
​
-
Functional cookies are necessary for basic platform operation.
-
Analytical or marketing cookies are only placed with your consent.
-
Details are provided in our separate Cookie Policy.
​
​
12. Updates to Policy
​
This Privacy Policy may be updated. The date of the last update will always be displayed.
​
​
13. Contact
​
For questions or to exercise your rights, you can reach us at:
[[email protected]]