Swiss-Latvian Privacy Policy for the Unified Website Platform
Your privacy and data protection are of great importance to the controller of the Unified Website Platform. We assume that if you are reading this policy in connection with your consent, which has been requested regarding the processing of your personal data, you have read this notice and have accepted this data processing before submitting your personal data.
The government advocates for openness and transparency. Therefore, when you provide us with your personal data, we have described how and for what purposes personal data are processed on the Unified Website Platform. Before processing personal data, we assess the legality of data processing activities. We process personal data of individuals based on official mandates and the associated legal obligations.
The purpose of the Unified Website Platform Privacy Policy is to provide general information regarding the processing of personal data organized and conducted by the State Chancellery, in compliance with the principles of personal data processing included in the European Parliament and Council Regulation No. 2016/679 of April 27, 2016, on the protection of natural persons concerning the processing of personal data and the free movement of such data (General Data Protection Regulation, GDPR).
The controller of personal data on the Unified Website Platform is the State Chancellery (VK). The processors of personal data on the Website Platform include the institutions of the websites included in the platform, the platform maintainers – the State Regional Development Agency (VRAA), the technical resource hosts – the Information Center of the Ministry of Interior (IeMIC), and the technical service providers – the Latvian State Radio and Television Center (LVRTC).
On the Unified Website Platform, your personal data will be processed in accordance with the realization of the legal interests of government institutions, the fulfillment of obligations stipulated by regulatory acts, the fulfillment of contractual obligations, the provision of public information, and other previously specified purposes.
The legal basis for personal data processing carried out within the services provided by the Unified Website Platform is determined by the following regulatory acts:
- Article 10 of the Public Administration Structure Law
- Cabinet of Ministers Regulation No. 399 of July 4, 2017, “Procedure for Accounting and Quality Control of Public Administration Services”
- Cabinet of Ministers Regulation No. 402 of July 4, 2017, “Regulations on E-services of Public Administration”
- Cabinet of Ministers Regulation No. 445 of July 14, 2020, “Procedure for Institutions to Publish Information Online”
The employees of the parties involved in the Unified Website Platform process personal data only for the performance of their duties or on behalf of or within the authorization of institutions, following the basic principles of personal data processing and confidentiality requirements established in the institution’s internal documents.
Employees are prohibited from processing personal data obtained during the performance of their duties for personal purposes or those of others. Data processors, when processing personal data within their job duties, minimize the risk as much as possible that personal data will be accessed by unauthorized persons as a result of actions or omissions.
On the Unified Website Platform, your personal data is processed in compliance with confidentiality requirements and with care for the security of the data in our possession. The processors of personal data on the Unified Website Platform use various security measures to prevent unauthorized access to your data, data disclosure, or other inappropriate use of personal data. Proper data processing, storage, and data integrity are ensured with an appropriate level of security. Accordingly, we use reasonable and appropriate physical, technical, and administrative procedures and means to protect the personal data information we collect and process. The implemented security measures are continuously improved in accordance with security requirements, ensuring appropriate data protection security measures to the extent necessary for data processing purposes.
We implement personal data protection through encryption means, firewall protection, and other data network security breach detection solutions. The processors of personal data on the Unified Website Platform ensure data confidentiality and implement appropriate technical and organizational measures to protect personal data from unauthorized access, unlawful processing, disclosure, accidental loss, distribution, or destruction, to the extent necessary for data processing purposes. The security measures for personal data are constantly improved and enhanced to maintain the level of personal data protection.
Personal data processing protection is carried out for:
- Personal data processed in the information technology infrastructure (servers, local computer networks, and application software);
- Personal data transmitted over the data transmission network, if any;
- Information systems used to ensure work, administered by the institutions involved in the Unified Website Platform;
- Developed, registered, and circulated electronic documents containing personal data.