Privacy Policy
We respect your privacy and are committed to protecting your personal data in accordance with the EU General Data Protection Regulation (GDPR).
Data Controller
Cancer Immunotherapy Fund
E-mail: cief@cancerimmunotherapyfund.com
Personal Data We Collect
We may process the following categories of personal data:
- Identification data: name, surname
- Contact data: e-mail address
- Transaction data: donation amount, payment method, currency
- Technical data: IP address, browser type, device information
- Communication data: messages and inquiries you send to us
How We Collect Data
- Directly from you when you make a donation or fill out a contact form.
- Automatically through security and analytics tools when you visit the website.
- Through payment service providers (e.g., Stripe, PayPal) when processing donations.
Legal Basis for Processing
We process your personal data on the following legal bases (Art. 6 GDPR):
- Contract: to process your donation and issue confirmations.
- Legal obligation: to comply with accounting, tax, and anti-fraud laws.
- Legitimate interest: to improve website functionality, security, and communication with donors.
- Consent: where required (for example, for analytics or cookies).
How We Use Your Personal Data
- To process and record donations.
- To issue receipts and confirmations.
- To maintain required legal and financial documentation.
- To respond to your inquiries and requests.
- To improve website performance and ensure security.
- To prevent fraud and misuse of the donation system.
Data Sharing
Your data is shared only with trusted service providers, and only to the extent necessary:
- Payment processors such as Stripe or PayPal, for secure processing of donations.
- Our website hosting and security providers.
- Analytics and security tools (anonymized where possible).
We do not sell your personal data.
International Transfers
Some service providers (for example Stripe or Google) may process data outside the European Union. In such cases, appropriate safeguards are used, such as Standard Contractual Clauses (SCCs) or equivalent legal mechanisms.
Data Retention
- Donation and accounting records are stored for the period required by applicable law.
- Communication (e.g., e-mail messages) is kept only as long as necessary to handle your request.
- Technical logs are retained for a limited period for security and troubleshooting.
Your Rights
Under the GDPR, you have the right to:
- Access your personal data.
- Rectify inaccurate or incomplete data.
- Request deletion of your data (“right to be forgotten”).
- Restrict processing of your data in certain situations.
- Object to processing based on legitimate interest.
- Data portability, where applicable.
- Withdraw consent at any time (where processing is based on consent).
To exercise any of these rights, please contact us at:
cief@cancerimmunotherapyfund.com
Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, accidental loss, or misuse.
Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be available on this page.