GDPR Compliance.
How SlideSync protects the rights of users under the General Data Protection Regulation.
1. Our Commitment to GDPR
SlideSync is committed to protecting the personal data of all users, particularly those located in the European Economic Area (EEA), the United Kingdom, and Switzerland. We process personal data in compliance with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and related national implementing legislation.
This page outlines how SlideSync meets its obligations under the GDPR and how EU users can exercise their data protection rights.
2. Legal Basis for Processing
SlideSync processes personal data under one or more of the following legal bases as defined by Article 6 of the GDPR:
- Contractual necessity — processing required to provide the SlideSync platform and services you have signed up for, including account creation, presentation generation, and subscription management.
- Legitimate interests — processing necessary for our legitimate business interests, such as improving platform performance, preventing fraud, and conducting anonymized analytics, provided these interests do not override your fundamental rights.
- Consent — where we rely on your consent for specific processing activities, such as analytics cookies, you may withdraw consent at any time without affecting the lawfulness of prior processing.
- Legal obligation — processing necessary to comply with applicable legal requirements, such as tax reporting, fraud prevention, or responding to lawful data requests.
3. Data Subject Rights
Under the GDPR, you have the following rights with respect to your personal data:
- Right of access — you may request a copy of the personal data we hold about you, along with information about how it is processed.
- Right to rectification — you may request correction of inaccurate or incomplete personal data.
- Right to erasure — you may request deletion of your personal data where it is no longer necessary for the purpose it was collected, or where you withdraw consent.
- Right to data portability — you may request a copy of your data in a structured, commonly used, machine-readable format for transfer to another service.
- Right to restrict processing — you may request that we limit the processing of your data in certain circumstances, such as when the accuracy of the data is contested.
- Right to object — you may object to processing based on legitimate interests or for direct marketing purposes at any time.
- Right to withdraw consent — where processing is based on consent, you may withdraw it at any time. This does not affect the lawfulness of processing carried out before withdrawal.
4. How to Exercise Your Rights
To exercise any of the rights described above, contact our data protection team at privacy@slidesync.ai. When submitting a request, please include:
- Your full name and the email address associated with your SlideSync account.
- A description of the right you wish to exercise.
- Any additional details that may help us locate and process your request efficiently.
We will respond to all valid requests within 30 days. In complex cases or where we receive a high volume of requests, we may extend this period by an additional 60 days with prior notice to you. We will not charge a fee for processing your request unless it is manifestly unfounded or excessive.
5. Cross-Border Data Transfers
SlideSync may transfer personal data outside the EEA in connection with the services provided by our sub-processors. Where such transfers occur, we rely on the following safeguards to ensure an adequate level of data protection:
- Standard Contractual Clauses (SCCs) as approved by the European Commission under Article 46(2)(c) of the GDPR.
- Binding data processing agreements with all sub-processors that include obligations equivalent to those in this policy.
- Technical safeguards including encryption of data in transit (TLS) and at rest (AES-256).
For a full list of our sub-processors and their locations, see our Data Processing Agreement.
6. Data Protection Officer
SlideSync has designated a data protection point of contact responsible for overseeing GDPR compliance and responding to data protection inquiries. You can reach our data protection team at:
- Email — dpo@slidesync.ai
- Subject line— "GDPR Inquiry" followed by a brief description of your request.
If you are not satisfied with our response, you have the right to lodge a complaint with your local supervisory authority. A list of EEA supervisory authorities is available on the European Data Protection Board website.
7. Updates to This Page
We may update this GDPR compliance information from time to time to reflect changes in our data processing practices, applicable law, or regulatory guidance. When material changes are made, we will update the date at the top of this page. Your continued use of SlideSync after changes are posted constitutes acknowledgment of the updated information.
For questions about GDPR compliance or SlideSync's data protection practices, contact us at privacy@slidesync.ai.