Legal
GDPR & Privacy Rights
This page summarizes Reviewlico’s current GDPR and privacy-rights posture for a free personal project that processes account data, organization data, and review-related data.
1. Roles
For website, account, and project administration data, Reviewlico generally acts as the controller.
For review submissions and related customer content handled for an organization using the service, Reviewlico generally acts as a processor or service provider, while that organization acts as the controller for the underlying review program.
2. Rights you may have
Depending on applicable law, you may have the right to:
- request access to your personal data;
- request correction of inaccurate data;
- request deletion of data in appropriate cases;
- request restriction of processing;
- object to certain processing based on legitimate interests;
- request a portable copy of data you provided;
- withdraw consent where processing relies on consent;
- complain to a relevant supervisory authority.
3. How to make a request
Reviewlico currently handles privacy requests manually. Send requests to support.reviewlico@gmail.com and describe the request clearly enough for the project to identify the relevant account or data.
4. Response timing
Reviewlico aims to respond within 30 days where possible. Some requests may take longer if they are complex, repetitive, or require identity verification, as allowed by applicable law.
5. Identity verification
Reviewlico may ask for reasonable information to verify that the person making a request is the data subject or an authorized representative before disclosing, exporting, or deleting data.
6. DPO, representative, and formal DPA terms
Reviewlico has not appointed a formal data protection officer, EU representative, or UK representative for this personal project at this time.
A standalone data processing agreement is not currently published. If Reviewlico later evolves into a formal commercial service, that may change.