Last updated: 2/15/2026
KhataOne is committed to compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws. This page outlines our GDPR compliance measures and your rights as a data subject.
As a data subject, you have the following rights under GDPR:
You have the right to obtain confirmation as to whether we process your personal data and to access your personal data.
You have the right to have inaccurate personal data corrected and incomplete personal data completed.
You have the right to request deletion of your personal data under certain circumstances.
You have the right to restrict the processing of your personal data in certain circumstances.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
You have the right to object to processing of your personal data for direct marketing purposes or on grounds relating to your particular situation.
You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you.
To exercise any of your GDPR rights, please contact us using the information provided below. We will respond to your request within one month of receipt.
When making a request, please provide:
We process your personal data based on the following legal bases:
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, comply with legal obligations, resolve disputes, and enforce our agreements. When data is no longer needed, we securely delete or anonymize it.
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction, including:
In the event of a personal data breach that is likely to result in a high risk to your rights and freedoms, we will notify you and the relevant supervisory authority without undue delay, and in any event within 72 hours of becoming aware of the breach.
When we engage third-party service providers who process personal data on our behalf, we ensure they have appropriate data processing agreements in place that comply with GDPR requirements.
If we transfer your personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or adequacy decisions, to protect your data in accordance with GDPR requirements.
If you believe we have not addressed your concerns or have violated your rights under GDPR, you have the right to lodge a complaint with your local data protection supervisory authority.
For GDPR-related inquiries or to exercise your rights, please contact our Data Protection Officer:
Email: gdpr@khataone.com
Address: 123 Business Street, Suite 100, City, State 12345
Data Protection Officer: [Name]
Email: dpo@khataone.com