GRACE CHURCH VAASA

Privacy & Security Policy

Last updated: 27 September 2025

Your privacy and the security of your personal data are very important to us. This Privacy & Security Policy explains how we collect, use, store, and protect your information when you use our website and services. It also sets out your rights under the EU General Data Protection Regulation (GDPR).

1. Who We Are

This website is operated by Armon Lähetys – Nådens Mission ry, a registered association in Finland.

2. What Data We Collect

We may collect the following categories of personal data:

    • Information you provide directly
       Such as your name, email address, phone number, and any information submitted through forms (e.g. contact forms, sign-ups).

    • Technical and usage data
       Such as IP address, browser type, device information, and pages visited, collected automatically via cookies and similar technologies.

    • Transactional data
       Such as details related to donations, event registrations, or purchases if applicable.

We do not knowingly collect personal data from children under 16 without parental consent.

3. How We Use Your Data

We process your personal data only when there is a lawful basis under GDPR. This includes:

    • To provide and improve our services (performance of a contract)

    • To respond to your enquiries and support requests (legitimate interests)

    • To send you updates or newsletters if you have opted in (consent)

    • To comply with legal obligations (legal requirement)

    • To ensure website security and fraud prevention (legitimate interests).
    •  

4. Sharing Your Data

We do not sell your personal data. We may share your information only with:

    • Trusted service providers (e.g. hosting, email distribution, payment processing) under strict data protection agreements

    • Public authorities if required by law

    • Other parties, but only with your explicit consent

All third parties are bound by contractual obligations to safeguard your data.

5. Data Storage & Retention

Your personal data is stored within the European Economic Area (EEA). If transfers outside the EEA are necessary, we ensure appropriate safeguards (e.g. Standard Contractual Clauses).

We retain your data only as long as necessary for the purposes stated above or as required by law. After this period, data is securely deleted or anonymized.

6. Your Rights

Under GDPR, you have the following rights:

    • Access – Request a copy of your personal data

    • Rectification – Correct inaccurate or incomplete data

    • Erasure – Request deletion of your data (“right to be forgotten”)

    • Restriction – Limit the processing of your data

    • Portability – Receive your data in a structured, commonly used format

    • Objection – Object to processing based on legitimate interests or direct marketing

    • Withdraw consent – Where processing is based on your consent, you can withdraw it at any time

To exercise these rights, please contact us at tero.fredriksson@ggwo.fi. We will respond within one month.

7. Cookie Policy

We use cookies and similar technologies to make our website work properly, improve your experience, and analyse traffic.

What Are Cookies?

Cookies are small text files stored on your device when you visit a website. They help us remember your preferences and understand how visitors use our site.

Types of Cookies We Use

    • Essential cookies – Required for the site to function (e.g. security, log-in)

    • Performance cookies – Help us understand how the site is used (e.g. analytics)

    • Functionality cookies – Remember your preferences (e.g. language, settings)

    • Marketing cookies – Only used if you consent; they allow us to deliver relevant content or measure the effectiveness of communications.

Managing Cookies

When you first visit our site, you will see a cookie banner asking for your consent (where required). You can change or withdraw your consent at any time.

You can also manage or disable cookies directly in your browser settings. Please note that disabling some cookies may affect the functionality of our site.

8. Security Measures

We take appropriate technical and organizational measures to protect your data, including:

    • Encryption of data during transmission (SSL/TLS)

    • Restricted access to personal data on a need-to-know basis

    • Regular monitoring, testing, and updating of security systems

    • Policies and training to ensure staff handle data responsibly

Despite these measures, no system can be 100% secure. We encourage you to use strong passwords and protect your login details.

9. Changes to This Policy

We may update this policy from time to time to reflect changes in law, technology, or our practices. The updated version will always be posted on this page, with a revised date.

10. Contact & Complaints

If you have questions or concerns about this policy, please contact us at:
Email: tero.fredriksson@ggwo.fi
Phone: +358 40 0319211

You also have the right to lodge a complaint with the Office of the Data Protection Ombudsman (Tietosuojavaltuutetun toimisto) in Finland or your local Data Protection Authority if you believe we have not complied with data protection laws.