Please note that according to GDPR, Marquiz is the processor, and you are the controller.
The data controller is the one who interacts with the client, collects data, and determines how to process it further.
Data Processor (Operator) — receives personal data from the controller, stores it, or processes it somehow, as directed by the controller. The processor does not work with individuals but only processes their data strictly on behalf of the controller.
The activities of Marquiz are regulated by the Privacy policy - our main document that guarantees visitor protection and privacy.
To comply with the GDPR law, there are a few things you should do:
- Create documents that outline how you handle and protect personal data, making sure they align with the GDPR regulations.
- Sign a Data Processing Agreement (DPA). You can sign our Data Processing Agreement, using Adobe e-Sign here
- Enable a Cookie notification for your quiz. This notification should inform users that their data may be collected and stored through cookies when they interact with your quiz. You can set this up in the quiz settings.
- Comply with the requirements of the law: Notify the ICO (information-commissioners-office) in case of leaks of personal data, etc., respond to requests from users (i.e., a user writes to you who wants to delete their data).
By following these steps, you'll be taking some important measures to ensure compatibility with the GDPR law.