How does the PRIVO iD Platform comply with privacy laws around data?

The PRIVO iD platform complies with key privacy regulations globally. It is certified COPPA compliant under PRIVO’s FTC approved COPPA safe harbor and has been awarded the GDPRkids™ Privacy Assured Shield.

PRIVO is a service provider and offers its identity and consent management platform to companies that engage with end users and also directly with end users who register for a PRIVO iD. Agreements will cover the personal data collected and processed by PRIVO and its obligations to its customers and users in relation to that data.

PRIVO complies with the EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) as set forth by the U.S. Department of Commerce.  PRIVO has certified to the U.S. Department of Commerce that it adheres to the EU-U.S. Data Privacy Framework Principles (EU-U.S. DPF Principles) with regard to the processing of personal data received from the European Union and the United Kingdom in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF.  If there is any conflict between the terms in this privacy policy and the EU-U.S. DPF Principles and/or the Swiss-U.S. DPF Principles, the Principles shall govern.  To learn more about the Data Privacy Framework (DPF) program, and to view our certification, please visit
https://www.dataprivacyframework.gov/


In the context of an onward transfer, a participating organization has responsibility for the processing of personal information it receives under the EU-U.S. DPF and subsequently transfers to a third party acting as an agent on its behalf.  The participating organization shall remain liable under the Principles if its agent processes such personal information in a manner inconsistent with the Principles, unless the organization proves that it is not responsible for the event giving rise to the damage.


In compliance with the EU-U.S. DPF Principles, PRIVO commits to resolve complaints about our collection or use of your personal information.  If you have any inquiries or complaints regarding our EU-U.S. Data Privacy Framework policy you should first contact PRIVO at: 

17949 Main St., #1025
Dumfries, VA 22026
703–569–0504 (telephone)
866–588–8452 (fax within the US)
703–531–8424 (fax outside of the US)
privacy@privo.com (email)
Attn: Privacy Officer


Dispute Resolution
If a privacy complaint or dispute relating to Personal Data received by Privacy Vaults Online, Inc in reliance on the Data Privacy Framework (or any of its predecessors) cannot be resolved through our internal processes, we have agreed to participate in the VeraSafe Data Privacy Framework Dispute Resolution Procedure. Subject to the terms of the VeraSafe Data Privacy Framework Dispute Resolution Procedure, VeraSafe will provide appropriate recourse free of charge to you. To file a complaint with VeraSafe and participate in the VeraSafe Data Privacy Framework Dispute Resolution Procedure, please submit the required information here: https://www.verasafe.com/privacy-services/dispute-resolution/submit-dispute/


If a complaint or dispute cannot be resolved through our internal process, we have also agreed to cooperate with the EU and UK data protection authorities and the Swiss Federal Data Protection and Information Commissioner and to participate in the dispute resolution procedures of the panel established by such data protection authorities.

Binding Arbitration
If your dispute or complaint related to your Personal Data that we received in reliance on the Data Privacy Framework cannot be resolved by us, nor through the dispute resolution mechanism mentioned above, you may have the right to require that we enter into binding arbitration with you under the Data Privacy Framework “Recourse, Enforcement and Liability” Principle and Annex I of the Data Privacy Framework.