GreenAnt GDPR Policy

GreenAnt GDPR Policy

GREENANT GDPR POLICY

Last Updated: June 30th, 2025

1. Personal Data

1.1 Data Controller

GreenAnt B.V. (“GreenAnt”) acts as the data controller for any personal data processed through the use of the
Desidera platform.

1.2 Types of Data Collected

In connection with your use of Desidera, we may collect and process the following categories of personal data:

  • Identification details (e.g., name, email, organization)

  • Login and authentication data

  • User interaction logs and preferences

  • Geolocation or project metadata that, when linked with user credentials, may qualify as personal data

1.3 Purpose and Legal Basis

Personal data is collected and processed to:

  • Provide you access to Desidera and its services

  • Administer user accounts

  • Communicate updates or respond to your inquiries

  • Analyze platform usage and improve performance

  • Our processing is based on the performance of our contractual obligations, legitimate interest, and, where
    applicable, your consent.

1.4 Data Sharing and Transfers

We do not sell your personal data. Data may be shared with service providers (e.g., cloud infrastructure, analytics)
under strict confidentiality and only for the purposes mentioned above. Where data is transferred outside the
European Economic Area (EEA), we apply appropriate safeguards such as Standard Contractual Clauses.

1.5 Retention and Security

Personal data is retained only as long as necessary to fulfill its purpose or comply with legal obligations. We
implement technical and organizational measures to protect your data against loss, misuse, or unauthorized
access.

1.6 Your Rights

As a data subject, you have rights under the GDPR including access, rectification, deletion, and data portability. To
exercise these rights, contact:
info@greenant.farm