Data Privacy Framework Statement
This statement describes how Veneris Tech LLC (“Veneris”, “we”, “us”) handles the cross-border transfer of personal data from the European Economic Area (EEA), the United Kingdom (UK), and Switzerland to the United States.
1. About Veneris
Veneris Tech LLC is incorporated in Wyoming, USA. In the course of operating its website and delivering its outbound sales service to clients, Veneris may process personal data of individuals located in the EEA, UK, and Switzerland.
2. Transfer Mechanisms
Standard Contractual Clauses (SCCs)
For transfers of EEA personal data to the USA, Veneris relies on the European Commission’s Standard Contractual Clauses (SCCs) — specifically, the module 2 (controller to processor) and module 3 (processor to processor) clauses as applicable — as our primary legal transfer mechanism under GDPR Chapter V.
UK International Data Transfer Addendum (IDTA)
For transfers of UK personal data to the USA, we apply the UK International Data Transfer Addendum (IDTA) issued by the Information Commissioner’s Office, supplementing the SCCs described above.
Swiss Transfers
For transfers of Swiss personal data to the USA, we apply SCCs as adapted for compliance with the Swiss Federal Act on Data Protection (nFADP).
3. EU-US Data Privacy Framework
Veneris Tech LLC is not currently self-certified under the EU-US Data Privacy Framework (DPF) programme administered by the US Department of Commerce. We therefore do not rely on the DPF as a transfer mechanism. Our primary mechanism is Standard Contractual Clauses as described above.
We will update this statement if we obtain DPF certification in the future.
4. Sub-Processor Transfers
Where we engage US-based sub-processors to process EEA, UK, or Swiss personal data, we ensure that appropriate safeguards are in place, including back-to-back SCCs with those sub-processors. A list of sub-processors is available on request at privacy@veneris.io.
5. Data Subject Rights
If you are located in the EEA, UK, or Switzerland and wish to exercise your rights under the GDPR, UK GDPR, or nFADP (including the right to access, rectify, erase, restrict, or object to processing), please contact privacy@veneris.io. We will respond within 30 days.
You also have the right to lodge a complaint with your local supervisory authority:
- EEA: your national data protection authority (e.g., CNIL for France, BfDI for Germany)
- UK: the Information Commissioner’s Office (ICO)
- Switzerland: the Federal Data Protection and Information Commissioner (FDPIC)
6. Updates
We will update this statement if our transfer mechanisms or certification status changes. Please check the “Last Updated” date at the top of this document.
7. Contact
For questions about international data transfers: privacy@veneris.io
For DPA and legal transfer instrument requests: legal@veneris.io
Veneris Tech LLC
30 N Gould St, STE R
Sheridan, WY 82801
USA
