GDPR Compliance

2025-2026

GDPR Compliance Statement
Effective Date: April 11, 2025

Avanteer is committed to protecting personal data and upholding the privacy rights of individuals in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR).

This statement outlines our compliance approach and principles when processing personal data.

1. Data Controller

Avanteer acts as the Data Controller for the personal data it collects and processes from publicly available sources for the purposes of providing people and company datasets to its clients.

2. Lawful Basis for Processing

Avanteer processes personal data based on the legitimate interests pursued by us and our clients, in accordance with Article 6(1)(f) of the GDPR. This includes:

  • Providing structured, public business information for B2B research, analytics, and commercial insight.
  • Enabling lawful business intelligence, lead generation, and enrichment activities.

We carefully assess and balance these interests against the rights and freedoms of data subjects.

3. Types of Data Processed

Avanteer only processes data from publicly available sources, and limits it to non-sensitive, professional information, including:

  • Names
  • Job titles
  • Company affiliations
  • Business email formats (if available)
  • Public professional profile data
  • Company-related information (e.g., industry, size, location)

We do not process special categories of personal data under Article 9 GDPR.

4. Data Accuracy and Minimization

We ensure that all personal data we process:

  • Is relevant, limited, and proportionate to its intended purpose.
  • Is updated on a monthly basis to maintain accuracy and relevance.

5. Data Subject Rights

Individuals whose data is included in our datasets have the following rights under GDPR:

  • Right of access
  • Right to rectification
  • Right to erasure (“right to be forgotten”)
  • Right to restrict processing
  • Right to object to processing
  • Right to data portability

To exercise these rights, individuals can contact us at. We will respond to all valid requests in accordance with GDPR timelines.

6. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected. Datasets are refreshed monthly, and data no longer relevant is removed.

7. International Data Transfers

If personal data is transferred outside the European Economic Area (EEA), Avanteer ensures adequate safeguards are in place, such as Standard Contractual Clauses (SCCs) or equivalent measures as recognized under GDPR.

8. Security Measures

We implement appropriate technical and organizational measures to protect personal data, including:

  • Access controls and authentication
  • Encrypted data storage
  • Regular security audits and risk assessments

9. Opt-Out and Data Removal

If your personal data appears in an Avanteer dataset and you wish to opt out or request its removal, please contact us at . We honor all legitimate GDPR-related requests promptly and transparently.

10. Contact Information

For any questions related to GDPR or your data, please contact:

Data Protection Officer (DPO)
Andrea Galli: contact@avanteer.dev