The following information explains how your personal data is processed by Henriette Kyed Photography and what it means to you as a client.
It is important to emphasize that I only store personal data that is relevant to our client relationship. This may include your name, address, email address, telephone number, and similar contact information.
The General Data Protection Regulation (GDPR) is an EU regulation that applies across all member states. Its primary purpose is to provide transparency regarding how personal data is collected, processed, and stored.
The GDPR came into effect on May 25, 2018.
At Henriette Kyed Photography, the amount of personal data exchanged with clients is limited. The systems I use and how they store your personal information are described below.
For more information about GDPR, please visit the Danish Data Protection Agency (Datatilsynet).
GDPR concerns consent for photography, the storage of personal information, the use of photographs, and the retention of materials.
For this reason, it is important that you complete a consent form before a photography session. This also applies to wedding clients, even if a wedding contract has already been signed. While this may seem repetitive, it is designed to protect your rights and privacy.
Henriette Kyed Photography is a small business with a straightforward data management structure.
As a client, you have the right at any time to request access to, receive a copy of, or request deletion of the personal data I store about you. Such requests must be submitted in writing via email to fotograf@henriettekyed.dk. For security reasons, valid photo identification may be required before personal information is disclosed or deleted.
Most client communication takes place via email. These communications are stored on an SSL-secured server hosted by one.com. While I am actively working with a client, all written correspondence is retained on the email server. After the project is completed, correspondence is archived for one year before being securely anonymized or deleted.
Clients may order photographs through a customer login area on www.henriettekyed.dk. No sensitive personal information is stored in this system, and photographs are removed after the order has been completed.
Final edited photographs are delivered through Dropbox. Please refer to Dropbox’s own GDPR and privacy policies regarding the handling of personal data.
Invoices are issued through Billy, my accounting and invoicing platform, which is responsible for securely storing any personal information processed through its services.
Payments are made via bank transfer. When making a payment, data security is handled by your bank and my bank, Sparekassen Sjælland.
The following systems may process or store personal data:
I store personal information in different systems for different periods of time:
During our communication and when browsing this website, you may provide one or more of the following types of information:
In the event of a data security breach, affected clients will be notified directly via email within 72 hours of becoming aware of the breach.
The notification will include information about:
All data breaches will also be reported to the Danish Data Protection Agency within the required 72-hour period.
If you would like to know what personal information Henriette Kyed Photography holds about you, or if you wish to withdraw your consent, please contact:
For security reasons, valid photo identification may be required before personal information is disclosed or consent is withdrawn.