Last updated: October 7, 2026
Rattlnotog is committed to protecting your privacy and ensuring compliance with the General Data Protection Regulation (GDPR). This page explains how we process personal data in accordance with GDPR requirements.
We process personal data only when we have a valid legal basis, including:
Under the GDPR, you have the following rights regarding your personal data:
You have the right to request copies of your personal data. We may charge a small fee for this service in cases of manifestly unfounded or excessive requests.
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
You have the right to request that we erase your personal data, under certain conditions, such as when the data is no longer necessary for the purposes for which it was collected.
You have the right to request that we restrict the processing of your personal data, under certain conditions, such as when you contest the accuracy of the data.
You have the right to object to our processing of your personal data, under certain conditions, particularly for direct marketing purposes.
You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.
To exercise any of these rights, please contact us at:
Email: [email protected]
Subject line: GDPR Data Request
We will respond to your request within one month of receipt. In complex cases, we may extend this period by two additional months, and we will inform you of any such extension.
We have appointed a Data Protection Officer (DPO) to oversee our GDPR compliance. You can contact our DPO with any questions or concerns about how we process your personal data:
Email: [email protected]
Address: 142 Wellington Street West, Toronto, ON M5J 1H8, Canada
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
When we transfer personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as:
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach. If the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly without undue delay.
We do not use automated decision making or profiling that produces legal effects or similarly significant effects on individuals.
If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with your local supervisory authority. However, we encourage you to contact us first so we can address your concerns.
We may update this GDPR compliance statement from time to time. We will notify you of any significant changes by posting a notice on our website or by contacting you directly if required by law.