Phone
USA +1 949 212 7905
AU +61 438 850 304
ME +971 5214 72737
business@menulogistics.com
General Data Protection Regulation (GDPR)
Article 13 of Regulation EU 2016/679
This Privacy Notice provides mandatory information as required under Articles 13 and 14 of the European General Data Protection Regulation (GDPR) regarding the transparency of personal data processing. Definitions of certain terms within this notice are explained in the appendix.
The Data Controller for the personal data processed by us is the Client Company of Menu Logistics Inc (the employer of the natural person whose data is collected, hereafter referred to as the Data Subject). The Data Controller will pass personal data of their employees to Menu Logistics Inc to manage travel on behalf of those employees in connection with their business. Menu Logistics Inc, as Data Processor acting on the instructions of the Data Controller under a written contract with them, will subsequently use that personal data to facilitate travel arrangements for the Data Subject. It is this contract which forms the ‘Legal Basis’ for the processing of personal data carried out by Menu Logistics Inc in these circumstances.
Menu Logistics Inc will also become a Data Controller if it collects additional personal data directly from a Data Subject. In these circumstances Menu Logistics Inc will be acting under a ‘Legitimate Interest’ to legally process the data for the management of travel for the Data Subject and to fulfil the contractual requirements for its Client. Menu Logistics Inc also acts as a Data Controller for any personal data held regarding its own employees, and legally processes this data under its Contract of Employment with those Data Subjects.
As a Data Subject you have rights under the GDPR. These rights can be seen below. Menu Logistics Inc will always fully respect your rights regarding the processing of your personal data, and has provided below the details of the person to contact if you have any concerns or questions regarding how we process your data, or if you wish to exercise any rights you have under the GDPR.
The identity and contact detail for the Data Protection Officer within Menu Logistics Inc is:
Chief Technology Officer
Menu Logistics Inc
62 Milroy St, Suite 1
Kensington NSW 2003
Australia
Menu Logistics Inc has adopted the following principles to govern its collection and processing of Personal Data:
The Data Subject has the right to make a complaint directly to a supervisory authority within their own country. Menu Logistics Inc’s Data Protection compliance is supervised by:
Scott Mahoney
Vision Healthcare Systems International, trading as Menu Logistics Inc
Menu Logistics Inc
62 Milroy St, Suite 1
Kensington NSW 2003
Australia
To fulfil the travel arrangements for a Data Subject it will in most cases be necessary to process personal data via a third party (these will include but are not limited to search engines, partner sites, healthcare information companies etc.,).
Personal Data shall not be transferred to a country or territory outside the European Economic Area (EEA) unless the transfer is made to a country or territory recognised by the EU as having an adequate level of Data Security, or is made with the consent of the Data Subject, or is made to satisfy the Legitimate Interest of Menu Logistics Inc in regard to its contractual arrangements with its clients.
All internal group transfers of Personal Data shall be subject to written agreements under the Company’s Intra Group Data Transfer Agreement (IGDTA) for internal Data transfers which are based on Standard Contractual Clauses recognised by the European Data Protection Authority.
Personal Data:
(Article 4 of the GDPR): ‘personal data’ means any information relating to an identified or identifiable natural person (‘data subject’); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
Processing:
(Article 4 of the GDPR): means any operation or set of operations which is performed upon personal data or sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, erasure or destruction.
Legal Basis for Processing:
(Article 6 of the GDPR): At least one of these must apply whenever personal data is processed:
Data Controller:
(Article 4 of the GDPR): this means the person or company that determines the purposes and the means of processing personal data.
Data Processor:
(Article 4 of the GDPR): means a natural or legal person, public authority, agency or any other body which processes personal data on behalf of the controller.
Data Subject Rights:
(Chapter 3 of the GDPR) each Data Subject has eight rights. These are:
We use cookies to give you the best online experience. By agreeing, you accept the use of cookies in line with our cookie policy.