GDPR Compliance

Last Updated: March 23, 2025

GDPR Commitment

At Rankerli, we are committed to protecting the privacy and security of your personal data. This GDPR Compliance Statement explains how we adhere to the General Data Protection Regulation (GDPR), the European Union's comprehensive privacy law that came into effect on May 25, 2018.

We have implemented technical and organizational measures to ensure that we process personal data in compliance with GDPR principles and to protect the rights of EU data subjects.

1. What is GDPR?

The General Data Protection Regulation (GDPR) is a legal framework that sets guidelines for the collection and processing of personal information from individuals who live in the European Union (EU) and European Economic Area (EEA). It strengthens and unifies data protection for individuals within the EU and addresses the export of personal data outside the EU.

The GDPR gives EU citizens greater control over their personal data and requires businesses to be transparent about how they collect, use, and store this data. It applies to all companies processing the personal data of data subjects in the EU, regardless of the company's location.

2. Our Approach to GDPR Compliance

Rankerli is committed to GDPR compliance through the following measures:

Data Protection by Design

We've integrated data protection principles into our business processes and product development from the outset.

Transparent Policies

Our Privacy Policy and Terms of Service clearly explain how we collect, use, and protect your data.

Data Subject Rights

We've implemented processes to respect all data subject rights under the GDPR.

Breach Notification

We have procedures in place to detect, report, and investigate personal data breaches.

Our commitment to GDPR compliance is ongoing. We regularly review and update our practices as the regulatory landscape evolves and as we enhance our services.

3. Legal Basis for Processing

Under GDPR, we must have a legal basis for processing personal data. Rankerli processes personal data on the following legal grounds:

Contractual Necessity

We process your data when necessary to fulfill our contractual obligations to you, such as providing our services after you sign up for an account.

Legitimate Interests

We process data to pursue our legitimate interests, such as improving our services, security, fraud prevention, and marketing our services. We balance these interests against your rights and freedoms.

Consent

We process certain data based on your explicit consent, such as when you opt-in to receive marketing communications or when you connect your Google Search Console account to our services.

Legal Obligation

We process data when necessary to comply with a legal obligation, such as responding to lawful requests from law enforcement authorities.

4. Your Rights Under GDPR

The GDPR provides various rights to EU data subjects regarding their personal data. As a Rankerli user from the EU, you have the following rights:

Right to Access

You have the right to request access to your personal data that we process and obtain information about how we use it.

Right to Rectification

You have the right to have inaccurate personal data corrected or incomplete data completed.

Right to Erasure

Also known as the 'right to be forgotten', you have the right to request the deletion of your personal data in certain circumstances.

Right to Restriction

You have the right to request the restriction of processing of your personal data in certain circumstances.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.

Right to Object

You have the right to object to the processing of your personal data in certain circumstances, particularly for direct marketing purposes.

How to Exercise Your Rights

You can exercise any of these rights by contacting our Data Protection Officer at dpo@rankerli.com. We will respond to your request within one month, as required by the GDPR.

To protect your privacy and security, we may take reasonable steps to verify your identity before granting access or making corrections.

5. International Data Transfers

Rankerli is based in the United States, and your data may be transferred to and stored on servers located in the United States or other countries outside the European Economic Area (EEA).

We ensure that any international transfer of personal data is protected by appropriate safeguards. These include:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Binding Corporate Rules (BCRs) for transfers within a corporate group
  • Transfers to organizations that have been certified under the EU-US Data Privacy Framework
  • Transfers necessary for the performance of a contract between you and Rankerli

You can request a copy of the specific safeguards we use for the transfer of your personal data by contacting our Data Protection Officer.

6. Data Protection Officer

We have appointed a Data Protection Officer (DPO) who is responsible for overseeing questions regarding this GDPR Compliance Statement and our privacy practices. The DPO serves as a point of contact for data subjects and supervisory authorities.

Contact Our DPO

Email: dpo@rankerli.com

Postal Address:

Data Protection Officer

Rankerli LLC

123 Tech Plaza, Suite 456

San Francisco, CA 94103, USA

7. Data Breach Notification

In accordance with GDPR requirements, we have implemented procedures to detect, report, and investigate personal data breaches. A personal data breach is a security incident that leads to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to personal data.

In the event of a data breach that poses a risk to the rights and freedoms of individuals, we will:

Timely Notification

Notify the relevant supervisory authority within 72 hours of becoming aware of the breach, where feasible.

Comprehensive Information

Provide detailed information about the nature of the breach, the approximate number of individuals affected, the potential consequences, and the measures taken or proposed to address the breach.

Direct Communication

Communicate directly with affected data subjects without undue delay when the breach is likely to result in a high risk to their rights and freedoms.

We maintain a record of all personal data breaches, including the facts surrounding the breach, its effects, and the remedial action taken.

8. Data Protection Impact Assessments

When we introduce new technologies or processing activities that may pose a high risk to the rights and freedoms of individuals, we conduct Data Protection Impact Assessments (DPIAs). These assessments help us identify and minimize data protection risks.

Our DPIA process includes:

  • Systematic description of the processing operations and their purposes
  • Assessment of the necessity and proportionality of the processing
  • Assessment of the risks to the rights and freedoms of data subjects
  • Measures to address the risks, including safeguards, security measures, and mechanisms to ensure the protection of personal data

We consult with the relevant supervisory authority prior to processing where a DPIA indicates that the processing would result in a high risk in the absence of measures taken by us to mitigate the risk.

9. Changes to This Statement

We may update our GDPR Compliance Statement from time to time. We will notify you of any changes by posting the new statement on this page and updating the "Last Updated" date at the top.

We will provide more prominent notice of material changes, such as by sending an email notification or displaying a notice on our website.

10. Contact Us

If you have any questions about our GDPR compliance or wish to exercise your data protection rights, please don't hesitate to contact us:

Get in Touch

Data Protection Officer: dpo@rankerli.com

GDPR Inquiries: gdpr@rankerli.com

General Privacy Questions: privacy@rankerli.com

Phone: +1 (555) 123-4567

Postal Address: Rankerli LLC, 123 Tech Plaza, Suite 456, San Francisco, CA 94103, USA

EU Representative (Art. 27 GDPR):

Rankerli EU Representative

EU Privacy Office

123 Main Street, Dublin, Ireland