Our commitment to protecting personal data under the General Data Protection Regulation
Last updated: September 2026
Canopy-cipher is committed to ensuring compliance with the General Data Protection Regulation for visitors and clients from the European Union. This page outlines how we handle personal data in accordance with GDPR requirements.
Canopy-cipher acts as the data controller for personal information collected through this website. Our contact details are:
Canopy-cipher
742 Woodland Avenue
Toronto, ON M4K 2P3
Canada
Email: [email protected]
We process personal data based on one or more of the following legal grounds:
If you are located in the European Union, you have the following rights:
You have the right to request copies of your personal data. We may charge a small fee for this service in certain circumstances.
You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
You have the right to request that we erase your personal data under certain conditions.
You have the right to request that we restrict the processing of your personal data under certain conditions.
You have the right to object to our processing of your personal data under certain conditions.
You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
To exercise any of your rights under GDPR, please contact us at [email protected]. We will respond to your request within one month of receiving it. In complex cases, this period may be extended by two further months.
As we are based in Canada, personal data from EU visitors may be transferred to and processed in Canada. Canada has been recognized by the European Commission as providing an adequate level of data protection. We ensure appropriate safeguards are in place for any transfers to countries not deemed adequate.
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected. When determining retention periods, we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, and applicable legal requirements.
If you believe that your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority in the EU member state of your habitual residence, place of work, or place of the alleged infringement.
We may update this GDPR compliance notice from time to time. Changes will be posted on this page with an updated revision date.