Contact Us

Privacy Policy

CRIF Realtime Ireland Limited (CRTIE), part of the CRIF S.p.A. group, is deeply committed to protecting your privacy. 

This privacy notice provides you with information regarding the management of this website, describing the personal data that we might process about you, why we process it, where we might get your personal data from, and how we handle it. 

Where we provide links to other websites of other organisations, this privacy notice does not cover how that organisation processes personal information. We encourage you to read the privacy notices on the other websites you visit.

1. Who are we and how to contact us:

CRTIE is a company registered in Ireland (641672); 3rd Floor Block D, Adelphi Plaza, Dun Laoghaire, Co. Dublin, DUBLIN, Ireland, A96 T927.

You can contact the Company’s DPO:

  • Via email: DPO@crifrealtime.ie
  • Via post: Data Protection Officer, 3rd Floor Block D, Adelphi Plaza Dun Laoghaire Co. Dublin, Dun Laoghaire, Dublin, Ireland.

2. What information we collect, use, and why

CRTIE processes your personal data as a Data Controller. 

We act as Data Controller when:

  • The Website automatically collects and processes personal data directly from your device using standard internet communication protocols. This category of data includes the IP addresses or domain names of the computers used by users who connect to the site, the addresses notation of the requested resources, the time of the request, the method used in submitting the request to the server and other parameters relating to the operating system and the user's IT environment. 

The electronic processing of personal data for which we are a Controller is generally undertaken by either CRTIE or our parent company CRIF SpA under a formal contract that provides protection appropriate to the personal data. CRIF SpA is accredited to ISO27001:2022, the international standard for information security management systems.

3. Our lawful bases for the collection and use of your data

Under GDPR, we must have a lawful basis for collecting and using your personal information.
Our lawful bases for collecting and processing your personal information for dealing with your queries (media, general, on solutions, news and events and resources) is:

  • Legitimate interest - for informing you of our services, unless you have specifically opted out from receiving marketing communications by email or by telephone.

Our lawful basis for collecting and processing your personal information for dealing with data subjects’ rights requests are:

  • Legal obligation [ex. Art 15 GDPR]
  • Express consent.

4. Data Protection Rights

 You can find out more about your data protection rights and the exemptions which may apply on the Data Protection Commission’s website Your Rights under the GDPR

  • Your right of access - You have the right to ask us for copies of your personal information. You can request other information such as details about where we get personal information from and who we share personal information with. There are some exemptions which means you may not receive all the information you ask for.
  • Your right to rectification - You have the right to ask us to correct or delete personal information you think is inaccurate or incomplete.
  • Your right to erasure - You have the right to ask us to delete your personal information.
  • Your right to restriction of processing - You have the right to ask us to limit how we can use your personal information.
  • Your right to object to processing - You have the right to object to the processing of your personal data.
  • Your right to data portability - You have the right to ask that we transfer the personal information you gave us to another organisation, or to you.
  • Your right to withdraw consent – When we use consent as our lawful basis you have the right to withdraw your consent at any time.

Please bear in mind that your rights in relation to your Personal Data are not absolute. Which lawful basis we rely on may affect your data protection rights.

We have appointed a Data Protection Officer who is responsible for overseeing questions in relation to this privacy notice. If you have any questions about this notice, including any request to exercise any of your legal rights, please contact the data protection officer using the following contact details: Email: dpo@crifrealtime.ie, or Postal Address: Third Floor, Block D, Adelphi Plaza, George's Street, Dun Laoghaire, Co. Dublin. 

In particular, when we are processing your personal data as a Data Controller: you may have the right to request of us access to, and rectification or erasure, of personal data or the restriction of processing concerning your data or to object to processing as well as the right to data portability. Furthermore, to the extent that our processing may be based on consent, you have the right to withdraw your consent at any time, without affecting the lawfulness of processing based on consent before this withdrawal.

 

5. How long we keep your personal data

At least 5 years and on a case-by-case basis, records may be retained for longer where required for the establishment, exercising or defending of actual or potential legal actions or investigations by supervisory authorities, or the management or mitigation of operational or strategic risks to the organisation.

6. Recipients of your data 

As a rule, your data will not be transferred outside the European Union. In rare cases, when personal data is transferred outside the European Union, the transfer will be put in place in accordance with the requirements of GDPR and all applicable laws (as specified in each privacy notice).

7. Transfers outside the EU

Generally, the data provided by CRIF’s customer will not be transferred outside the European Union. However, it is possible that this transfer takes place in accordance with the type of service provided by CRIF. For each service asked by CRIF’s customer CRIF will provide a specific privacy notice with a detail of the Countries where the data are transferred. However, when personal data will be transfer outside the European Union, the transfer will be put in place in accordance with previsions of GDPR and all applicable laws (as specified in each privacy notice).

8. How to complain

If you have any concerns about our use of your personal data, you can make a complaint to us using the contact details at the top of this privacy notice.

If you remain unhappy with how we’ve used your data after raising a complaint with us, you can also complain to the DPC here https://www.dataprotection.ie/en/faqs/initial-contact-dpc/making-complaint-dpc .

If you wish to raise a concern or lodge a complaint with the Data Protection Commission (DPC), you can go to the ‘Contact the DPC’ section of the DPC website and complete the webform in full.

Alternatively, you can email the DPC at info@dataprotection.ie. You will need to clearly set out your data protection concern.

9. Last updated

August 2026

 

Would you like to submit a data subject request?

Should you have a data subject request about your bank account data and its processing, please complete the following form.

Start your request


Privacy policy