Privacy Policy of easyfodmap.no

This Website collects some Personal Data from its Users.

Personal Data collected for the following purposes and using the following services:

    • Access to third-party accounts

      • Facebook account access

        Permissions: About Me, Access Friend Lists, Access Page CTA, Access private data, Access Requests, Activities, App Notifications, Birthday, Books Actions, Business Management API, Chat, Checkins, Contact email, Create Events, Create notes, Current City, Custom Friend Lists Access, Custom User Actions, Deals, Education History, Email, Events, Export Posts, Family Members and Relationship Status, Fitness Actions, Friend subscriptions, Friends' About Me, Friends' Activities, Friends' birthdays, Friends' Checkins, Friends' Current Cities, Friends' Custom User Actions, Friends' Education History, Friends' Events, Friends' Family Members and Relationship Status, Friends' Games and App Activity, Friends' Groups, Friends' Hometown, Friends' Interests, Friends' Likes, Friends' music.listens Actions, Friends' news.read Actions, Friends' Notes, Friends' Online Presence, Friends' Photos, Friends' Questions, Friends' Religious and Political Views, Friends' Significant Others and Relationship Details, Friends' Statuses, Friends' video.watches Actions, Friends' Videos, Friends' Websites, Friends' Work History, Games and App Activity, Groups, Hometown, Insights, Interests, Likes, List of Friends, Manage Advertisements, Manage Friend Lists, Manage Groups, Manage Mailbox, Manage Notifications, Manage Pages, Mobile Messaging on behalf of Page, music.listen Action, News Feed and Wall, news.read Actions, Notes, Offline Access, Online Presence, Page Messaging, Photos, Post Likes to my Wall, Publish App Activity, Publish as Page, Publish Checkins, Publish to the Wall, Questions, Read Group Content, Read Mailbox, Read page mailbox, Religious and Political Views, RSVP to Events, Share, Show List of Managed Pages, Significant Other and Relationship Details, Status, Status Updates, Tagged Places, Text Messaging, Upload Photos, User subscriptions, User Timeline Posts Access, Video upload, video.watches Action, Videos, Website and Work History

      • Twitter account access, Dropbox account access and Google Drive account access

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Advertising

      • AdMob and Facebook Audience Network

        Personal Data: Cookies, unique device identifiers for advertising (Google Advertiser ID or IDFA, for example) and Usage Data

      • Bing Ads, Google Ad Manager, Adform, Apple iAd, Clickpoint, eADV and Google AdSense

        Personal Data: Cookies and Usage Data

      • Direct Email Marketing (DEM)

        Personal Data: email address

    • Analytics

      • Google Analytics with anonymized IP, Google Tag Manager, Facebook Ads conversion tracking, Display Advertising extension for Google Analytics, Google Ads conversion tracking, Hotjar Form Analysis & Conversion Funnels, Twitter Ads conversion tracking, AdEspresso conversion tracking, Adobe Analytics, AskingPoint, Google Analytics, HubSpot Analytics, KISSmetrics, LeadLander, LinkedIn conversion tracking, Wordpress Stats, Alexa Metrics, Analytics collected directly, Heap Analytics, SumoMe Content Analytics, Clicky, Rocket Fuel conversion tracking, Salesforce Analytics Cloud, Webtrends Analytics, Mint Analytics and MixPanel

        Personal Data: Cookies and Usage Data

      • User ID extension for Google Analytics

        Personal Data: Cookies

      • Google Analytics for Firebase

        Personal Data: Cookies, unique device identifiers for advertising (Google Advertiser ID or IDFA, for example) and Usage Data

    • Backup saving and management

      • Backup on Google Drive, Backup on Dropbox, Amazon Glacier, Vaultpress and Vaultpress

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Contacting the User

      • Contact form

        Personal Data: address, city, country, date of birth, email address, first name, last name, phone number and ZIP/Postal code

      • Mailing list or newsletter

        Personal Data: email address, first name and last name

      • Phone contact

        Personal Data: phone number

      • SumoMe Contact form

        Personal Data: Cookies, email address and Usage Data

      • SumoMe Mailing List or Newsletter

        Personal Data: company name, email address, first name, last name, phone number, website and ZIP/Postal code

    • Content commenting

      • Disqus

        Personal Data: Cookies, Usage Data and various types of Data as specified in the privacy policy of the service

      • Facebook Comments

        Personal Data: Cookies and Usage Data

      • Comment system managed directly

        Personal Data: Cookies, email address, first name, last name, phone number, Usage Data, username and website

    • Content performance and features testing (A/B testing)

      • Google Website Optimizer, Visual Website Optimizer, Adobe Test&Target and Optimizely

        Personal Data: Cookies and Usage Data

    • Data transfer outside the EU

      • Data transfer abroad based on consent, Data transfer abroad based on standard contractual clauses, Data transfer from the EU and/or Switzerland to the U.S based on Privacy Shield, Data transfer to countries that guarantee European standards and Other legal basis for Data transfer abroad

        Personal Data: various types of Data

    • Displaying content from external platforms

      • Google Fonts, Adobe Edge Web Fonts, Fonts.com Web Fonts, Typekit and MyFonts

        Personal Data: Usage Data and various types of Data as specified in the privacy policy of the service

      • YouTube video widget, Google Maps widget, Wistia widget, Google Site Search, Instagram widget, Issuu widget, Spotify widget, Vimeo video, Vine widget, Google Calendar widget and Streamera

        Personal Data: Cookies and Usage Data

      • Gravatar

        Personal Data: email address and Usage Data

      • SoundCloud widget and YouTube video widget without cookies

        Personal Data: Usage Data

    • Handling payments

      • Stripe, Android Pay, Apple Pay, Braintree, Klarna, Recurly, Skrill, 2Checkout, Authorize.Net, Google Pay and PayPal

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Heat mapping and session recording

      • Hotjar Heat Maps & Recordings and Smartlook

        Personal Data: Cookies, Usage Data and various types of Data as specified in the privacy policy of the service

      • Crazy Egg, ClickTale, SumoMe Heat Maps and SessionCam

        Personal Data: Cookies and Usage Data

    • Hosting and backend infrastructure

      • Microsoft Azure, Google Cloud Storage, Amazon Web Services (AWS), Firebase Hosting, Firebase Legacy, GitHub Pages, Google App Engine and Heroku

        Personal Data: various types of Data as specified in the privacy policy of the service

      • Akamai Content Delivery Network

        Personal Data: Cookies and Usage Data

      • Firebase Cloud Firestore, Firebase Cloud Functions, Firebase Cloud Storage and Firebase Realtime Database

        Personal Data: Usage Data and various types of Data as specified in the privacy policy of the service

      • iubenda Consent Solution

        Personal Data: Data communicated while using the service

    • Infrastructure monitoring

      • Pingdom and Web Performance

        Personal Data: Cookies and Usage Data

      • New Relic, Rollbar and Uptime Robot

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Interaction with data collection platforms and other third parties

      • Hotjar Recruit User Testers

        Personal Data: Cookies, Usage Data and various types of Data

      • Typeform widget

        Personal Data: Cookies, Usage Data and various types of Data as specified in the privacy policy of the service

      • MailChimp widget

        Personal Data: Cookies, email address, first name, last name and Usage Data

      • Wufoo widget, GetSiteControl Promo widget and PopUp Domination

        Personal Data: Cookies and Usage Data

      • GetResponse widget and ConvertKit widget

        Personal Data: Cookies, email address, first name and Usage Data

    • Interaction with external social networks and platforms

      • Facebook Like button and social widgets, Google+ +1 button and social widgets, LinkedIn button and social widgets, Pinterest “Pin it” button and social widgets, Twitter Tweet button and social widgets, StumbleUpon button and social widgets, Tumblr sharing button and social widgets, AddThis, PayPal button and widgets, AddToAny, Google Friend Connect, Reddit button and widgets, ShareThis, Socialize and VK Like button and social widgets

        Personal Data: Cookies and Usage Data

      • YouTube button and social widgets and Buffer button and social widgets

        Personal Data: Usage Data

    • Interaction with live chat platforms

      • Tawk.to Widget, Olark Widget, ClickDesk Widget, Comm100 Widget, LiveChat Widget, My LiveChat Widget, Zopim Widget, Vivocha Widget and Pure Chat Widget

        Personal Data: Cookies and Usage Data

      • Facebook Messenger Customer Chat

        Personal Data: About Me, Cookies and Usage Data

      • Drift Widget

        Personal Data: Cookies, Usage Data and various types of Data as specified in the privacy policy of the service

      • Freshchat Widget

        Personal Data: Cookies, email address and Usage Data

      • Zendesk Chat

        Personal Data: address, company name, Cookies, country, Data communicated while using the service, email address, first name, last name, phone number and Usage Data

    • Interaction with online survey platforms

      • Hotjar Poll & Survey widgets

        Personal Data: Cookies, Usage Data and various types of Data

      • SurveyMonkey Widget and Polldaddy Widget

        Personal Data: Cookies and Usage Data

      • Qualaroo Widget

        Personal Data: Usage Data

    • Interaction with support and feedback platforms

      • Zendesk Widget, GetKudos Widget, GetSatisfaction Widget, Tender Support Widget and WebEngage Widget

        Personal Data: Cookies and Usage Data

      • Apptentive Widget

        Personal Data: Usage Data and various types of Data as specified in the privacy policy of the service

      • Uservoice Widget

        Personal Data: Cookies, email address and Usage Data

    • Location-based interactions

      • Non-continuous geolocation and Geolocation

        Personal Data: geographic position

    • Managing contacts and sending messages

      • MailChimp, AWeber, Campaign Monitor, Constant Contact, Drip, Sendgrid, Amazon Simple Email Service, GetResponse, Mailjet and ZOHO Campaigns

        Personal Data: email address

      • VerticalResponse, Marketo Email Marketing, Mandrill, HubSpot Email and iContact

        Personal Data: email address and Usage Data

      • ConvertKit

        Personal Data: Cookies, email address, first name and Usage Data

      • Customer.io

        Personal Data: Cookies, email address and Usage Data

      • Firebase Cloud Messaging and Firebase Notifications

        Personal Data: various types of Data as specified in the privacy policy of the service

      • Infomail

        Personal Data: first name, last name, phone number, Usage Data and various types of Data as specified in the privacy policy of the service

      • BulkSMS

        Personal Data: phone number

    • Managing landing and invitation pages

      • Unbounce, Instapage, Lander and Launchrock

        Personal Data: Cookies, email address and Usage Data

      • Leadpages

        Personal Data: email address, Usage Data and various types of Data as specified in the privacy policy of the service

      • Ship by Product Hunt

        Personal Data: Cookies, email address, first name, last name, Twitter handle and Usage Data

      • Mailchimp Landing Page

        Personal Data: address, company name, Cookies, country, date of birth, email address, first name, gender, last name, phone number, profession, Usage Data and username

    • Managing support and contact requests

      • Zendesk, Freshdesk, Salesforce Service Cloud, Help Scout, Helpshift, ZOHO CRM Email, Uservoice and Desk.com

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Platform services and hosting

      • WordPress.com, Wix, Weebly, Shopify, Squarespace, Blogger, PrestaShop and Tumblr

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Registration and authentication

      • Facebook Authentication, GitHub OAuth, Google OAuth, Linkedin OAuth, Log In with PayPal, Instagram Authentication, Login with Amazon, MailChimp OAuth, Pinterest OAuth, OneDrive OAuth, Stripe OAuth, Twitter OAuth, WordPress.com Single Sign On, Windows Live Connect, YouTube OAuth, Mobysign and Foursquare OAuth

        Personal Data: various types of Data as specified in the privacy policy of the service

      • Auth0

        Personal Data: Cookies, email address, first name, last name, password, picture and various types of Data as specified in the privacy policy of the service

      • Direct registration

        Personal Data: academic background, address, billing address, budget, city, company name, country, data relating to the point of sale, date of birth, email address, fax number, field of activity, first name, gender, house number, language, last name, marital status, number of employees, password, phone number, picture, prefix , profession, profile picture, province, shipping address, Social Security number (SSN), state, Tax ID, Twitter handle, User ID, username, various types of Data, VAT Number, website, workplace and ZIP/Postal code

      • Firebase Authentication

        Personal Data: email address, first name, last name, password, phone number, profile picture, social media accounts and username

    • Remarketing and behavioral targeting

      • AdWords Remarketing, Remarketing through Google Analytics for Display Advertising, Twitter Remarketing, Facebook Remarketing, LinkedIn Website Retargeting, AdRoll, Google Ad Manager Audience Extension, Perfect Audience and Criteo Dynamic Retargeting

        Personal Data: Cookies and Usage Data

      • Twitter Tailored Audiences and Facebook Custom Audience

        Personal Data: Cookies and email address

    • RSS feed management

      • Feedburner

        Personal Data: Cookies and Usage Data

      • FeedPress

        Personal Data: Usage Data

    • Social features

      • Inviting and suggesting friends

        Personal Data: various types of Data

      • Public profile

        Personal Data: address, city, country, date of birth, email address, first name, gender, geographic position, last name, phone number, picture, profession and username

      • Firebase Dynamic Links and Firebase Invites

        Personal Data: various types of Data as specified in the privacy policy of the service

    • SPAM protection

      • Google reCAPTCHA

        Personal Data: Cookies and Usage Data

      • Akismet, VERSCaptcha and WebPurify

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Tag Management

      • Segment

        Personal Data: Cookies and Usage Data

    • Traffic optimization and distribution

      • Cloudflare

        Personal Data: Cookies and various types of Data as specified in the privacy policy of the service

      • Incapsula and Sucuri CloudProxy

        Personal Data: various types of Data as specified in the privacy policy of the service

    • User database management

      • Infusionsoft, HubSpot Lead Management, Pipedrive, Salesforce Marketing Cloud, Salesforce Sales Cloud, Pardot, Freshsales and LeadOutcome

        Personal Data: various types of Data as specified in the privacy policy of the service

      • HubSpot CRM

        Personal Data: email address, phone number and various types of Data as specified in the privacy policy of the service

      • Marketo Lead Generation, ZOHO CRM and ActiveCampaign

        Personal Data: email address and various types of Data as specified in the privacy policy of the service

      • SendinBlue Marketing Automation

        Personal Data: Cookies, email address and Usage Data

      • FullContact

        Personal Data: company name, date of birth, Email, first name, gender, last name and various types of Data as specified in the privacy policy of the service

      • Intercom and Customerly

        Personal Data: Cookies, email address, Usage Data and various types of Data as specified in the privacy policy of the service

      • Autosend

        Personal Data: email address and phone number

Further information about Personal Data

    • Push notifications

      This Website may send push notifications to the User.

    • Selling goods and services online

      The Personal Data collected are used to provide the User with services or to sell goods, including payment and possible delivery.

      The Personal Data collected to complete the payment may include the credit card, the bank account used for the transfer, or any other means of payment envisaged. The kind of Data collected by this Website depends on the payment system used.

    • The Service is not directed to children under the age of 13

      Users declare themselves to be adult according to their applicable legislation. Minors may use this Website only with the assistance of a parent or guardian. Under no circumstance persons under the age of 13 may use this Website.

    • The Service is directed to children under the age of 13

      This Website is directed to children under the age of 13. It doesn't require the child to disclose any more information than is reasonably necessary to participate in its activity.

      Parents may review the personal information about their child collected by this Website - if any - outlined in the rest of this policy, ask for its deletion and request any further collection or use to be omitted by contacting the Owner. Parents may also agree to the collection and use of their child’s information, but still not allow disclosure to third parties, unless disclosure is integral to the Service.

    • Privacy Shield participation: data transfers from the EU and Switzerland to the United States

      The Owner participates in and complies with the EU-U.S. Privacy Shield Framework and the Swiss-U.S Privacy Shield Framework as set forth by the U.S. Department of Commerce regarding the collection, use, and retention of Personal Data transferred from the European Union and Switzerland to the United States.
      The policies and rights outlined below are therefore equally and explicitly applicable to Users from Switzerland, except if stated otherwise.
      The Owner has certified to the Department of Commerce that it adheres to the Privacy Shield Principles.

      If there is any conflict between the terms in this privacy policy and the Privacy Shield Principles, the Privacy Shield Principles shall govern. To learn more about the Privacy Shield program, and to view the Owner’s certification, please visit https://www.privacyshield.gov/ (or find the direct link to the certification list of Privacy Shield participants maintained by the Department of Commerce https://www.privacyshield.gov/list).

      What does this mean for the European User?

      The Owner is responsible for all processing of Personal Data it receives under the Privacy Shield Framework from European Union individuals and commits to subject the processed Personal Data to the Privacy Shield Principles.

      This, most importantly, includes the right of individuals to access their personal data processed by the Owner.

      The Owner also complies with the Privacy Shield Principles for all onward transfers of Personal Data from the EU, which means that it remains liable in cases of onward transfers to third parties.

      With respect to Personal Data received or transferred pursuant to the Privacy Shield Framework, the Owner is subject to the investigatory and regulatory enforcement powers of the FTC, if not stated otherwise in this privacy policy.

      The Owner is further required to disclose Personal Data in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.

      Dispute resolution under the Privacy Shield

      In compliance with the Privacy Shield Principles, the Owner commits to resolve complaints about its collection or use of the User’s Personal Data. European Union individuals with inquiries or complaints regarding this Privacy Shield policy should first contact the Owner at the contact details supplied at the beginning of this document referring to “Privacy Shield” and expect the complaint to be dealt with within 45 days.

      In case of failure by the Owner to provide a satisfactory or timely response, the User has the option of involving an independent dispute resolution body, free of charge.

      In this regard, the Owner has agreed to cooperate with the panel established by the EU data protection authorities (DPAs) and comply with the advice given by the panel with regard to data transferred from the EU. The User may therefore contact the Owner at the email address provided at the beginning of this document in order to be directed to the relevant DPA contacts.

      Under certain conditions – available for the User in full on the Privacy Shield website (https://www.privacyshield.gov/article?id=How-to-Submit-a-Complaint) – the User may invoke binding arbitration when other dispute resolution procedures have been exhausted

    • Analysis and predictions based on the User’s Data (“profiling”)

      The Owner may use the Personal and Usage Data collected through this Website to create or update User profiles. This type of Data processing allows the Owner to evaluate User choices, preferences and behaviour for the purposes outlined in the respective section of this document.

      User profiles can also be created through the use of automated tools like algorithms, which can also be provided by third parties. To find out more, about the profiling activities performed, Users can check the relevant sections of this document.

      The User always has a right to object to this kind of profiling activity. To find out more about the User's rights and how to exercise them, the User is invited to consult the section of this document outlining the rights of the User.

    • Automated decision-making

      Automated decision-making means that a decision which is likely to have legal effects or similarly significant effects on the User, is taken solely by technological means, without any human intervention.
      This Website may use the User's Personal Data to make decisions entirely or partially based on automated processes according to the purposes outlined in this document.
      This Website adopts automated decision-making processes as far as necessary to enter into or perform a contract between User and Owner, or on the basis of the User’s explicit consent, where such consent is required by the law.

      Automated decisions are made by technological means – mostly based on algorithms subject to predefined criteria – which may also be provided by third parties.

      The rationale behind the automated decision making is:


      • to enable or otherwise improve the decision-making process;

      • to grant Users fair and unbiased treatment based on consistent and uniform criteria;

      • to reduce the potential harm derived from human error, personal bias and the like which may potentially lead to discrimination or imbalance in the treatment of individuals etc.;

      • to reduce the risk of User's failure to meet their obligation under a contract.
        To find out more about the purposes, the third-party services, if any, and any specific rationale for automated decisions used within this Website, Users can check the relevant sections in this document.




      Consequences of automated decision-making processes for Users and rights of Users subjected to it



      As a consequence, Users subject to such processing, are entitled to exercise specific rights aimed at preventing or otherwise limiting the potential effects of the automated decisions taken.

      In particular, Users have the right to:


      • obtain an explanation about any decision taken as a result of automated decision-making and express their point of view regarding this decision;

      • challenge a decision by asking the Owner to reconsider it or take a new decision on a different basis;

      • request and obtain from the Owner human intervention on such processing.
        To learn more about the User’s rights and the means to exercise them, the User is invited to consult the section of this document relating to the rights of the User.



    • Personal Data collected through sources other than the User

      The Owner of this Website may have legitimately collected Personal Data relating to Users without their knowledge by reusing or sourcing them from third parties on the grounds mentioned in the section specifying the legal basis of processing.

      Where the Owner has collected Personal Data in such a manner, Users may find specific information regarding the source within the relevant sections of this document or by contacting the Owner.

Contact information

    • Owner and Data Controller

      FODMAP Skandinavia AS - Olaf Helsets vei 5, 0694 Oslo

      Owner contact email: post@easyfodmap.no