{"id":347,"date":"2024-10-28T15:28:55","date_gmt":"2024-10-28T13:28:55","guid":{"rendered":"https:\/\/mitdk-prod-b3cphaemhph8gef8.swedencentral-01.azurewebsites.net\/?page_id=347"},"modified":"2024-11-12T13:09:13","modified_gmt":"2024-11-12T12:09:13","slug":"brugervilkaar","status":"publish","type":"page","link":"https:\/\/mit.dk\/en\/brugervilkaar","title":{"rendered":"Terms and conditions"},"content":{"rendered":"<h1>\n\t\tTerms and conditions\n\t<\/h1>\n\t<h2>1. Scope<\/h2>\n<p>Disse brugervilk\u00e5r (herefter &#8220;Brugervilk\u00e5rene&#8221;) g\u00e6lder ved din brug af digital post-l\u00f8sningen &#8216;mit.dk&#8217; og de dertilh\u00f8rende ydelser, tjenester og produkter, samt mit.dk hjemmesiden og mit.dk mobil- og tabletapplikationen (herefter &#8220;mit.dk&#8221;). Ydelserne udbydes og leveres af Netcompany A\/S, CVR-nr.: 14814833, (herefter &#8220;Netcompany&#8221;) eller af det offentlige eller tredjeparter (se afsnit 3 nedenfor om &#8220;Till\u00e6gstjenester&#8221;).<\/p>\n<p>You accept that your use of mit.dk is governed by these Terms by you acceptance of these terms when you create your mit.dk profile. If you accept these Terms on behalf of a Business Operator (as defined below), your accept means that you warrant that you have the necessary authority to be able to perform the action on behalf of the Business Operator.<\/p>\nDu kan benytte mit.dk som privatperson (herefter &#8220;Privatperson&#8221;) eller p\u00e5 vegne af en privat juridisk person som f.eks. en virksomhed, organisation eller lignende (herefter &#8220;Erhvervsdrivende&#8221;). I forbindelse med brugen af mit.dk p\u00e5 vegne af en Erhvervsdrivende eller som led i dit arbejde for en Erhvervsdrivende, g\u00e6lder der yderligere betingelser som anf\u00f8rt i Brugervilk\u00e5rene.<br \/>\nDu skal v\u00e6re 13 \u00e5r eller derover og v\u00e6re i besiddelse af et elektronisk id (MitID) for at kunne bruge mit.dk. Hvis du er under 18 \u00e5r, skal dine for\u00e6ldre\/din v\u00e6rge give lov til, at du opretter dig som bruger. De skal ikke g\u00f8re noget aktivt andet end at fort\u00e6lle dig, at du gerne m\u00e5 bruge mit.dk.\nNetcompany g\u00f8r opm\u00e6rksom p\u00e5, at der kan g\u00e6lde s\u00e6rlige vilk\u00e5r alt efter om du er en Privatperson (som voksen), en Privatperson (som barn) eller en Erhvervsdrivende. Hvis dette er tilf\u00e6ldet, vil det v\u00e6re angivet i Brugervilk\u00e5rene.<br \/>\nThe Terms also comprise a reference to Netcompany\u2019s<br \/>\nprivacy policy and cookie policy.\n<p>There are two integral appendices to these Terms: Appendix A comprise the data processing agreement governing your use of mit.dk as a Private Individual. Appendix B comprise the data processing agreement governing the use of mit.dk as a Business Operator.<\/p>\n\t<h2>2. Using your new digital mailbox<\/h2>\n<h3>2.1 About mit.dk<\/h3>\n<p>mit.dk giver dig adgang til dine digitale breve, meddelelser mv. (herefter &#8220;Digital Post&#8221; eller &#8220;Digitale Post&#8221;), som du modtager fra i) offentlige myndigheder, herunder bl.a. regioner, kommuner eller andre akt\u00f8rer, der har en ret til at sende som, eller p\u00e5 vegne af, en offentlig enhed (herefter &#8220;Offentlige Afsendere&#8221;) og ii) de virksomheder, organisationer mv. som Netcompany har en aftale med, og som du modtager Digital Post fra (herefter &#8220;Private Afsendere&#8221;) (Offentlige Afsendere og Private Afsendere herefter samlet ben\u00e6vnt som en &#8220;Afsender&#8221;). Herudover f\u00e5r du adgang til din arkiverede Digitale Post, muligheden for at kunne kommunikere direkte og sikkert med en Afsender:, samt de \u00f8vrige funktioner og services p\u00e5 mit.dk, som Netcompany til enhver tid m\u00e5tte tilbyde. Netcompany forbeholder sig retten til at i visse tilf\u00e6lde kunne begr\u00e6nse adgangen til \u00f8vrige funktioner og services, hvis dette kan begrundes i overholdelse af lovgivning, samfundsetiske \u00e5rsager og tekniske \u00e5rsager.<\/p>\n<p>You can also access the Digital Post you receive from Public Sector Senders through other public user interfaces as an alternative to and\/or a supplement to mit.dk. Through a public user interface, the citizen can read Digital Post from Public Sector Senders like for instance Borger.dk.<\/p>\n<p>Using mit.dk is voluntary, and you can always access your public mail through the public user interfaces like for instance Borger.dk. However, you can only use Netcompany's Supplementary Services (see section 3 below) and read mail from Private Sector Senders if you use mit.dk.<\/p>\n<h3>2.2 Receiving Digital Post<\/h3>\n<p>When you receive Digital Mail through mit.dk, you will not also receive the same mail as ordinary (physical) mail, unless otherwise agreed with your Private Senders. Receiving Digital Post on mit.dk has the same legal effect as if you were receiving the Digital Post as ordinary (physical) mail, which means that you have received the letter, the communication and the like once your Digital Post is received on mit.dk. The effect is that invoices or other documents, such as for instance payment, acceptance and\/or complaint deadlines, etc., apply from the moment they become available to you on mit.dk, just as if you had received it in your ordinary (physical) mailbox.<\/p>\n<p>Accordingly, it is important, and your own responsibility, to check regularly for new Digital Post on mit.dk. However, this does not apply, if you are a child.<\/p>\n<h3>2.3 Inactivity and deactivation<\/h3>\n<p>If you do not log on to mit.dk for 60 consecutive months, Netcompany reserves the right to deactivate your access to mit.dk. In case of death or if you leave Denmark permanently (meaning when your home address is no longer in Denmark), Netcompany also reserves the right to deactivate your access to mit.dk after 15 months from the time of the death, or the permanent departure from Denmark without further information.<\/p>\n<p>By your request to kundeservice@mit.dk , mit.dk will, for a period of 12 months from the deactivation of your profile, send your Digital Post received from Private Sector Senders to you digitally and securely.<\/p>\n<p>If you and a Private Sector Sender have agreed that Digital Post from said Private Sector Sender must only be sent to you through mit.dk, you are then responsible for settling how to communicate going forward directly with the Private Sector Sender.<\/p>\n<p>You can create a new profile on mit.dk at any time.<\/p>\n<h3>2.4 Deletion<\/h3>\n<p>You can delete Digital Post and documents in your digital mailbox on mit.dk at any time. However, please note that Digital Post cannot be restored or recreated.<\/p>\n<h3>2.5 Deregistration<\/h3>\n<p>It is not possible to deregister for receipt of Digital Post from Public Sector Senders through mit.dk. Please go to borger.dk if you want to be exempt from Digital Post from Public Sector Senders.<\/p>\n<p>You cannot deregister from receiving future Digital Post from individual Private Sector Senders on mit.dk. You can therefore only deregister by directly contacting the Private Sector Sender from which you do no longer wish to receive Digital Post. Please note, however, that it will not exempt you from obligations or agreements (if any) that you may have with Private Sector Senders if you deregister from receipt of Digital Post from these on mit.dk.<\/p>\n<h3>2.6 Your responsibilities<\/h3>\n<p>You are responsible for checking mit.dk on a regular basis for new Digital Post and for making sure that mit.dk has your correct and current e-mail address and your telephone number, so you receive the correct service announcements and notifications about new Digital Post.<\/p>\n<p>It is also your responsibility to keep your login information secret from people other than yourself. If you suspect irregularities or misuse of your login information, you have to change your login information immediately and notify mit.dk.<\/p>\n<p>It is not permissible as a user of mit.dk to set up unofficial systems or tools for automatic retrieving data from the platform, e.g., to automatic forward sent messages to external systems, including (but not limited to) e-mail servers.<\/p>\nIt is also your responsibility to make sure that your use of mit.dk is in compliance with applicable Danish law. Among other things, this means that filing, sending and uploads on mit.dk must not infringe third party rights, and that the material in question must not be illegal or otherwise contrary to these Terms or applicable Danish law.<br \/>\nThis, however, does not apply if you are a child.\n<h3>2.7 Unavailability<\/h3>\n<p>There may be cases where Netcompany will have to make your Digital Post unavailable for a short time or permanently. Examples of this could be that Netcompany is legally obligated to do so in cases where Digital Post to you has been shared by mistake, where personal data might have been compromised, or in other similar cases. Accordingly, Netcompany reserves the right to make your Digital Post on mit.dk unavailable to you in exceptional cases.<\/p>\n\t<h2>3. Using other services on mit.dk<\/h2>\n<p>mit.dk giver dig muligheden for at tilg\u00e5 og benytte en lang r\u00e6kke forskellige tjenester udover mit.dks standardfunktioner (herefter en &#8220;Till\u00e6gstjeneste&#8221;). Till\u00e6gstjenesterne som du v\u00e6lger at bruge, vil enten v\u00e6re leveret og administreret af Netcompany, det offentlige, eller af en tredjepart.<\/p>\n<p>Whether a Supplementary Service is available to you in mit.dk depends on whether the Sender wishes to use a Supplementary Service and if the Sender has an agreement with Netcompany and the Provider on the use of the Supplementary Service.<\/p>\n<p>Netcompany notes that additional terms and conditions may apply depending on the service in question and on the supplier and administrator of the digital service concerned. It is a requirement that you accept the terms from the provider of the Additional Service in order to use the Additional Service.<\/p>\n<p>If you choose to use Supplementary Services, you also give your consent to Netcompany to disclose the necessary personal data to the third party so that the Supplementary Service can work for you.<\/p>\n<h3>3.1 The content of Supplementary Services<\/h3>\n<p>The content shown when you use a Supplementary Service might be controlled by a third party and might be beyond the control of Netcompany, and therefore Netcompany cannot be held responsible for the content of said service. It is important to note in this respect that third parties are not Netcompany's subcontractors but rather independent service providers, and therefore you are responsible for ensuring that you are familiar and comply with the terms and conditions of the third party as well as applicable laws.<\/p>\n<h3>3.2 Opting out<\/h3>\n<p>You can opt out of one or more Supplementary Services at any time by not using the Supplementary Service in question on mit.dk.<\/p>\n\t<h2>4. Using the mit.dk App<\/h2>\n<p>For at g\u00f8re din brugeroplevelse endnu bedre har Netcompany ogs\u00e5 lavet en mobil- og tablet applikation, mit.dk-app&#8217;en (herefter &#8220;App&#8217;en&#8221;). V\u00e6r opm\u00e6rksom p\u00e5, at n\u00e5r der i disse Brugervilk\u00e5r henvises til &#8220;mit.dk&#8221; henvises der ogs\u00e5 til &#8220;App&#8217;en&#8221;.<\/p>\n<p>Brugen af App&#8217;en kan indeholde en r\u00e6kke yderligere funktioner og udvidelse af standardfunktionerne. Der kan derfor v\u00e6re yderligere vilk\u00e5r, der er g\u00e6ldende n\u00e5r App&#8217;en bruges.<\/p>\n<p>Det er en foruds\u00e6tning for din brug af App\u00b4en, at du har en profil p\u00e5 mit.dk, f\u00f8rend du kan bruge App&#8217;en. Du skal v\u00e6re opm\u00e6rksom p\u00e5, at det ikke n\u00f8dvendigvis er alle funktioner p\u00e5 mit.dk, der kan udf\u00f8res i App&#8217;en, og nogle funktioner kr\u00e6ver derfor, at du logger p\u00e5 mit.dk i en internet-browser eller omvendt.<\/p>\n<h3>4.1 Biometric login<\/h3>\n<p>Du kan i App&#8217;en benytte dig af biometrisk login) ved at tilknytte din biometriske profil til din mit.dk profil i App&#8217;en. Du kan kun tilknytte enhedens registrerede biometri til \u00e9n brugerprofil i App&#8217;en, og det kr\u00e6ver, at din enhed ligeledes underst\u00f8tter dette.<\/p>\n<p>Please note that others can misuse your profile if they have access to the biometric settings on your device; for instance if they add their own fingerprint. You must therefore make sure that only your biometric profile is registered on your device. You should never use biometric authorisation on devices over which you do not have full control; for instance a borrowed phone, acquired or shared devices, or devices with known security flaws.<\/p>\n<p>You can stop using biometric login by removing the setting from your mit.dk profile, by deactivating biometric login on your device, or by otherwise removing this functionality.<\/p>\n<h3>4.2 Security<\/h3>\n<p>Hvis du mister din enhed med App&#8217;en installeret, er det vigtigt, at du logger ind p\u00e5 mit.dk fra en anden enhed (f.eks. via browser p\u00e5 en PC) og fjerner den mistede enhed fra din mit.dk profil. P\u00e5 den m\u00e5de mindskes risikoen for, at din mit.dk profil, App&#8217;en eller enheden, bliver misbrugt.<\/p>\n<p>Af sikkerhedsm\u00e6ssige \u00e5rsager b\u00f8r du ikke benytte App\u00b4en p\u00e5 en telefon, der er blevet s\u00e5kaldt &#8220;jailbreaket&#8221; eller &#8220;rooted&#8221;, dvs. hvor telefonens styresystem er blevet omg\u00e5et. Vi g\u00f8r opm\u00e6rksom p\u00e5, at du selv er ansvarlig for administration af adgang til profilen i mit.dk<\/p>\n\t<h2>5. Miscellaneous<\/h2>\n<h3>5.1 Authentication<\/h3>\n<p>To authenticate your use and access to your Digital Post on mit.dk, mit.dk uses MitID as a login solution.<\/p>\n<h3>5.2 Limitation of liability<\/h3>\n<p>Netcompany is not liable for neither direct nor indirect losses resulting from (i) your use of mit.dk, (ii) the content (including errors) of Digital Post, (iii) delays or errors in sending and receiving Digital Post, (iv) your use of third party services offered on mit.dk, or (v) unauthorised use of mit.dk; for instance because you have allowed someone else to log in to your digital mailbox, or you have not notified Netcompany about the misuse of your login.<\/p>\n<p>Netcompany er desuden ikke &#8211; hverken direkte eller indirekte &#8211; ansvarlig for driften af mit.dk (herunder oppetid), tab af data samt IT-fejl og skade p\u00e5 fysisk eller digitalt udstyr.<\/p>\n<h3>5.3 Changes to the terms<\/h3>\n<p>Netcompany can change the Terms of use with one month\u2019s notice with immediate effect thereafter.<\/p>\n<p>Netcompany can at any time change the Terms of use without notice and with immediate effect, if the changes are not unfavorable for you, if it is for security reasons or if the changes only affect Business Operators.<\/p>\n<p>In the event of a change to the Terms of use, Netcompany will notify you. The notification will inform you of when the new terms will come into force.<\/p>\n<p>De til enhver tid g\u00e6ldende vilk\u00e5r vil altid kunne findes p\u00e5 mit.dk&#8217;s hjemmeside.<\/p>\n<p>You can always choose to delete your profile because of possible changes.<\/p>\n<h3>5.4 Intellectual property rights<\/h3>\n<p>Any material on mit.dk, including, but not limited to, source codes, names, designs, logos, software, trademarks, graphics, texts, icons, images, etc., belong to Netcompany and\/or one of Netcompany's business partners and is protected by intellectual property rights and therefore cannot be used without written approval from Netcompany.<\/p>\n<p>Apart from what is explicitly stated in these Terms, Netcompany is not assigning or granting any intellectual property rights to you.<\/p>\n<p>Du f\u00e5r en verdensomsp\u00e6ndende, ikke-eksklusiv, personlig og uoverdragelig brugsret til at bruge mit.dk, herunder App&#8217;en, p\u00e5 enhver browser eller smartphone, du har adgang til, inden for rammerne af Brugervilk\u00e5rene, den relevante g\u00e6ldende lovgivning og almindelig god skik.<\/p>\n<p>For Business Operators, the right of use is limited to the legal entity having entered into the agreement with Netcompany, as well as the employees having to use mit.dk during the course of their work in general for the legal entity.<\/p>\n<p>Du m\u00e5 ikke distribuere mit.dk eller g\u00f8re den tilg\u00e6ngelig for andre f.eks. over et netv\u00e6rk. Du m\u00e5 heller ikke udleje, lease, udl\u00e5ne, viderelicensere eller s\u00e6lge mit.dk. Du m\u00e5 heller ikke fors\u00f8ge at foretage reverse engineering eller udlede vores kildekode, modificere, eller skabe afledte v\u00e6rker af mit.dk, medmindre g\u00e6ldende lovgivning tillader dette, eller p\u00e5 en anden m\u00e5de g\u00f8re noget, der kunne skade, begr\u00e6nse, forsinke, \u00f8del\u00e6gge mv. Netcompany, App&#8217;en, Afsenderne, det offentlige, din eller andres Digital Post eller mit.dk i \u00f8vrigt.<\/p>\n<h3>5.5 Breach of contract<\/h3>\n<p>Enhver overtr\u00e6delse af Brugervilk\u00e5rene eller \u00f8vrig svigagtig, skadelig eller uetisk adf\u00e6rd fra din side, eller fra \u00e9n som du giver adgang til mit.dk p\u00e5 dine vegne, giver Netcompany ret til at oph\u00e6ve din adgang til mit.dk, herunder App&#8217;en, Till\u00e6gstjenesterne mv. Dette kan eksempelvis v\u00e6re hvis du fors\u00f8ger p\u00e5 hacking eller foretager et DDoS angreb.<\/p>\n<p>If Netcompany terminates your access to mit.dk, you will no longer be able to access your digital mailbox in mit.dk.<\/p>\n<p>If you and a Private Sector Sender have agreed that Digital Post from said Private Sector Sender must only be sent to you through mit.dk, you are then responsible for settling how to communicate going forward directly with the Private Sector Sender. Netcompany does not assume any liability in this respect.<\/p>\n<p>You can contact Netcompany by using the contact information in section 5.9 below in order to receive a copy of your Digital Post if Netcompany has terminated your access to mit.dk.<\/p>\n<h3>5.6 Confidentiality<\/h3>\n<p>Du m\u00e5 ikke videregive Fortrolig Information til tredjemand. Ved &#8220;Fortrolig Information&#8221; forst\u00e5s alle oplysninger af teknisk, forretningsm\u00e6ssig, infrastrukturm\u00e6ssig eller anden art vedr\u00f8rende mit.dk, bortset fra oplysninger, (i) som er eller vil blive gjort offentligt tilg\u00e6ngelige p\u00e5 anden vis end ved misligholdelse af disse Brugervilk\u00e5r, (ii) som du er forpligtet til at videregive i henhold til g\u00e6ldende lov, eller (iii) som du kan dokumentere er skabt af dig.<\/p>\n<h3>5.7 Personal data<\/h3>\nNetcompany indsamler og behandler personoplysninger om dig og din brug af mit.dk, App&#8217;en og\/eller Till\u00e6gstjenester. Du vil ved din brug af mit.dk v\u00e6re at anse som enten dataansvarlig eller datasubjekt.<br \/>\nNetcompanys behandling af personoplysninger om dig som datasubjekt sker som angivet i Netcompanys privatlivspolitik.\nNetcompany behandler de oplysninger om dig, som fremg\u00e5r af de breve du modtager som databehandler for dig i din egenskab som dataansvarlig. Databehandleraftalen, der regulerer forholdet mellem Netcompany og dig, som enten Privatperson (jf. Bilag A til Brugervilk\u00e5rene) eller Erhvervsdrivende (jf. Bilag B til Brugervilk\u00e5rene), findes l\u00e6ngere nede i dette dokument.<br \/>\nNetcompany uses cookies in accordance with Netcompany's cookie policy.\n<p>The Senders process and use your personal data in accordance with the Senders\u2019 privacy policies, and Netcompany is not liable for the Senders\u2019 processing of personal data.<\/p>\n<h3>5.8 Governing law and jurisdiction<\/h3>\n<p>Any dispute in relation to issues governed by these Terms shall be decided according to Danish law unless otherwise provided by mandatory rules on consumer protection.<\/p>\n<p>In relation to Business Operators, disputes (if any) shall be decided according to Danish law before the Copenhagen City Court.<\/p>\n<h3>5.9 Contact<\/h3>\n<p>You can contact Netcompany\u2019s customer services by:<\/p>\n<ul>\n<li>Mail <a href=\"mailto:kundeservice@mit.dk\">kundeservice@mit.dk<\/a><\/li>\n<li>Telephone number: 70 80 25 80<\/li>\n<\/ul>\n<p>Vores kundeservice kan kontaktes p\u00e5 telefon eller e-mail mandag til fredag kl. 08:00 &#8211; kl. 20:00, i weekender kl. 10:00 &#8211; 16:00 og helligdage kl. 10:00 &#8211; 15:00. Yderligere information kan tilg\u00e5s p\u00e5 mit.dks hjemmeside under fanen <a href=\"\/en\/brug-for-hjaelp\/\">Need help<\/a>.<\/p>\n\t<h2>Bilag A &#8211; Databehandleraftale for post-l\u00f8sningen mit.dk til privatperson<\/h2>\n<h3>1. Introduction<\/h3>\n<p>In mit.dk you can see all your Digital Post from Public Senders (meaning public authorities) as well as post from a range of Private Senders (meaning the companies, organizations etc., which mit.dk has signed an agreement with, and which you receive Digital Post from). Furthermore, you have access to your archived Digital Post and the option to communicate directly and secure with a Public or Private Sender.<\/p>\n<p>Denne databehandleraftale (herefter &#8220;Aftalen&#8221;) vedr\u00f8rer den behandling af personoplysninger, som Netcompany A\/S (herefter &#8220;mit.dk&#8221;) foretager som databehandler p\u00e5 vegne af dig som dataansvarlig (herefter &#8220;dig&#8221;, &#8220;din&#8221; eller &#8220;du&#8221;) i forbindelse med levering af services til dig gennem mit.dk, n\u00e5r du handler som Privatperson.<\/p>\n<p>You are data controller for the content of Digital Post, which is delivered to your post solution at mit.dk. Furthermore, you are data controller for the retaining and sending of new Digital Post as well as the showing of Digital Post to and from Public Senders.<\/p>\n<p>Aftalen er udformet med henblik p\u00e5 efterlevelsen af databeskyttelsesforordningens (herefter &#8220;GDPR&#8221;) artikel 28, stk. 3, og fasts\u00e6tter mit.dk&#8217;s rettigheder og forpligtelser, n\u00e5r mit.dk behandler personoplysninger p\u00e5 vegne af dig.<\/p>\n<p>You accept that the use of mit.dk is subject to the Agreement by your accept of the Terms and Conditions in connection with your creation of your profile at mit.dk.<\/p>\n<h3>2. Instruction from you to processing of data in mit.dk<\/h3>\n<p>Mit.dk processes all personal data based on your instruction in relation to the provision of mit.dk as described in the Terms and Conditions to mit.dk. The only exception to this is if the processing is required under EU or Member State law to which mit.dk is subject. In such situations mit.dk shall inform you of such legal requirement prior to processing unless such notification is prohibited in consideration of important grounds of public interest.<\/p>\n<p>Mit.dk's processing of personal data on behalf of you in relation to the provision of mit.dk takes places by mit.dk:<\/p>\n<ul>\n<li>Stores and sends personal data in the form of Digital Post to and from Private Senders via mit.dk.<\/li>\n<li>Shows personal data in the form of Digital post to and from Public Senders via mit.dk.<\/li>\n<li>Provides third parties reading access to your post in mit.dk, where you have granted the person reading access via mit.dk, or where the third party in question has a right to read your post (such as a trustee in bankruptcy, an executor in an estate of a deceased person, etc.), or<\/li>\n<li>Passing on personal data in relation to your use of functions in mit.dk, including identity-certification, or Supplementary Services.<\/li>\n<\/ul>\n<h3>3. Information about the processing of personal data in mit.dk<\/h3>\n<p>Dette afsnit indeholder n\u00e6rmere oplysninger om mit.dk&#8217;s behandling af personoplysninger p\u00e5 dine vegne, herunder om behandlingens form\u00e5l og karakter, typen af personoplysninger, kategorierne af registrerede og varighed af behandlingen.<\/p>\n<h4>The purpose and nature of the processing of personal data in mit.dk<\/h4>\n<p>The purpose of the processing is to enable storage of your Digital Post in your post solution at mit.dk as well as enable sending of Digital Post from you to private companies, organisations etc., through mit.dk.<\/p>\n<p>Furthermore, the purpose is to be able to show (transmit) personal data in relation to the showing of Digital Post to and from public authorities.<\/p>\n<h4>Categories of personal data<\/h4>\n<p>The Digital Post which you are shown, receive, store, or send through mit.dk can contain all types of personal data determined by the sender or yourself, as the character of the data will depend on the content of the post.<\/p>\n<p>The Digital Post can contain both 1) ordinary personal data (such as name, address, telephone number, etc.), 2) sensitive personal data (such as data concerning health, and information about trade union membership) and 3) information about criminal offences (such as criminal records or a fine notice).<\/p>\n<h4>Categories of data subjects<\/h4>\n<p>The Digital Post which you are shown, receive, store, or send through mit.dk can contain personal data about other persons than you. The Digital Post can thus contain information about persons, which might be mentioned in the post you receive or send. This may include your spouse, children, etc.<\/p>\n<h4>The duration of the processing<\/h4>\n<p>The processing of personal data in the form of Digital Post lasts until you or mit.dk delete Digital Post in your post solution at mit.dk. Read more in the Terms and Conditions.<\/p>\n<h3>4. Confidentiality<\/h3>\n<p>Mit.dk m\u00e5 kun give adgang til personoplysninger, som behandles p\u00e5 dine vegne, til personer, som er underlagt mit.dk&#8217;s instruktionsbef\u00f8jelser, og som har forpligtet sig til fortrolighed eller er underlagt en passende lovbestemt tavshedspligt, og kun i det n\u00f8dvendige omfang. Listen af personer, som har f\u00e5et tildelt adgang, bliver l\u00f8bende gennemg\u00e5et af mit.dk. P\u00e5 baggrund af denne gennemgang kan adgangen til personoplysninger lukkes, hvis adgangen ikke l\u00e6ngere er n\u00f8dvendig, og personoplysningerne skal herefter ikke l\u00e6ngere v\u00e6re tilg\u00e6ngelige for disse personer.<\/p>\n<h3>5. Security in connection with processing of personal data in mit.dk<\/h3>\n<p>mit.dk initiates all measures required according to GDPR article 32 about security of processing in relation to processing of personal data.<\/p>\n<p>Mit.dk vurderer de risici, som behandlingen af personoplysninger &#8211; i forbindelse med levering af services gennem mit.dk &#8211; indeb\u00e6rer for dine rettigheder og gennemf\u00f8rer passende foranstaltninger for at im\u00f8deg\u00e5 disse risici.<\/p>\n<p>mit.dk will notify you in case of any personal data breach that entails a high risk to your rights and freedoms.<\/p>\n<table>\n<caption>\u00a0<\/caption>\n<tbody>\n<tr>\n<td colspan=\"3\"><strong>Technical and organizational security precautions<\/strong><\/td>\n<\/tr>\n<tr>\n<td><strong>Area:<\/strong><\/td>\n<td><strong>Measure:<\/strong><\/td>\n<td><strong>Description:\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td rowspan=\"22\"><strong>Access control<\/strong>\n<\/td>\n<td>Passwords<\/td>\n<td>All employees must have an individual password to the required systems and units, e.g., mobile phones, computers etc. Furthermore, all units must be locked when they are left unattended.<\/td>\n<\/tr>\n<tr>\n<td>Access from external locations<\/td>\n<td>For at f\u00e5 adgang til mit.dk&#8217;s interne systemer, er det p\u00e5kr\u00e6vet, at brugerne logger ind med en intern medarbejderkonto og godkendes via VPN software eller lignende.<\/td>\n<\/tr>\n<tr>\n<td>Access from internal server rooms and main networks<\/td>\n<td>External parties are only allow to access internal server rooms if they are accompanied by one of the Data Processor's employees. Only selected employees have access to the rooms.<\/td>\n<\/tr>\n<tr>\n<td>Antivirus<\/td>\n<td>Antivirus programs are installed on all computers. Windows servers and Linux servers are updated frequently.<\/td>\n<\/tr>\n<tr>\n<td>Anti-spam and anti-phishing<\/td>\n<td>Anti-spam and anti-phishing software is installed on the internal mailsystem.<\/td>\n<\/tr>\n<tr>\n<td>Access control<\/td>\n<td>An authorisation system has been implemented in the organisation, which ensures that only relevant employees have access to the various systems. The authorisation system is built on the principle of minimum access.<\/td>\n<\/tr>\n<tr>\n<td>Clean desk policy<\/td>\n<td>Physical documents are rarely used, and if used, they are put away when not in use.<\/td>\n<\/tr>\n<tr>\n<td>DDoS attack<\/td>\n<td>The Data Processor has DDoS protection integrated against the Data Processor's ISP on the lines of the internet.<\/td>\n<\/tr>\n<tr>\n<td>Abolition of physical material<\/td>\n<td>All physical and confidential material is abolished by the use of locked garbage bin and subsequent shredding.<\/td>\n<\/tr>\n<tr>\n<td>Encryption<\/td>\n<td>All computers, e-mails and back-ups are encrypted and guidelines are implemented to ensure that data on mobile units is also encrypted.<\/td>\n<\/tr>\n<tr>\n<td>Endpoint security<\/td>\n<td>Endpoint security is established through antivirus programs, endpoint detection and response (EDR), frequent system updates, software alarms etc.<\/td>\n<\/tr>\n<tr>\n<td>Firewalls<\/td>\n<td>Firewalls are installed to protect against unauthorised access.<\/td>\n<\/tr>\n<tr>\n<td>IAM<\/td>\n<td>Identity and access controls are implemented by the use of individual user accounts.<\/td>\n<\/tr>\n<tr>\n<td>Information sharing<\/td>\n<td>In relation to data hosted by the Data Processor, data is encrypted and the encryption keys is send separately or in other secure ways with respect to the content of the data. The exchange of data will always take place through secure connections.<\/td>\n<\/tr>\n<tr>\n<td>Logging<\/td>\n<td>Information about user identity and user actions are logged.<\/td>\n<\/tr>\n<tr>\n<td>Network segmentation<\/td>\n<td>All systems are isolated from each other and all network equipment is provided by large suppliers, including Cisco, and only supplier supported equipment is used.<\/td>\n<\/tr>\n<tr>\n<td>Confidentiality agreements<\/td>\n<td>Confidentiality agreements are entered into with all employees, external consultants and other business partners who process personal data on behalf of the Data Processor.<\/td>\n<\/tr>\n<tr>\n<td>Protection against malware<\/td>\n<td>Antivirus software is installed on all computers and all downloaded software is monitored.<\/td>\n<\/tr>\n<tr>\n<td>Registration of guests<\/td>\n<td>All guests must wear a visible batch stating that they are guests.<\/td>\n<\/tr>\n<tr>\n<td>Secure abolition of equipment<\/td>\n<td>All equipment is wiped of all information before it is disposed of.<\/td>\n<\/tr>\n<tr>\n<td>Separation between development, test and production environments<\/td>\n<td>Development, test and production environments are kept separate from each other.<\/td>\n<\/tr>\n<tr>\n<td>Revocation of access rights<\/td>\n<td>Access rights are revoked when an employment or business relation has ended, or when an employee moves to another project.<\/td>\n<\/tr>\n<tr>\n<td rowspan=\"7\"><strong>Data access<\/strong><\/td>\n<td>Back-up<\/td>\n<td>The Data Processor works with a complete back-up solution, which includes a combination of local and external back-up. Data is thus protected in the Data Processor's primary data center while a full copy at the same time is always at the Data Processor's secondary data center.<\/td>\n<\/tr>\n<tr>\n<td>Equipment maintenance<\/td>\n<td>All the equipment of the Data Processor is maintained continuously.\n<\/td>\n<\/tr>\n<tr>\n<td>Power supply security<\/td>\n<td>Datacentrene har flere l\u00f8sninger implementeret til beskyttelse af str\u00f8mforsyningen, UPS&#8217;er og k\u00f8ling. Retningslinjer for str\u00f8mforsyningen til udstyr sammen med den \u00e5rlige test af A\/B-feed sikrer korrekt funktion og ops\u00e6tning. Ved k\u00f8ling anvendes det samme k\u00f8lelement, men er redundant i begge ender af dette.<\/td>\n<\/tr>\n<tr>\n<td>Server room<\/td>\n<td>Best practice is used when IT equipment in the server room and at the data centers are inspected.<\/td>\n<\/tr>\n<tr>\n<td>Software updates and patching<\/td>\n<td>All computersoftware is updated and patched regularly.<\/td>\n<\/tr>\n<tr>\n<td>Code review<\/td>\n<td>All new codes or changes to existing codes is reviewed accordingly and approved by another employee than the encoder.<\/td>\n<\/tr>\n<tr>\n<td>Test of code<\/td>\n<td>The developed code is first tested by the encoder, then through peer review, then by testers and along the way static code analysis is performed by SonarQube.<\/td>\n<\/tr>\n<tr>\n<td rowspan=\"2\"><strong>Staff<\/strong><\/td>\n<td>Awareness<\/td>\n<td>All employees are obligated to yearly read and confirm that they have read the Data Processor's security policy, procedures and privacy policies.<\/td>\n<\/tr>\n<tr>\n<td>Criminal records<\/td>\n<td>Clean criminal records are required of the Data Processor's staff in critical positions.<\/td>\n<\/tr>\n<tr>\n<td rowspan=\"3\"><strong>Physical security<\/strong><\/td>\n<td>Alarm devices<\/td>\n<td>Alarms are installed on all the Data Processor's offices to avoid theft and\/or vandalism.<\/td>\n<\/tr>\n<tr>\n<td>Fire<\/td>\n<td>Fire extinguishers are located in all offices of the Data Processor.<\/td>\n<\/tr>\n<tr>\n<td>Video surveillance<\/td>\n<td>All entrances to the Data Processor's offices are monitored by video surveillance.<\/td>\n<\/tr>\n<tr>\n<td rowspan=\"6\"><strong>Policies, procedures and security organisation<\/strong><\/td>\n<td>Legislation<\/td>\n<td>New legislation and practice is followed up on continuously.<\/td>\n<\/tr>\n<tr>\n<td>Policies for use of electronic devices<\/td>\n<td>Guidelines are implemented to ensure a secure use of electronic devices and it is required that all employees reads and follow the guidelines in this regard.<\/td>\n<\/tr>\n<tr>\n<td>Privacy policies<\/td>\n<td>All employees must read and follow the Privacy Policy of the Data Processor, which includes guidelines for how to process personal data in accordance with applicable data protection legislation.<\/td>\n<\/tr>\n<tr>\n<td>Security breaches<\/td>\n<td>The Data Processor has implemented a strict procedure for the handling of security breaches, which all employees are obliged to read and follow.<\/td>\n<\/tr>\n<tr>\n<td>Security policy<\/td>\n<td>The security policy is revised yearly and updated accordingly.<\/td>\n<\/tr>\n<tr>\n<td>Security organisation<\/td>\n<td>The Data Processor has a security organisation consisting of a security committee, security officers and security managers who meet on a regular basis to discuss general security.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n\t<p>Location of the processing<\/p>\n<ul>\n<li>Netcompany A\/S (cvr no.: 14814833):\n<ul>\n<li>Strandgade 3, DK-1401 Copenhagen, Denmark<\/li>\n<li>S\u00f8ndergade 66-68, 3. floor, DK-8000 Aarhus, Denmark<\/li>\n<li>Toldbod Plads 1, DK-9000 Aalborg, Denmark<\/li>\n<li>Dirch Passers All\u00e9 76, DK-2000 Frederiksberg, Denmark<\/li>\n<li>Rued Langgaards Vej 4-8, DK-2300 Copenhagen South, Denmark<\/li>\n<\/ul>\n<\/li>\n<li>Data center locations:\n<ul>\n<li>The Capital Region of Denmark<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n\t<h3>6. Use of sub-processors to mit.dk<\/h3>\n<p>mit.dk has the general authorisation for the engagement of sub-processors, meaning sub-suppliers (including IT and support suppliers), which mit.dk cooperates with for the provision of services to you through mit.dk. Mit.dk shall inform you of any intended changes concerning the addition or replacement of sub-processors 30 days prior to the implementation of the change. If you cannot accept the notified data processor, you have the opportunity to delete your account at mit.dk.<\/p>\n<p>Where mit.dk engages a sub-processor for carrying out specific processing activities on behalf of the data controller, the same data protection obligations as set out in the Agreement shall be imposed on that sub-processor by way of a contract or other legal act under EU or Member State law, in particular providing sufficient guarantees to implement appropriate technical and organisational measures in such a manner that the processing will meet the requirements of the Agreement and the GDPR.<\/p>\n<p>Mit.dk shall therefore be responsible for requiring that the sub-processor at least complies with the obligations to which the data processor is subject pursuant to the Agreement and the GDPR.<\/p>\n<p>Underdatabehandleraftale(r) og eventuelle senere \u00e6ndringer hertil sendes &#8211; efter din anmodning herom &#8211; i kopi til dig, s\u00e5 du herigennem har mulighed for at sikre dig, at tilsvarende databeskyttelsesforpligtelser som f\u00f8lger af Aftalen er p\u00e5lagt underdatabehandleren. Bestemmelser om kommercielle vilk\u00e5r, som ikke p\u00e5virker det databeskyttelsesretlige indhold af underdatabehandleraftalen, kan du ikke f\u00e5 adgang til at se.<\/p>\n<p>On commencement of the Agreement, the Data Controller authorises the engagement of the following sub-processors:<\/p>\n<ul>\n<li>Netcompany Poland Sp. z.o.o, ul. Pu\u0142awska 180, Pl-02-670 Warszawa, Poland (tax. no. 586-21-55-720)<\/li>\n<li>Netcompany Norge AS, \u00d8vre Voll Gate 15, 0158 Oslo, Norway (org. no. 881 886 472)<\/li>\n<li>Netcompany Netherland B.V., Kanaalweg 3b, 2628 EB Delft, The Netherlands (company no. 000037295179)<\/li>\n<\/ul>\n<h3>7. Transfers to third countries or international organisations<\/h3>\n<p>Personal data is not transferred to third countries or international organisations.<\/p>\n<h3>8. Deletion of personal data<\/h3>\n<p>You can at any time delete or download your Digital Post in your post solution at mit.dk.<\/p>\n<p>Mit.dk behandler dine personoplysninger &#8211; i form af Digital Post &#8211; indtil du sletter Digital Post i din post-l\u00f8sning p\u00e5 mit.dk. L\u00e6s mere herom i Brugervilk\u00e5rene.<\/p>\n<h3>9. Audits<\/h3>\n<p>mit.dk shall make available to you all information necessary to demonstrate compliance with the obligations laid down in Article 28 and the Agreement and provides you with access to audit reports.<\/p>\n<p>Derudover har du ret til for egen regning at udpege en statsautoriseret revisor, som skal have adgang til mit.dk&#8217;s fysiske faciliteter til behandling af personoplysninger samt modtage de n\u00f8dvendige informationer til udf\u00f8relse af unders\u00f8gelsen af, hvorvidt mit.dk overholder sine forpligtelser under Aftalen. Den statsautoriserede revisor skal p\u00e5 mit.dk&#8217;s anmodning underskrive en s\u00e6dvanlig fortrolighedserkl\u00e6ring og behandle enhver information indhentet hos eller modtaget direkte fra mit.dk fortroligt, og m\u00e5 alene dele unders\u00f8gelsens konklusioner med dig.<\/p>\n<h3>10. Contact information for mit.dk<\/h3>\n<p>You can contact mit.dk via the following information:<\/p>\n<p>Netcompany A\/S, Strandgade 3, 1401 Copenhagen K, Denmark<\/p>\n<p>Cvr no. 14814833<\/p>\n<p>Telephone number: 70 80 25 80<\/p>\n<p>E-mail: <a href=\"mailto:kundeservice@mit.dk\">kundeservice@mit.dk<\/a><\/p>\n<h3>11. Commencement and termination<\/h3>\n<p>The Agreement shall become effective on the date of your accept of the Terms and Conditions and the Agreement, meaning the time of registering a user at mit.dk.<\/p>\n<p>The Agreement shall apply for the duration of the provision of personal data processing services and as determined in the Terms and Conditions. You can terminate the Agreement by deactivating your account on mit.dk.<\/p>\n<p>mit.dk can make changes to the Agreement if changes to the law, case law, changes in services\/products or inexpediency of the Agreement should give rise to such changes.<\/p>\n<h3>Bilag B &#8211; Databehandleraftale for post-l\u00f8sningen mit.dk til erhvervsdrivende<\/h3>\n<p>You can find the data processing agreement for Business Operators here: <a href=\"\/en\/brugervilkaar-bilag-b\/\">mit.dk\/brugervilkaar-bilag-b<\/a><\/p>\n<p><em>Last updated: 23 January 2023<\/em><\/p>","protected":false},"excerpt":{"rendered":"<p>Brugervilk\u00e5r 1. Anvendelsesomr\u00e5de Disse brugervilk\u00e5r (herefter &#8220;Brugervilk\u00e5rene&#8221;) g\u00e6lder ved din brug af digital post-l\u00f8sningen &#8216;mit.dk&#8217; og de dertilh\u00f8rende ydelser, tjenester og produkter, samt mit.dk hjemmesiden og mit.dk mobil- og tabletapplikationen (herefter &#8220;mit.dk&#8221;). Ydelserne udbydes og leveres af Netcompany A\/S, CVR-nr.: 14814833, (herefter &#8220;Netcompany&#8221;) eller af det offentlige eller tredjeparter (se afsnit 3 nedenfor om &#8220;Till\u00e6gstjenester&#8221;).&hellip;<\/p>","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-347","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/pages\/347","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/comments?post=347"}],"version-history":[{"count":9,"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/pages\/347\/revisions"}],"predecessor-version":[{"id":969,"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/pages\/347\/revisions\/969"}],"wp:attachment":[{"href":"https:\/\/mit.dk\/en\/wp-json\/wp\/v2\/media?parent=347"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}