Our commitment to protecting your data and privacy rights under EU law
Last updated: June 29th, 2025.
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018, across the European Union. SMS-iT is committed to full compliance with GDPR requirements and protecting the privacy rights of all EU data subjects.
This document outlines how SMS-iT processes personal data in accordance with GDPR principles, including lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, confidentiality, and accountability.
SMS-iT serves as both a data controller and data processor, depending on the specific use case and customer configuration. We are committed to ensuring that all personal data processing activities comply with GDPR requirements.
When SMS-iT acts as a data controller, we determine the purposes and means of processing personal data. Our data controller details are:
Company: SMS-iT (SE-Mi Sentient iT)
Address: 1390 Market Street, STE 200, San Francisco, CA 94102, USA
Email: [email protected]
Phone: +1-650-333-8337
When our customers use SMS-iT services to process personal data of their own customers or contacts, our customers act as data controllers, and SMS-iT acts as a data processor on their behalf.
SMS-iT processes personal data only when we have a lawful basis under Article 6 of the GDPR. Our lawful bases include:
SMS-iT collects and processes the following categories of personal data:
Under the GDPR, EU data subjects have the following rights regarding their personal data:
You have the right to obtain confirmation of whether we process your personal data and, if so, access to that data along with specific information about the processing.
You have the right to have inaccurate personal data corrected and incomplete personal data completed.
You have the right to have your personal data erased in certain circumstances, including when the data is no longer necessary for the original purpose.
You have the right to restrict the processing of your personal data in specific situations, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
You have the right to object to processing based on legitimate interests or for direct marketing purposes.
You have the right not to be subject to decisions based solely on automated processing that produce legal effects or significantly affect you.
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month, though this may be extended by two additional months for complex requests.
SMS-iT retains personal data only for as long as necessary to fulfill the purposes for which it was collected, unless a longer retention period is required by law. Our retention periods include:
SMS-iT implements appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
SMS-iT may transfer personal data outside the European Economic Area (EEA) to provide our services. When we do so, we ensure adequate protection through:
We transfer data to countries that have received an adequacy decision from the European Commission, confirming they provide adequate data protection.
For transfers to countries without adequacy decisions, we use Standard Contractual Clauses approved by the European Commission to ensure appropriate safeguards.
SMS-iT uses cookies and similar tracking technologies in compliance with GDPR requirements:
These cookies are necessary for the website to function and cannot be switched off. They are usually set in response to actions you take, such as logging in or filling in forms.
These cookies help us understand how visitors interact with our website by collecting and reporting information anonymously. We only use these with your consent.
These cookies track your online activity to help advertisers deliver more relevant advertising. We only use these with your explicit consent.
We obtain your consent before placing non-essential cookies on your device. You can withdraw your consent at any time through our cookie preference center.
SMS-iT has established procedures to detect, report, and investigate personal data breaches:
SMS-iT has appointed a Data Protection Officer (DPO) to oversee our data protection strategy and GDPR compliance:
Data Protection Officer
Email: [email protected]
Address: SMS-iT Data Protection Officer
1390 Market Street, STE 200
San Francisco, CA 94102, USA
You can contact our DPO with any questions about our data processing activities, to exercise your data subject rights, or to raise concerns about our data protection practices.
If you believe that our processing of your personal data violates the GDPR, you have the right to lodge a complaint with a supervisory authority.
We encourage you to contact us first at [email protected] so we can try to resolve your concern directly.
You can lodge a complaint with the supervisory authority in the EU member state where you live, work, or where the alleged infringement occurred. You can find contact information for EU supervisory authorities at: https://edpb.europa.eu/about-edpb/board/members_en
For cross-border processing activities, our lead supervisory authority is the Irish Data Protection Commission, as our EU representative is located in Ireland.
If you have any questions about our GDPR compliance or data protection practices, please contact us:
Privacy Team: [email protected]
Data Protection Officer: [email protected]
General Inquiries: [email protected]
Address: 1390 Market Street, STE 200, San Francisco, CA 94102, USA
Phone: +1-650-333-8337