Privacy Policy
Last updated: 15.12.2025
1. Introduction
The Music Industry Resilience Acceleration Programme (MI-RAP) is committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR), the Dutch GDPR Implementation Act (UAVG), and other applicable European data protection laws.
This Privacy Policy explains how MI-RAP collects, uses, stores, and protects personal data when you visit our website www.mirap.eu, register for or access the Member Area, participate in events, or interact with our content and tools.
2. What Data Do We Collect?
a) Data you provide directly
We may collect the following personal data when you voluntarily submit it to us:
-
Name
-
Email address
-
Phone number (if provided)
-
Organisation, role or function
-
Country of residence
-
Login credentials for the Member Area
-
Any information submitted via contact forms, registration forms, feedback forms, or event sign-ups
b) Data collected automatically
When you use our website or Member Area, we may collect:
-
IP address
-
Browser type, device type, and operating system
-
Pages visited and time spent on the website
-
Date and time of visits
-
Login activity within the Member Area (e.g. timestamps, last login)
-
Resource access or download logs (for internal reporting and improvement purposes only)
3. How Do We Collect Your Data?
Your data is collected when you:
-
Visit our website (via cookies and similar technologies)
-
Register for the Member Area
-
Log in and interact with the Member Area
-
Register for events, workshops, or activities
-
Subscribe to newsletters or updates
-
Contact us via forms or email
4. How Do We Use Your Data?
MI-RAP processes personal data only where necessary and for legitimate purposes, including:
-
Providing access to the Member Area, resources, and project tools
-
Managing user accounts, authentication, and access rights
-
Communicating project updates, newsletters, and event invitations
-
Managing event registrations and participation
-
Monitoring usage of tools and resources for internal reporting and project improvement
-
Ensuring website security, functionality, and technical performance
-
Fulfilling EU-funded project reporting and accountability requirements
We do not sell, trade, or share your personal data with third parties for commercial purposes.
5. Data Sharing
MI-RAP does not share personal data with third parties, except where strictly necessary for the technical operation of the website (e.g. secure hosting or essential infrastructure services). In such cases, data is processed only under GDPR-compliant agreements and remains within the EU or with providers that meet GDPR adequacy requirements.
6. How Do We Store Your Data?
We apply appropriate technical and organisational measures to protect your data, including SSL encryption, restricted access, and secure servers.
Data retention periods:
-
Contact form data - stored for up to 12 months
-
Newsletter subscriptions - until you unsubscribe
-
Member Area accounts - for as long as the account remains active, or until deletion is requested or the project ends
-
Analytics and log data - stored for up to 24 months
After these periods, data is securely deleted or anonymised.
7. Cookies
Cookies are small text files placed on your device to help websites function properly and collect standard usage information.
8. How Do We Use Cookies?
MI-RAP uses cookies to:
-
Enable secure login and session management in the Member Area
-
Remember user preferences
-
Understand how the website and resources are used
-
Improve website functionality and user experience
9. Types of Cookies We Use
-
Functional cookies - required for core website and Member Area functionality
-
Session cookies - temporary cookies used for secure login sessions
-
Analytics cookies - used to analyse website usage in an aggregated and anonymised way
Where required, consent for non-essential cookies is requested via a cookie banner.
10. Managing Cookies
You can control or disable cookies through your browser settings. More information is available at allaboutcookies.org.
Please note that disabling cookies may affect the functionality of the website and Member Area.
11. Links to External Websites
Our website may contain links to external websites or partner organisations. MI-RAP is not responsible for the privacy practices or content of external sites. We encourage you to review their privacy policies separately.
12. Changes to This Privacy Policy
MI-RAP may update this Privacy Policy when necessary. Any changes will be published on this page with an updated revision date. Continued use of the website indicates acceptance of the updated policy.
13. Your Rights Under GDPR (AVG)
You have the right to:
-
Access your personal data
-
Correct or update inaccurate data
-
Request deletion of your data
-
Withdraw consent at any time
-
Restrict or object to data processing
-
Request data portability
-
File a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens):
To exercise any of these rights, please contact us using the details below.
14. Data Controller
MI-RAP (Music Industry Resilience Acceleration Programme)
Coordinated by: Hamburg Music Business e.V.
Phone: +49 40 468 985 850
Email: fabian.bassenhoff@musikwirtschaft.org
Website: https://www.musikwirtschaft.org/de
Hamburg Music Business e.V. acts as the data controller for personal data processed in connection with the MI-RAP website and activities, in accordance with the General Data Protection Regulation (GDPR).
