GDPR Compliance
Last updated: February 23, 2026
Our Commitment to GDPR Compliance
E-lab HK Limited is committed to protecting the privacy and personal data of all users of Accrual.pro, in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
This page explains how we comply with GDPR requirements and what rights you have regarding your personal data.
Data Controller Information
Data Controller:
E-lab HK Limited
Hong Kong SAR
As the data controller, we determine the purposes and means of processing your personal data and are responsible for ensuring GDPR compliance.
Legal Basis for Processing
We process your personal data under the following legal bases:
Contractual Necessity
Processing necessary to provide the Service under our Terms of Service (account management, service delivery, billing).
Legitimate Interests
Processing necessary for our legitimate interests (service improvement, security, fraud prevention, system maintenance).
Legal Obligations
Processing required to comply with legal and regulatory obligations (tax reporting, anti-money laundering).
Consent
Processing based on your explicit consent (marketing communications, optional features).
Your GDPR Rights
Under the GDPR, you have the following rights:
Right to Access
Request a copy of your personal data we hold
Right to Rectification
Correct inaccurate or incomplete data
Right to Erasure
Request deletion of your personal data
Right to Restriction
Restrict processing of your data
Right to Data Portability
Receive your data in a portable format
Right to Object
Object to certain data processing activities
Right to Withdraw Consent
Withdraw previously given consent
Right to Lodge a Complaint
File a complaint with a supervisory authority
To exercise any of these rights, please contact us using the information provided at the end of this page. We will respond to your request within 30 days as required by GDPR.
Data Protection Measures
We implement appropriate technical and organizational measures to ensure data security:
- Encryption of data in transit and at rest
- Regular security audits and vulnerability assessments
- Access controls and authentication mechanisms
- Employee training on data protection and confidentiality
- Data breach notification procedures
- Regular backups and disaster recovery plans
No Cookie Consent Required
Good news: Accrual.pro does not require a cookie consent banner because we:
- Only use strictly necessary cookies for authentication and session management
- Do not use tracking cookies or third-party analytics (Google Analytics, Facebook Pixel, etc.)
- Do not use advertising or marketing cookies
- Do not share data with third-party advertising networks
Under GDPR and ePrivacy regulations, strictly necessary cookies do not require user consent, which is why we can provide a cleaner, more streamlined user experience without cookie banners.
Data Processing Activities
We maintain records of our data processing activities as required by GDPR Article 30:
Account Management
Processing user registration, authentication, and account maintenance
Legal basis: Contractual necessity
Service Delivery
Processing financial data to provide accounting services
Legal basis: Contractual necessity
Customer Support
Processing support requests and communications
Legal basis: Legitimate interests
Security and Fraud Prevention
Monitoring for security threats and fraudulent activity
Legal basis: Legitimate interests
Data Breach Procedures
In the event of a data breach that poses a risk to your rights and freedoms, we will:
- Notify the relevant supervisory authority within 72 hours
- Inform affected users without undue delay
- Provide details of the breach, its impact, and remedial actions
- Take immediate steps to contain and remediate the breach
- Maintain documentation of all breach incidents
International Data Transfers
If we transfer your personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by the European Commission
- Binding Corporate Rules where applicable
Contact and Questions
If you have questions about our GDPR compliance, wish to exercise your rights, or want to file a complaint:
Contact Information:
E-lab HK Limited
Hong Kong SAR
We will respond to all GDPR-related requests within 30 days.
You also have the right to lodge a complaint with your local data protection authority if you believe we have not complied with GDPR requirements.
Accrual.pro - an E-lab HK Limited product
© 2025 E-lab HK Limited. All rights reserved.