Click4Assistance glyph Flower shape graphic Rectangle shape
22 February 2018 | 9683 views

Securing Your Live Chat Integration to Comply with GDPR

Securing Your Live Chat Integration to Comply with GDPR

The countdown is ticking away until organisations must be fully compliant with the General Data Protection Regulations (GDPR) that take affect from 25th May 2018.

The regulation will alter how companies use data, looking to modernise data protection in line with the digital age. Many organisations are worried about GDPR; however the changes can present a wider opportunity for improving customer service.

How this Affects Customer Engagement

Gaining consent may be necessary, depending on how your organisation intends to use visitor data that has been collected within chat. If their data is being used in a way that the individual would reasonably expect and has a minimal privacy impact or where there is a compelling justification for the processing (Legitimate Interests) such as,  gathering data during a chat for the purposes of that enquiry or interaction, it is unlikely you would need to gain formal consent.

If the data will be shared or used for marketing purposes etc. you may need formal consent from the visitor. We suggest receiving a statement of consent during the chat, or adding a checkbox to the prechat form, however access to chat should not be restricted on the grounds of gaining consent without good reason.

It must be as equally as easy for visitors to withdraw their consent. This means if you collect visitors information during a chat for marketing purposes and they opt-out, the activities they signed up for (e.g. receive newsletter) must be stopped immediately.

chat integration - filter stored chatsThey can also request that all their data is deleted under the right to be forgotten. This means every chat and record associated to them stored within the Click4Assistance solution must be removed. Filters are available within the dashboard windows such as Stored Chats, Visitor Activity and Offline Requests etc. Authorised users who have permissions to delete data will be able to use the filters to find any information regarding the visitor and remove it permanently. Anything that is also stored about that individual within CRM systems, email and social media accounts will need to be deleted.  

The Click4Assistance solution includes functionality called prospects, which can automatically add lead details into the system when they have entered their information on the website. Under GDPR customers have the right to opt out of automated profiling, therefore the software allows companies using prospects to choose if they want to automatically and / or manually add visitor details. Adding prospects manually ensures that the visitor has consented to sharing their personal details. However if they were to remove their consent, the prospects area also contains a filter to find an individual’s information, which can be permanently deleted by an authorised user.

Customers can request their personal data, which must be received in a machine-readable format. Reports containing the visitor’s details and interaction information can be sent directly from within the solution to the individual, which can be read in PDF, Excel and CSV formats.

Implications of non Compliance

If a business fails to comply they can face massive fines of 20 million Euros (just under £18million) or 4% of global turnover, whichever is greater.

If a breach was to occur, the organisation needs to report it within 72 hours to both the customer and regulator. If multiple customers’ data has been breached, 72 hours is a very short amount of time to ensure all the clients affected are fully informed about the incident.

‘Experiences’ by Click4Assistance has been developed to help prevent breaches, take a look at our tips:

  • Set up users with their own unique profile and login details, do not share one between employees
  • Do not share passwords
  • Change passwords regularly
  • For advanced log in, use active directory
  • Set up user types to define access levels and permission to ensure users are only accessing the modules they need to
  • Restrict login access by time and IP
  • Regularly review your user profiles to ensure only current employees can log in
  • Configure your pre-chat form to include link to your privacy policy
  • Run the audit report regularly to ensure users are not making unauthorised changes to the account
  • When a visitor withdraws consent use filters, within Stored Chats, Visitor Activity and Prospects to identify any stored details to delete.

Click4Assistance takes security very seriously; chats and data are transmitted over https/SSL using SHA-256bit encryption and encrypted at rest. For more information about our security and how we are dealing with GDPR, contact our team on 01268 524628 or email theteam@click4assistance.co.uk  for our security documentation.

Author Photo
Author: Gemma Baker
Gemma is the Marketing Executive for UK live chat software provider, Click4Assistance, with a range of digital knowledge within PPC advertising, SEO practices, email campaigns and social media.

Popular Blogs

The Best Ways to Cross Sell and Upsell with Live Chat Services 20 Dec 2016

The Best Ways to Cross Sell and Upsell with Live Chat Services

“Here is a simple but powerful rule – always give people more than they expect to get.” – Nelson Boswell.

Read more
Click4Assistance UK Software Provider Partners with Largest UK Furniture Retailer 4 Oct 2013

Click4Assistance UK Software Provider Partners with Largest UK Furniture Retailer

Click4Assistance is proud to announce it has recently integrated its innovative live chat software into the existing website of largest UK home retailer Harveys Furniture.

Read more
Norfolk County Council Offers Chat as Another Contact Method for Residents 7 Jun 2018

Norfolk County Council Offers Chat as Another Contact Method for Residents

Norfolk County Council approached Click4Assistance in March 2017 with their requirements to add chat to website. After going through the procurement process, a few organisational shifts in project managers and tweaks to their chat configuration, the Council was ready to unveil their new communication channel to residents in January 2018.

Read more

Find out more

Live chat dashboard with chat window example

Live chat

Learn how live chat can help empower your organisation.

Find out more
Coni chatbot live chat support Arti AI for live chat business support

Chatbots & AI

Learn how chatbots and AI can help you engage with your audience.

Find out more
integrated omnichannel communications

Omnichannel

Connect with your audience using multiple omnichannels.

Find out more

Discover more

Want to see how live chat can work for your organisation?

See examples of web chat and chatbot implementations for your industry. Be inspired by how other companies in your sector use live chat!

Download web chat and chatbot examples for your industry

Embrace new ways of engaging with your audience!