Terms and Conditions
Mindspeller's Commitment to Data Security and GDPR-Compliant Incident Management
Leuven, Belgium – October 8, 2025
1. Introduction
These Terms and Conditions (“Terms”) govern your access to and use of Mindspeller’s NeuroTech and social-insight platform (the “Platform”), which includes its search engine, research tools, advertising modules, and Premium Profiling / Neuroprofiling Services.
By using the Platform, you agree to these Terms and to our Privacy Policy, which explains how Mindspeller processes personal and EEG-derived data.
2. Data Security Commitment
Mindspeller is committed to maintaining the highest standards of data security and confidentiality. We design our systems in accordance with the General Data Protection Regulation (GDPR) and related EU and international data-protection frameworks.
3. Incident and Breach Management
Mindspeller operates a multi-layered incident-response framework to identify, contain, and remediate any suspected data security incident.
- Immediate Investigation: A dedicated response team investigates the incident to assess its scope and impact.
- Containment and Remediation: Systems are isolated and restored using verified patches and security updates.
- Supervisory Notification: Where a breach risks individuals’ rights or freedoms, Mindspeller will notify the competent supervisory authority within 72 hours of awareness, providing all legally required details.
- User Notification: If a breach is likely to result in high risk to you, we will inform you promptly, explaining the incident and recommended protective actions.
- Documentation: All incidents are logged internally with details of causes, effects, and corrective measures.
4. EEG and Neuroprofiling Data
Mindspeller processes EEG-derived features and related behavioral inputs to generate neuroprofile insights.
- This information may qualify as special-category data under the GDPR.
- Mindspeller applies pseudonymization, encryption, and strict access controls to protect it.
- Direct personal identifiers are separated from EEG and analytical data wherever possible.
Further details on lawful basis, retention, and deletion are provided in the Privacy Policy.
5. User Responsibilities
You agree to:
- Provide accurate and lawful information when using the Platform.
- Obtain necessary consents if you submit data about third parties.
- Use Mindspeller outputs responsibly and avoid misrepresenting AI-generated insights as clinical or diagnostic.
6. Intellectual Property
All Platform content, algorithms, and generated materials remain the property of Mindspeller or its licensors, unless otherwise stated. Users receive a non-exclusive, revocable license to access and use the Platform in accordance with these Terms.
7. Service Availability and Modifications
Mindspeller aims for continuous service availability but may suspend or modify features for maintenance, upgrades, or compliance purposes. Users will be notified of material changes.
8. Limitation of Liability
To the extent permitted by law, Mindspeller shall not be liable for indirect, incidental, or consequential damages arising from the use of the Platform or reliance on generated insights.
9. Data Governance and Privacy
Mindspeller’s processing of personal and EEG-derived data is subject to its Privacy Policy, which forms an integral part of these Terms. The Privacy Policy outlines:
- lawful bases for processing (Consent, Contract, Legitimate Interest);
- international transfers and safeguards (Standard Contractual Clauses);
- data-subject rights (access, erasure, restriction, objection, portability);
- retention and deletion policies; and
- AI transparency and accuracy safeguards.
10. Governing Law and Jurisdiction
These Terms are governed by the laws of Belgium. Any disputes shall fall under the exclusive jurisdiction of the competent courts of Leuven, Belgium.
11. Contact
For inquiries regarding these Terms or data-protection matters, contact:
Mindspeller BV
Leuven, Belgium
Email: contact@mindspeller.com