13.01.2013 Views

MasterCard Rules (PDF)

MasterCard Rules (PDF)

MasterCard Rules (PDF)

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Europe Region <strong>Rules</strong><br />

3.8 Authorization Service<br />

2. that Data Subjects may withdraw any consent they previously provided<br />

to the applicable Customer or the Corporation or object at any time on<br />

legitimate grounds to the Processing of Personal Data;<br />

3. about the choices and means that Data Subjects have for limiting the<br />

Processing of Personal Data by the Corporation,<br />

4. that Personal Data may be processed outside the EEA or Switzerland; and<br />

5. about the categories of recipients of Personal Data.<br />

3.6.5.3 Data Subject Access to Personal Data<br />

In accordance with applicable laws and regulations, Customers in the EEA<br />

or Switzerland must develop and implement appropriate procedures for<br />

handling requests by Data Subjects for access to, correction and/or deletion of<br />

Personal Data maintained by the applicable Customer or the Corporation. The<br />

Corporation will cooperate with Customers in responding to such requests and<br />

will provide access to Personal Data maintained by the Corporation to assist<br />

Customers in complying with requests for access to such Personal Data.<br />

If an access request is made directly to the Corporation, Customers must<br />

cooperate with the Corporation in promptly responding to the request.<br />

3.6.5.4 Integrity of Personal Data<br />

Each Customer in the EEA or Switzerland must take reasonable steps to ensure<br />

that Personal Data the Customer provides to the Corporation is reliable for its<br />

intended use and is accurate, complete and current.<br />

3.8 Authorization Service<br />

3.8.3 Stand-In Processing Service<br />

Rule 3.8.3 of Chapter 3, “Customer Obligations,” does not apply if on or before<br />

17 September 2008, the Issuer commenced its use of an alternative on-behalf<br />

authorization service that meets the Corporation’s performance standards.<br />

3.8.4 Issuer Performance Standards<br />

The following additional Standards apply in the Europe Region. Issuers that fail<br />

to meet performance standards may be subject to the assessments set forth in<br />

Rule 3.8.4.3 below and will be mandated to implement the Stand-In Processing<br />

Service. Chip Issuers mandated to implement the Stand-In Processing Service<br />

will also be required to register for M/Chip Cryptogram Validation in Stand-In.<br />

©1969–2012 <strong>MasterCard</strong>. Proprietary. All rights reserved.<br />

12-12 12 December 2012 • <strong>MasterCard</strong> <strong>Rules</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!