Privacy Statement

This General Privacy Statement is effective from 1ST October 2018.

The Protection of your Personal Data is important to us.

ExxonMobil appreciates your interest in our distributor and partner websites, services, and tools, such as DNet and Mobil Performance, as well as other related or linked ExxonMobil tools and sites (collectively, “Site”) . Access to these tools is through a common e-mail username and password, called a “DIdentity account”. Your privacy is important and we want you to understand our practices with respect to our handling of Personal Data.

This Privacy Statement may be further complemented by other data privacy notices provided by ExxonMobil for specific uses of certain Personal Data in specific features of the Site. As an example, when certain features of the Site request additional information from you, we may provide an additional notice to inform you about the way in which we process such additional information. We may also combine the information we collect among our tools or sites, and across your devices, for the purposes described below.

This Privacy Statement, describes the Processing of Personal Data pertaining to visitors to the Site, by ExxonMobil affiliates (collectively, “ExxonMobil”) established in the member states of the European Economic Area (EEA), in the United Kingdom or in Switzerland.

In this Privacy Statement, we use certain defined terms. In order to understand the meaning of the defined terms, we refer you to Section 14, Defined.

1. Identity of the ExxonMobil affiliate collecting the Personal Data as Data Controller

The Data Controller(s) in respect of Personal Data collected via the Site is the ExxonMobil affiliate in EEA with whom you have, or seek to have (for prospective business associates) a contractual relationship. For more information contact the ExxonMobil Data Privacy Office.

The ExxonMobil affiliate(s) identified above as the Data Controller of the Personal Data, may transfer all or some of the Personal Data received through the Site, to ExxonMobil affiliates worldwide which are located outside the EEA and Switzerland, in third countries that may not be regarded as providing an adequate level of protection to the Personal Data. The transfers take place in accordance with Section 6 below.

2. Individuals to whom this Privacy Statement is addressed

This Privacy Statement is addressed to the visitors of this website whose Personal Data is collected by the Data Controller(s) listed in Section 1 above.

This Privacy Statement provides information about ExxonMobil’s data privacy practices generally and accordingly is of interest to the general public, our business partners and other external stakeholders, in the EEA, the United Kingdom, or in Switzerland. As stated in Section 1, this Privacy Statement may be further complemented by other specific data privacy notices issued by ExxonMobil for specific uses of Personal Data.

Information from Children

ExxonMobil does not seek through the Site to gather Personal Data from or about persons under the age of 17.

3. ExxonMobil’s compliance with data protection laws

ExxonMobil is committed to collecting and using Personal Data in a lawful manner.

ExxonMobil will ensure that, when it Processes personal data, the Processing is allowed under applicable data protection law. In EEA, the United Kingdom and Switzerland, this means amongst others that ExxonMobil shall assess whether and which justification (legal basis) it has for the Processing of Personal Data, as stipulated in the EU General Data Protection Regulation and applicable law. Depending on the situation, ExxonMobil can justify the Processing of Personal Data on various legal bases, which include:

  • ExxonMobil’s legitimate business interest to Processing the Personal Data, unless such interests are overridden by the interests or fundamental rights and freedoms of the Individual, and/or
  • The Processing is necessary for the performance of a contract to which the Individual is a party, and/or
  • The Processing is necessary for compliance with a legal obligation to which ExxonMobil is subject, and/or
  • The Processing is necessary in order to protect the vital interests of the Individual, and/or
  • The Individual has given consent to the Processing of his or her Personal Data for one or more specific purposes. When ExxonMobil obtains consent from the Individual to the processing of Personal Data, the consent can be withdrawn at any time for the future.

For more information on the particular data processing activities, the purposes sought and a description of the specific categories of personal data concerned, please make sure to review the table in Section 4.

ExxonMobil offers the opportunity for the Individuals to object to the Processing of his/her personal data and will consider such objections carefully where required by law. For more information about your rights in respect of how ExxonMobil processes your Personal Data, please refer to Section 9 and/or contact the ExxonMobil Data Privacy Office via data.privacy.office@exxonmobil.com.

4. Categories of Personal Data and purposes for data collection

4.1 Personal Data collected from visitors to the Site

When someone visits the Site, our web servers automatically gather information that allows the Site to communicate with the visitor's computer or mobile device during the visit. We also track other information about your visit which we use for statistical purposes that help us design and administer the site. Furthermore, if during your visit you personalize the Site, complete an order form, enter a contest, provide survey feedback or submit other information to us, you will, as a result, provide us with Personal Data.

In this table we describe the categories of information that we gather from visitors to the Site, the purpose for which we use the information and the legal basis which justifies each processing operation.

Purpose of Processing

Legal basis of Processing

Categories of Personal Data

How long we keep your Personal Data

Create and administer DIdentity accounts; perform access reviews.

ExxonMobil’s legitimate interest to validate the identity and access permissions of distributors and partners to ensure only approved users have access to the site.

Distributor e-mail address; password; System Activity Log, Inactivation date, job role(s) and business contact information (name, company, address, country, phone number).

Until activities are concluded + 10 years.

E-mail users about new and updated content and features on the sites, including notification e-mails and push notifications.

ExxonMobil’s legitimate interest to facilitate information sharing with distributors and partners on sales & marketing strategies of our products; notifications; product promotions; and news alerts.

Distributor name; company; device type and email address.

Until activities are concluded + 10 years.

To enable the Site to communicate with the visitor’s computer or mobile device during Site visits.

ExxonMobil’s legitimate business interests to improve the relevancy of content provided through the Site, and to ensure the quality of our services during Site visits.

IP address (the Internet address assigned to your computer from your Internet Service Provider), device type, domain type, browser type (e.g., Firefox, Chrome or Internet Explorer), and date and time of day.

See Section 12. Record Retention

To improve and customize your experience on our Site.

ExxonMobil’s legitimate business interests to improve the relevancy of content provided through the Site, and to ensure the quality of our services during Site visits.

Number of visits to the site; which parts of the Site visitors select, analytics to measure and observe user behaviour, and device screen size. Contact details (names, addresses, e-mail addresses, and telephone numbers), job role(s) personalization of the Site, completed order form, contest entry, survey feedback and other information you may provide us.

See the Cookie Statement at the bottom of this page.

For analytics and statistical purposes to help us design and administer the Site and to improve our products and services offering.

ExxonMobil’s legitimate business interests to improve the relevancy of content provided through the Site, to ensure the quality of our services during Site visits, and to promote and improve its products and services offering.

Number of visits to the site; which parts of the Site visitors select, and device screen size.

See the Cookie Statement at the bottom of this page.

When ExxonMobil relies on its legitimate interest as a legal basis to Process the Personal Data, ExxonMobil will ensure that its legitimate business interests to pursue the purposes stated in the table above (generally its interest to promote the ExxonMobil products and services), do not disproportionately and adversely impact the visitor’s rights and freedoms.

We use cookies and other files which we store on your computer or mobile device when you visit the Site, in order to collect one or more of the categories of information listed in the table above. The cookies and files stored on your computer or mobile device facilitate customizing your use of the Site and helps to avoid the need for you to re-enter your details every time you visit it. You can erase or block this information from your computer if you want to. For more information about the cookies and files we place on your computer or mobile device, and how to erase or block them, see the Cookie Statement at the bottom of this page.

Note that some of the services may not be available if you fail to provide the Personal Data necessary to deliver them.

4.2 Personal data collected from visitors to third party sites.

This Site has links to sites that ExxonMobil does not own, control or maintain. We cannot be responsible for their privacy policies and practices and we make no representations or warranties about the privacy practices of those sites. Similarly, we cannot be responsible for the policies and practices of any site from which you linked to our Site. We recommend that you review the privacy policy of other sites carefully and contact the operator if you have concerns or questions.

5. Disclosure of Personal Data to third parties

We employ other companies and persons to perform functions on our behalf. They have access to Personal Data needed to perform their functions, but may not use it for other purposes. Communicating via the Internet and sending information, products, and services to you by other means necessarily involves your Personal Data passing through or being handled by third-parties.

For the purpose of the administration of the Site and the Personal Data collected through the Site, ExxonMobil shares your Personal Data with service providers that fulfill orders, deliveries, send postal mail and e-mail, remove repetitive information from customer lists, analyze data, provide marketing assistance, process credit card payments and provide customer service.

Before any Personal Data is shared with service providers, we enter into a written agreement which requires them: (1) not to make any unauthorized further disclosures of the Personal Data; (2) to use the Personal Data only for the specified purposes and only according to the instructions received from ExxonMobil; (3) to retain the Personal Data only as long as necessary to carry out these purposes or to protect company interests (e.g. until the end of statute of limitations periods); and (4) to have in place adequate and appropriate security measures.

In some circumstances, for instance if required by law or legal process or in order to defend its rights, ExxonMobil will have to disclose Personal Data to other third parties, including competent authorities.

If Personal Data is shared with a third party or an ExxonMobil affiliate outside the EEA, the conditions regarding data transfers, see Section 6 below, apply in addition to the requirements of this section.

6. International transfers of Personal Data

6.1 Transfers between affiliates

The relevant ExxonMobil affiliate who is the Data Controller may transfer some or all of the Personal Data to servers of ExxonMobil located worldwide and will make that Personal Data accessible to other ExxonMobil affiliates, some of which are located in third countries that may not be regarded as providing an adequate level of protection of the Personal Data, in accordance with applicable law.

The transfer of Personal Data from the EEA to recipients located outside the EEA is subject to restrictions. ExxonMobil has taken steps so that Personal Data receives an adequate level of data protection at all ExxonMobil locations. These steps include ExxonMobil affiliates entering into Inter Affiliate Agreements containing the EU “Standard Contractual Clauses”.

The EU Standard Contractual Clauses have been approved by the European Commission and relevant European authorities as offering adequate protection for transfers of Personal Data outside the EEA.

6.2 Transfers to third parties

When transferring Personal Data to third parties, ExxonMobil puts in place safeguards to ensure that the third party adequately protects the Personal Data.

For more information about specific transfer mechanisms used for transfers between affiliates and transfers to third parties, including information on and a copy of any of the existing safeguards implemented by ExxonMobil in order to ensure that Personal Data is Processed within an adequate framework across all ExxonMobil locations, please contact data.privacy.office@exxonmobil.com.

7. Accuracy of Personal Data

ExxonMobil endeavors to keep Personal Data that it collects as accurate, complete and current taking into account the purposes for which it was collected and is being used. ExxonMobil relies on Data Subjects to maintain the accuracy and completeness of the Personal Data and so the Data Subjects should inform ExxonMobil if their personal details change.

8. Security and Confidentiality

ExxonMobil maintains appropriate administrative, technical and physical safeguards designed to protect Personal Data against accidental or unlawful destruction, accidental loss, alteration, unauthorized disclosure or access, use, and all other unlawful forms of Processing of Personal Data in our possession.

9. Rights to access, rectification and erasure of Personal Data, to data portability, to the restriction of and objection to the Processing of Personal Data

Applicable law may give you the right to know how ExxonMobil Processes your Personal Data, and to access your Personal Data held by ExxonMobil. Such rights exist under data privacy laws in the EEA. Furthermore in the EEA, you also have the right to: have inaccurate or incomplete Personal Data rectified; to restrict the Processing of your Personal Data, under certain circumstances; to object to the Processing operations, having regard to the given circumstances and for reasons related to their particular situation; or to have Personal Data erased when such data is no longer necessary for the purposes for which it has been collected, in accordance with applicable law.

In some circumstances, you also have a right to request the portability of your Personal Data, which will allow you to obtain and reuse your Personal Data for your own purposes across different services without hindrance to usability.

For more information about the specific mechanism available in order to exercise the aforementioned rights, please contact the data.privacy.office@exxonmobil.com.

To facilitate our efforts to meet your request, it would be helpful if you could let us know the context in which you initially provided ExxonMobil with your Personal Data, e.g. in connection with promotion of a specific product or service.

10. Processing of sensitive Personal Data

Certain categories of Personal Data are considered sensitive under data privacy laws and, as such, are subject to a higher level of protection and security. Data privacy law considers as sensitive the following categories of Personal Data: (1) race or ethnic origin; (2) political opinions; (3) religious and philosophical beliefs; (4) trade union membership; (5) sex life or sexual orientation; (6) physical or mental health or conditions; and (7) genetic data and biometric data for the purpose of uniquely defining a natural person.

We kindly ask you to refrain from providing ExxonMobil with any sensitive information of the abovementioned nature, under any circumstance. However, if you do provide such information, ExxonMobil accepts your explicit consent to use that data in accordance with this Privacy Statement or in the ways described at the point where such information is disclosed.

11. Automated Decision-Making

ExxonMobil does not use automated decision-making unless this is (i.) necessary for entering into, or performance of, a contract between the Individual and ExxonMobil and its affiliates, (ii.) permitted or required by law, or (iii.) based on the Individual’s explicit consent.

Automated decision-making means a decision that produces legal effects concerning an Individual or significantly affects the Individual and which is based solely on automated Processing (i.e. no human intervention in the process of decision-making) of Personal Data intended to evaluate certain personal aspects relating to the Individual. Moreover, ExxonMobil shall implement suitable measures to safeguard the Individual’s rights and freedoms and legitimate interests.

12. Records Retention

ExxonMobil retains Personal Data as long as necessary to meet the purposes for which the data was collected, or in order to ensure compliance with applicable law or to protect legitimate company interests (e.g. statute of limitations periods).

ExxonMobil will keep the Personal data for the period stated in section 4.

13. Questions and Complaints

ExxonMobil is committed to protecting your Personal Data as described in this Privacy Statement and as required by applicable national laws. If you have any questions about this notice or about ExxonMobil’s handling of your Personal Data, or if you would like to request additional information on the Personal Data ExxonMobil holds about you or learn about and exercise your rights with respect to your Personal Data, you can contact:

Data Privacy Office
c/o ExxonMobil Business Support Center Hungary Ltd.
Váci út 81-85
Budapest
H-1139
Hungary
data.privacy.office@exxonmobil.com
The Data Protection Officer in countries identified in Section 1

You also have a right to lodge a complaint to the data protection supervisory authority in your country.

14. DefiNED TERMS

The term “Data Controller” means the natural or legal person (in the case of ExxonMobil, the relevant ExxonMobil affiliate) which determines the purposes and means of the Processing of Personal Data.

“ExxonMobil” and/or “ExxonMobil affiliates” mean (a) Exxon Mobil Corporation or any parent of Exxon Mobil Corporation, (b) any company or partnership in which Exxon Mobil Corporation or any parent of Exxon Mobil Corporation now or hereafter, directly or indirectly (1) owns or (2) controls, more than fifty per cent (50%) of the ownership interest having the right to vote or appoint its directors or functional equivalents (“Affiliated Company”) and (c) any joint venture in which Exxon Mobil Corporations, any parent of Exxon Mobil Corporation or an Affiliated Company has day to day operational control.

By “Processed” or “Processing” we mean any operation or set of operations which is performed on Personal Data or on sets of Personal Data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

The term “Personal Data” means any information relating to an identified or identifiable natural person (“Data Subject” or “Individual”); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.

15. Changes to this Privacy Statement

We reserve the right to change this Privacy Statement at any time without notice. When we make material changes to this Privacy Statement, we will post the changes on this page and update the revision date at the top of the Privacy Statement. We encourage you to review our Privacy Statement regularly for updates.


In this statement, you will find information about what cookies are, what cookies may be set when you visit this Site and how to reject or delete those cookies.

What are Cookies and how we use them

A cookie is a small file of letters and numbers that is stored on your device when you visit a website and contains information that is transferred to your computer. This information is sent back to the website on each subsequent visit, or to another website that recognizes that cookie.

Our website uses cookies to distinguish your device from other visitors’ devices. This helps us to provide you with a better online experience, for example, by remembering your preferences, and also allows us to improve the Site, for example, by measuring site visits and by ensuring that visitors easily find what they are looking for.

We may also use cookies for other purposes, including:

to remember visitors’ preferences, such as, font size, language choice or region

to collect information about how visitors use our websites, for example, which pages are visited and the duration of the visit

We will also use cookies where they are necessary to provide a service you have requested, for example, so that you can access secure areas of our website. Some of the cookies we use are essential for parts of our site to operate. You may delete and block all cookies from this site, but that may result in parts of the site not working as intended.

You can find more information about the cookies used across ExxonMobil websites (including Exxon, Mobil and Esso branded websites) and the purposes for which they are used in the table below. Each cookie will not necessarily be used on each ExxonMobil website.

Consent to Cookies

In some countries, the law requires your permission to place cookies on your computer. As a visitor in one of those countries, you may consent to our placing of cookies on your device, in one of two ways (depending on the website visited); either you select the box to “consent… to use technology such as cookies” which will appear in a dedicated pop-up (a cookie banner), and you click on “I accept”. Or, you continue to browsing the site after receipt of a cookie banner informing you that by continuing to browse the website you consent to our placing of cookies on your device. In both cases, you can change your mind at any time by opting-out (see below for more information).

Previous visits to ExxonMobil websites

If you have previously visited an ExxonMobil website, it is likely that cookies were placed on your computer at that time. The cookies previously placed will be similar or the same as the cookies listed in the table below and we use them for similar or the same purposes.

To delete cookies that we previously placed, follow the instructions in the section “Opting out.”

Opting out

At any time, you can delete and block all cookies from this site. You can delete cookies in most web browsers and you should be able to block cookies by activating the feature on your browser that allows you to refuse the setting of some or all cookies. The "help" screen in your browser or computer user manual provides guidance on how to do this.

To find out more about cookies, including how to see what cookies have been set and how to manage and delete them, visit www.allaboutcookies.org.

The following cookies may be used on our Sites:

Name

Cookie Type

Description

Persistence

ASP.NET_SessionId

Strictly Necessary

Contains information about the browser session and allows visitors to log into the website

Removed when the browser is closed

__Requestverificationtoken

Strictly Necessary

Used to help prevent attacks against our website

Removed when the browser is closed

S0hXU19FTV9ETkVUX0F1dGg

Strictly Necessary

Contains information about the browser session and allows visitors to log into the website

Lasts for 30 minutes

UMB_PREVIEW

Strictly Necessary

Allows us to preview content when editing our website

Removed when the browser is closed

UMB_UCONTEXT

Strictly Necessary

Allows us to manage our website content

Lasts for 20 minutes

cookiesAccepted

Functionality

Remembers a visitor's acceptance of cookies

Lasts for 1 year

uuid

Functionality

Remembers a visitor's preferred language and/or allows us to personalise the Site for you

Lasts for 1 year

lang

Functionality

Remembers a visitor's preferred language and/or allows us to personalise the Site for you

Lasts for 1 year

JSESSIONID

Performance

Allows us to measure how well our website is performing

Removed when the browser is closed

_ga

Performance

Allows us to see how many visitors come to our website and how often

Lasts for 2 years

_gat

Performance

Used to throttle request rate

Lasts for 1 minute

_gid

Performance

Allows us to see how visitors use our website

Lasts for 1 day

__utma

Performance

Allows us to see how many visitors come to our site and how often

Lasts for 2 years from set/update

__utmb

Performance

Records when a page is opened and allows us to measure how long visitors view our site pages

Lasts for 30 minutes from set/update

__utmc

Performance

Records when a page is closed and is used in conjunction with __utmb to measure how long visitors view our site pages

Removed when the browser is closed

__utmt

Performance

Used to throttle request rate

Lasts for 10 minutes

__utmz

Performance

Notes how visitors find our website, for example, whether they come via a search engine, linked from another website or whether they typed in the web address directly

Lasts for 6 months from set/update