Names, email addresses and other personal data provided by users of Management and Business are used exclusively to support the editorial, peer review and publication processes. Such information is not used for advertising or for any other purpose unrelated to the journal’s activities and is not disclosed to third parties except as provided for in this policy or required by applicable law.
Data Privacy Policy
The Editorial Office of Management and Business respects users’ right to privacy and ensures the appropriate protection of personal data obtained from authors, reviewers, editors, members of the Editorial Board, readers and other registered or unregistered users.
Personal data are processed in accordance with applicable legislation governing information and personal data protection and, where the European Union General Data Protection Regulation (GDPR) applies, in accordance with its principles and requirements.
The personal data that may be collected by the journal include:
- the user’s first name and surname;
- email address and other contact details;
- institutional affiliation, position, academic degree and academic title;
- ORCID iD and other scholarly identifiers;
- information concerning professional and research interests;
- information provided during registration, manuscript submission or peer review;
- the content of editorial correspondence;
- information concerning submitted manuscripts, peer review reports and editorial decisions;
- technical data necessary for the operation of the journal’s electronic system, including the date and time of access, IP address and information about the device or browser used.
The journal collects and uses only the data necessary for:
- registering users in the editorial system;
- submitting, checking, reviewing, editing and publishing manuscripts;
- maintaining communication between authors, editors and reviewers;
- verifying the authorship, affiliation and professional competence of participants in the editorial process;
- generating metadata for published articles;
- assigning DOIs and transferring metadata to registration agencies;
- indexing materials in scholarly, bibliographic, abstracting and search databases;
- ensuring digital archiving and the long-term preservation of publications;
- preventing breaches of publication ethics;
- considering complaints, appeals and reports of possible misconduct;
- fulfilling the journal’s legal, contractual and other obligations.
Personal data are processed on the basis of the user’s consent, the necessity of conducting the editorial and publication processes, the journal’s legitimate interests in ensuring appropriate scholarly communication, and compliance with legal obligations.
The Editorial Office follows the principle of data minimisation and does not collect information that is unnecessary for the operation of the journal. Personal data are used only for the purpose for which they were obtained and are not processed in a manner incompatible with that purpose.
Authors’ names, affiliations, ORCID iDs, authorship contribution statements and other information may be published as part of the metadata and full text of an accepted article. The corresponding author’s email address may be published where this is required by the structure of the article and the author has been properly informed.
The names and contact details of reviewers are not disclosed to authors or readers where the journal applies anonymous peer review and the reviewer has not consented to the disclosure of their identity. Peer review reports, editorial correspondence and unpublished manuscripts are treated as confidential information.
Personal data may be accessed only by authorised editors, journal staff, reviewers and technical specialists to the extent necessary for the performance of their duties.
Where necessary, certain data may be transferred to service providers responsible for:
- technical support and website hosting;
- operation of the editorial system;
- DOI registration;
- text-similarity checking;
- language or technical editing;
- digital archiving;
- indexing and metadata dissemination.
Such transfers are made only to the extent necessary and subject to appropriate personal data protection safeguards. The journal does not sell or rent users’ personal data or use them for third-party commercial activities.
Where personal data are transferred to another country for the purposes of operating the journal, the Editorial Office takes measures to ensure an appropriate level of protection in accordance with applicable law.
Personal data are retained only for as long as necessary to fulfil the purpose for which they are processed. At the end of that period, the data are deleted, anonymised or reviewed to determine whether their continued retention is necessary.
Certain editorial records, including information concerning authorship, manuscript submission, peer review reports, editorial decisions, conflicts of interest, complaints and investigations of possible misconduct, may be retained for a longer period. Such retention is necessary to demonstrate that peer review was properly conducted, protect the rights of authors and reviewers, resolve possible disputes and preserve the integrity of the scholarly record.
The Editorial Office implements appropriate organisational and technical measures to protect data against:
- unauthorised access;
- accidental or unlawful destruction;
- loss or alteration;
- unlawful copying or dissemination;
- disclosure of confidential information;
- any other unlawful use.
Access to personal data is restricted in accordance with users’ official responsibilities. Persons involved in the editorial process are required to maintain confidentiality and must not use the information obtained for their own benefit.
Data protection is taken into account in the design, operation and updating of the journal’s electronic systems. By default, only the minimum amount of data necessary to perform a specific editorial task is collected and processed.
In the event of a personal data breach, the Editorial Office assesses the possible risks to the persons concerned and takes measures to limit the consequences of the breach. Where required by law, the Editorial Office notifies the competent supervisory authority and the persons whose rights may have been affected.
Users have the right to:
- obtain information about which of their personal data are processed by the journal and for what purpose;
- request access to their personal data;
- request the correction of inaccurate data or the completion of incomplete data;
- request the deletion of personal data where there is no lawful basis for their continued processing;
- request the restriction of data processing in circumstances provided for by law;
- object to processing carried out on the basis of legitimate interests;
- receive the data they have provided in a structured and machine-readable format where the right to data portability applies;
- withdraw previously given consent where processing is based on that consent;
- lodge a complaint with the competent personal data protection authority.
These rights are not absolute and are exercised subject to applicable law. In particular, the right to erasure does not entail the automatic removal of a published article, an author’s name, bibliographic metadata or editorial records where their retention is necessary to comply with legal obligations, protect legitimate rights, support archiving, investigate misconduct or maintain the integrity of the public scholarly record.
Corrections to personal data in a published article are made in accordance with the journal’s corrections policy. The history of changes must remain transparent so as not to compromise the reliability and permanence of the scholarly publication.
Authors are responsible for the lawful collection, processing and submission of the personal data of persons who participated in the research. Before transferring such data to the Editorial Office, authors must:
- obtain the necessary ethical approval;
- obtain participants’ informed consent where required;
- inform participants of the purpose for which their data will be used;
- ensure that the information is anonymised or pseudonymised;
- refrain from including information that could identify an individual in the manuscript without that person’s separate consent or another lawful basis;
- comply with the requirements of applicable law, the relevant ethics committee and the institution in which the research was conducted.
Authors must not provide the Editorial Office with an excessive amount of participants’ personal or confidential data. Original data containing identifying information may be provided to the Editorial Office or reviewers only where this is necessary to verify the research and is permitted under the terms of the informed consent, ethical approval and applicable law.
To exercise their personal data rights or obtain further information, users may contact the journal’s Editorial Office at: info@emsesd.com.ua.
The request must include the user’s name, contact details, the nature of the request and information that will assist in identifying the relevant account, manuscript or publication. Before acting on the request, the Editorial Office may ask the applicant to provide additional information to verify their identity and prevent unauthorised access to personal data.