1 - SOURCES OF PERSONAL DATA
This Policy applies to Personal Data that we collect from the user/customer through personal contact when purchasing a product and therefore for billing, our website, our Facebook page, registration forms for the provision of services such as training to specialize in the application of products knowing new procedures and innovative techniques.
2 - PERSONAL DATA PROCESSING AND PROTECTION OFFICER
The person responsible for the processing of personal data carried out through the BSK Medical website as indicated above. A personal data protection officer is part of our organisational structure and will be available to provide you with any information regarding the processing of your personal data by BSK Medical.
3 - TREATED PERSONAL DATA
As regards the processing of personal data, we understand, as expressly provided in the Regulation, "an operation or set of operations which is performed upon personal data or upon a set of personal data, by automated or non-automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction". We inform you that the personal data collected by us, depending on your decisions regarding the services to be subscribed to and the respective mode of use, may include the following categories: identifier such as a name, tax identification number, address, profession/specialty, Bar Association number (where applicable), telephone, email; suitable for your identification, according to the type of services subscribed to by you (here in after just"Personal Data"). The personal data processed through our website areas follows:
a) NAVIGATION DATA
The systems and software procedures used to operate our website acquire, during their normal operation, some personal data whose transmission is implicit in the use of Internet communication protocols. This is information that is not collected to be associated with identified interested parties but which, by its very nature, could, through processing and association with data held by third parties, allow users to be identified. This category of data includes IP addresses or domain names of users who connect to our website, the addresses inUniform Resource Identifier (URI) notation of the requested resources, the time of the request, the method used to send the request, request to the server, the size of the file obtained in response, the numerical code indicating the status of the response given by the server (success, error, etc.) and other parameters related to the operating system. These data are used for the sole purpose of obtaining anonymous statistical information on the use of our website and to check its correct functioning, to identify anomalies and/or abuse and are deleted immediately and definitively after the processing in question. The data in question may be used to determine liability in the event of crimes against BSK Medical or third parties committed via our website.
b) SPECIAL CATEGORIES OF PERSONAL DATA
When using the Services, it may be possible to process your Personal Data falling within the special categories of personal data pursuant to Article 9 of theRegulation" personal data revealing racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership, as well as the processing of genetic data, biometric data to uniquely identify a person, data concerning health or data concerning a person's sex life or sexual orientation. "This, special categories of Personal data may be processed with the express and unambiguous consent of the data subject and in accordance with applicable and current legislation on the protection of personal data. Please note that in addition to seeking your consent in the terms indicated above, the processing operations involving such data carried out by us are authorised in advance by the competent control authority. In these terms, please note that in the absence of specific consent for the processing in question, in terms that nevertheless allow you to subscribe to the intendedServices, should you subsequently wish to use a service provided by BSK Medical that involves the processing of special categories of personal data, you will have to amend your subscription form, giving your express and unambiguous consent to this effect. If you do not give your consent to the processing in question, but use the Services to which the processing relates (e.g. management of the dedicated web space) by publishing and disseminating your personal information falling within the special categories of personal data (e.g.publication of photos showing information relating to your health, etc ...), no liability shall attach to BSK Medical under the provisions of Article 9 of the Regulation.
WARNING: By disabling technical and/or functionality cookies the online portal may become unavailable or some services or certain functions of the online portal may not be available or function properly and you may be required to change or manually enter some information or preferences each time you visit the online portal. Third-party cookies, i.e.cookies from online portals or web servers other than those of the Holder, used for those third parties' own purposes, also including profiling cookies. It should be noted that these third parties, listed below with their respective links to the privacy policies, are independent holders of the processing of data collected through the cookies they serve; therefore, the user should consult their personal data processing policies, information and consent forms (marking and un marking of the respective cookies). In addition it should also be noted that BSK Medical does what it is reasonably required to do in order to be able to monitor the cookies on its online portal. These are updated on a regular basis on the landing page at the link below, where we provide transparency about cookies sent directly by BSK Medical and their purpose, and, with specific reference to cookies sent by third parties via our online portal, we list both those that are written in the BSK Medical domain (e.g. Google Analytics), and those that are not written in the BSK Medical domain, but with whose owners BSK Medical has a direct relationship (e.g. Facebook cookies). With regard to these cookies, we provide below the links to privacy statements of the third parties that send them to you via our online portal: to these third parties, as already pointed out, we assign the responsibility to provide the privacy statement and collect user consent. This responsibility refers not only to the cookies that the third parties send directly, but also to any additional cookies that are sent through our online portal by virtue of the use of services from which the third parties themselves benefit. With regard to these cookies, sent by the service providers of these third parties, BSK Medical can not exercise any control and knows neither their characteristics nor their purposes. Below are the links to information about third party cookies:
-GOOGLE- FACEBOOK- INSTAGRAM4 - PURPOSE FOR THE PROCESSING OF PERSONAL DATA.
The following information describes the different purposes for which we collect your Personal Data, as well as the different types of Personal Data that are collected for that purpose. Customer Service - Personal Data is used for customer service purposes, including responding to inquiries. This process involves the use of certain personal contact information relating to the reason for your enquiry (such as order status, product complaints, etc.) Contests, Marketing and other promotions -Personal Data is used with your consent to provide you with information on products and services. This may occur via email or telephone contact. Some of our campaigns may be run via social media (Facebook, Instagram). This use of Personal Data is voluntary, which means that you can object to the processing of your Personal Data for this purpose. We use your Personal Data on social networks whenever you interact with social media features such as"like". You can change this at any time by removing the "likethis page" from your profile and you will no longer follow and receive information. Order Processing - your Personal Data is used to process the order. This purpose involves the use of certain personal and paymentinformation. Legal reasons - your Personal Data is used by legally required and legally authorised bodies.
The processing of personal data that we intend to carry out, with your specific and express consent, has the following purposes:
a) to allow the provision of the Services requested by you, which may be requested by registering and creating your user profile at the time of the provision of the Services, including the collection, storage and processing of data for the purpose of operational, technical and administrative management of the commercial and contractual relationship related to the provision of the Services and in order to carry out communications related to said relationship between BSK Medical and you;
b) respond to requests for assistance or information, which BSK Medical may receive via e-mail, telephone or through the appropriate form available on its website;
c) comply with legal, accounting and tax obligations;
d) send direct marketing communications (by sending electronic communications)regarding services similar to those already subscribed to by the Customer, except in the event of initial opposition or as regards subsequent communications. Please note that in the case of a legal entity, BSK Medical may send electronic communications for direct marketing purposes concerning goods and services provided by the Client, unless the Client expressly declines to receive such communications in the future and opts-in to the national list of legal entities that expressly object to receiving unsolicited communications for direct marketing purposes;
e) Conduct studies, surveys, market statistics; in order to be able to send advertising material, information or satisfaction surveys with a view to improving the quality of the service provided via electronic communications and/or telephone calls, or via the official BSK Medical pages on social networks;
f) For the sole purpose of security and prevention of fraudulent behaviour, the controller establishes an automatic control system involving the detection and analysis of user behaviour on the Website associated with the processing of Personal Data such as, for example, the IP address. The consequence of such processing is that if a person engages in fraudulent conduct on the BSK Medical Website, for example to benefit multiple times from the same promotion or win a pastime without having the right to do so, BSK Medical reserves the right to exclude that person from the promotion or pastime or take any other appropriate action for its own protection.
5 - BASIS FOR THE PROCESSING AND ITS OBLIGATORY OR FACULTATIVE NATURE
The legal basis for processing personal data for the purposes set out in points a), b) and c)of the preceding clause is that set out in Article 6(1)(b) of the Regulations, as the processing in question is necessary for the provision of the Services subscribed to by the Customer. Please note that the provision of personal data for these purposes is optional, however, failure to provide them makes it impossible for BSK Medical to provide the services . The purpose indicated in point d) above reflects a legitimate processing of personal data pursuant to Article 6(1)(c) of the Regulation, as such processing is necessary for BSK Medical to comply with legal obligations to which it is subject. The processing of personal data carried out for marketing purposes is based on the express and unambiguous consent of the Customer, in accordance with the provisions of Articles 6(1)(a) and 22(2)(c) of the regulation. The provision of your personal data for this purpose is, therefore, optional. Should you wish to object to the processing of your personal data for direct marketing purposes, you may do so at any time by contacting us by email or by letter. The purpose referred to in point (i) above is based on the legitimate interest of BSK Medical in detecting fraud committed against you, in accordance with the provisions of Article 6(1)(f) of the Regulation.
6 - RECIPIENTS OF PERSONAL DATA
Your personal data may be communicated for the purposes described above to the following entities:
a) Subjects that normally act as subcontractors, ie: natural or legal persons who provide services, assistance and advice to BSK Medical on accounting, administrative, legal, tax, financial and credit recovery matters; entities with whom it is necessary to interact in order to provide the services (e.g. carriers to deliver your order) or persons who perform technical maintenance functions (including equipment maintenance);
b) Entities to which BSK Medical must communicate personal data in accordance with the provisions of applicable law and / or in response to requests by competent authorities, duly substantiated to this effect;
c) Persons authorized by BSK Medical to process personal data strictly necessary to perform operations related to the provision of the services, which are contractually and / or legally bound to duties of confidentiality and professional secrecy;
d) Business partners for the specific purposes only in the event that the customer has provided their express, unambiguous and specific consent to this effect. You may request, in writing, a list of data controllers with whom BSKmedical relates in relation to your personal data.
7 - CONSERVATION OF PERSONAL DATA
Personal data processed for the purposes set out in clause 3 shall be kept for the period of time strictly necessary to carry out those purposes. Thus, the following are the retention periods for the following customer personal data: Personal data processed for marketing purposes when the contract between BSK Medical and the personal data subjects is no longer in force: such data may be retained until the data subject revokes the consent given. However, BSK Medical has established that it must delete them two years after the provision of consent and after the termination of the service contract. Data stored and processed for the purpose of profiling: In general, this type of personal data is stored until the data subject revokes the consent provided, unless further clarification is provided in this regard by the competent supervisory authority. Personal data of customers provided at the time of contracting: this type of personal data will be kept for ten years if it concerns data relating to invoicing for services and 5 years after termination of the contract if the justification for keeping it concerns only the need for BSK Medical to defend itself against a legal claim based on contractual or non-contractual liability. Personal data delivered to BSK Medical, as Subcontracting Entity, by the client as the Entity Responsible for Treatment: such data is deleted on the date of termination of the contract.Personal data relevant for compliance with tax obligations: such data shall be deleted after 10 years of storage, pursuant to the Tax Law.
8 - RIGHTS OF THE HOLDERS OF PERSONAL DATA
The Customer has the right to request, at any time, access to his or her personal data, the updating or deletion there of, under the terms of the Regulations. They also have the right to request the limitation of the processing of their personal data, in accordance with Article 18 of the Regulations, as well as the right to obtain their personal data in a structured, commonly used and machine-readable format, in the cases provided for in Article 20 of the Regulations. Requests without cause shall be sent in writing to the email address firstname.lastname@example.org. Note that, in the case of requests from data subjects concerning the reporting of abuse in the use of the Services or spam - activities already prohibited by contract as set out in the General Conditions of Service - made by a Customer of BSK Medical (it should be noted that such customer normally acts as a data controller in accordance with the GDPR), and in the case of any other request for the exercise of the rights in Article 15 and the subsequent articles of the GDPR, BSK Medical , without going into the details of the request, will on the one hand promptly inform the client/data controller and on the other hand provide the data subjects with the details of the client/data controller. If you believe that the processing of your personal data violates the provisions of applicable law, you may lodge a complaint with the competent supervisory authority in accordance with the provisions of the Regulation.
9 – DURATION