1. General information
- This policy regards service www, functioning under address url: https://maternadental.pl/
- The Operator of the website and the Administrator of personal data is:
MATERNA DENTAL SP. Z.O.O. z siedzibą w Poznaniu
lek. stom. Tomasz Materna
30 Kościerzyńska Street
60-446 Poznań
KRS: 0001082157
NIP: 7812064732
REGON: 527600953 - Operator’s contact email address is: klinika [at] maternadental.pl
- The Operator is the Administrator of your personal data in relation to the data provided voluntarily on the Website.
- The website uses personal data to present the offer or information.
- The Website performs the functions of obtaining information about users and their behavior in the following ways:
- Through data voluntarily entered in forms, which are entered into the Operator’s systems.
- By storing cookies on end devices.
2. Selected methods of data protection used by the Operator
- The places where you log in and enter your personal data are protected in the transmission layer (SSL certificate). As a result, personal data and login data entered on the website are encrypted on the user’s computer and can only be read on the target server.
- User passwords are stored in hashed form. The hash function works in one direction – it is not possible to reverse its operation, which is now the modern standard for storing user passwords.
- In order to protect the data, the Operator regularly makes backup copies.
- An important element of data protection is regular updating of all software used by the Operator to process data.
3. Hosting
- The website is hosted (technically maintained) on the company: SEOHOST Sp. z o.o.
- Hosting Company Registration Details:
SEOHOST Sp. z o.o.
ul. Obornicka 330, 60-689 Poznań
KRS: 0000939910 NIP: 9721323212 REGON: 520718284 - At https://seohost.pl, you can learn more about web hosting and check the hosting company’s privacy policy.
- Web hosting company:
- applies measures to protect against data loss (e.g. disk arrays, regular backups),
- applies adequate measures to protect processing sites in the event of fire (e.g. special extinguishing systems);
- Apply adequate measures to protect processing systems in the event of a sudden power failure (e.g. dual power supply paths, generators, UPS backup systems)
- applies measures to physically protect access to data processing sites (e.g. access control, monitoring)
- applies measures to ensure appropriate environmental conditions for servers as elements of the data processing system (e.g. control of environmental conditions, specialized air conditioning systems),
- applies organizational solutions to ensure the highest possible level of protection and confidentiality (training, internal regulations, password policies, etc.),
- appointed a Data Protection Officer.
- In order to ensure technical reliability, the hosting company keeps logs at the server level. The following may be recorded:
- resources specified by the URL identifier (addresses of the requested resources – pages, files),
- the time of arrival of the request,
- the time of reply to the request
- the name of the client’s station – identification carried out by the HTTP protocol,
- information about errors that occurred during the execution of HTTP transactions,
- URL address of the page previously visited by the user (referrer link) – if the user was redirected to the Website via a link,
information about the user’s browser, - IP address information,
- diagnostic information related to the process of self-ordering services through the recorders on the website,
- information related to the handling of emails addressed to the Operator and sent by the Operator.
4. Your rights and additional information about how we use your data
- In some situations, the Operator has the right to transfer your personal data to other recipients if it is necessary for the performance of the contract concluded with you or for the fulfillment of the obligations incumbent on the Operator. This applies to the following audiences:
- hosting company on an entrustment basis
- Your personal data processed by the Administrator for no longer than it is necessary to perform related activities specified in separate regulations (e.g. on accounting). With regard to marketing data, the data will not be processed for more than 3 years.
- You have the right to request from the Administrator:
- access to your personal data,
- your data rectification,
- your data removal (erasure)
- restriction of processing,
and data portability.
- You have the right to object to the processing indicated in section 3.3 c) to the processing of your personal data for the purpose of pursuing the legitimate interests pursued by the Administrator, including profiling, and the right to object will not be able to be exercised if there are important legitimate grounds for processing, overriding interests, rights and freedoms, in particular the determination of asserting or defending claims.
- You also have the right to lodge a complaint against the Administrator’s actions with a supervisory authority, that is the Head of the Personal Data Protection Office, 2 Stawki Street, 00-193 Warsaw)
- Providing personal data is voluntary, but necessary to operate the Website.
- Actions involving automated decision-making, including profiling, may be undertaken in relation to you in order to provide services under the concluded contract and for the purpose of direct marketing by the Administrator.
- Personal data is not transferred from third countries within the meaning of data protection regulations. This means that we do not transfer it outside the European Union.
5. Information in forms
- The website collects information provided voluntarily by the user, including personal data, if provided.
- The website may save information about the connection parameters (time stamp, IP address).
- In some cases, the website may save information that makes it easier to link the data in the form with the e-mail address of the user filling in the form. In this case, the user’s email address appears inside the URL of the page containing the form.
- The data provided in the form are processed for the purpose resulting from the function of a specific form, e.g. in order to process a service request or commercial contact, register services, etc. Each time, the context and description of the form clearly informs what it is used for.
6. Administrator’s Logs
- Information about users’ behavior on the site may be subject to logging. This data is used for the purpose of administering the website.
7. Essential Marketing Techniques
- The Operator uses statistical analysis of website traffic through Google Analytics (Google Inc. with its registered office in the USA). The operator does not transfer personal data to the operator of this service, but only anonymized information. The service is based on the use of cookies on the user’s end device. With regard to the information about the user’s preferences collected by the Google advertising network, the user can view and edit the information resulting from cookies using the tool: https://www.google.com/ads/preferences/
- The Operator uses remarketing techniques to match advertising messages to the user’s behavior on the website, which may give the illusion that the user’s personal data is used to track him, but in practice no personal data is transferred from the Operator to the advertising operators. The technological prerequisite for such activities is the activation of cookies.
- The operator uses a solution that studies user behavior by creating heat maps and recording behavior on the website. This information is anonymized before it is transmitted to the service provider, so that the service provider does not know which natural person it concerns. In particular, passwords and other personal data entered are not recorded.
8. Information about cookies
- The website uses cookies.
- Cookies are IT data, in particular text files, which are stored on the Website User’s end device and are intended for the use of the Website’s websites. Cookies usually contain the name of the website from which they originate, the time they are stored on the end device and a unique number.
- The entity placing cookies on the Website User’s end device and gaining access to them is the Website operator.
- Cookies are used for the following purposes:
- maintaining the Website user’s session (after logging in), thanks to which the user does not have to re-enter the login and password on each subpage of the Website;
- to achieve the purposes set out above in the section “Relevant Marketing Techniques”;
- The Website uses two basic types of cookies: “session” cookies and “persistent” cookies. “Session” cookies are temporary files that are stored on the User’s end device until logging out, leaving the website or turning off the software (web browser). “Persistent” cookies are stored on the User’s end device for the time specified in the cookie parameters or until they are deleted by the User.
- The software for browsing websites (web browser) usually allows cookies to be stored on the User’s end device by default. Website Users may change the settings in this regard. Your web browser allows you to delete cookies. It is also possible to block cookies automatically. For details, see your web browser’s help or documentation.
- Restrictions on the use of cookies may affect some of the functionalities available on the Website.
- Cookies placed on the Website User’s end device may also be used by entities cooperating with the Website operator, in particular the following companies: Google (Google Inc. with its registered office in the USA), Facebook (Facebook Inc. with its registered office in the USA), X (former Twitter; Twitter Inc. with its registered office in the USA).
9. Managing cookies – how to give and withdraw consent in practice?
- If you do not want to receive cookies, you can change your browser settings. Please note that disabling cookies necessary for authentication, security, and maintaining user preferences may make it difficult, and in extreme cases, may prevent the use of websites.
- In order to manage your cookie settings, select the web browser you are using from the list below and follow the instructions: