The processing of personal data and the free movement of such data is governed by EU Regulation 2016/679 (hereinafter “the Regulation”).
The Provider, as well as the Processor and the Processor’s Authorized Person are obliged to administer the personal data collected from the Client securely and only for the specified purposes.
The purpose of data collection and processing is: product and service promotion activities, commercial activities, statistical and market research activities, informing customers/users about their account status on www.rasmindent.ro, informing customers/users about marketing activities, commercial activities, product and service promotion activities, marketing, advertising, market research, statistical activities, tracking and monitoring of sales and consumer behavior
The data collected is used and processed by the Provider, directly or through the Processors.
The provider does not allow the collection of personal data of customers under the age of 18.
The personal data entered by the Customer in the Form is necessary for the conclusion of the Contract between the Provider and the Customer. The contract will not be considered concluded if the Client refuses to enter personal data in the Form. Thus, the Supplier shall not be obliged to deliver the Product.
In accordance with the provisions of the Regulation, the Customer has the following rights:
– the right to information; the controller is obliged to provide the data subject with at least the following information, unless the data subject already possesses the information: the identity of the controller and its representative; the purpose for which the data are processed; additional information, such as: the recipients or categories of recipients of the data; whether the provision of all the data requested is mandatory and the consequences of refusal to provide them; the existence of the rights provided for by this law for the data subject, in particular the right of access, the right to intervene with the data and the right to object, as well as the conditions under which they may be exercised.
– the right of access to data: any data subject shall have the right to obtain from the controller, on request and free of charge for one request per year, confirmation as to whether or not data relating to him/her are being processed by the controller.
– the right to intervene on the data; namely rectification, updating, blocking or erasure of data the processing of which does not comply with this law, in particular incomplete or inaccurate data; anonymization of data the processing of which does not comply with this law; notification to third parties to whom the data have been disclosed of any of the above operations.
– the right to object (i.e. the data subject has the right to object at any time, on compelling legitimate grounds relating to his or her particular situation, to the processing of data relating to him or her, unless otherwise provided by law.
– the right to apply to the courts; that is, the right to apply to the courts for the defense of any rights guaranteed by this law that have been violated.
– the right to portability: upon your request, we will transfer personal data to another controller, where technically possible, provided that the processing is based on your consent or is necessary for the performance of a contract. Rather than receiving a copy of your personal data, you can request that we transfer your data directly to another controller specified by you.
– the right to erasure: you can obtain from us the erasure of your personal data if:
- your personal data are no longer necessary for the purposes for which they were collected or are otherwise processed;
- you have the right to object to the further processing of your personal data (see below) and to exercise this right to object to processing;
- personal data has been processed unlawfully;in order to comply with a legal obligation that requires processing by us;in particular for legal data retention requirements;
- for the establishment, exercise or defense of a right.
With regard to the exercise of rights regarding the protection of personal data, the Customer shall contact the Provider at the telephone number or e-mail address in the contact data.
HOW WE PROCESS PERSONAL DATA:
The Supplier collects and processes personal data for the fulfillment of orders and the delivery of products. Data is also collected to create personalized offers according to the profile of each customer.
What data is collected:
- name, surname, e-mail and/or mailing address and telephone number;
With cookies are collected: IP address, internet browser used, HHTPS/HTTPS protocol data; duration of the visit; device location (if the localization option is enabled on the device used).
HOW LONG DO WE KEEP YOUR DATA?
Data associated with you will be erased or anonymized at your request so that you can no longer be identified in our data record systems, unless we are obliged to retain your data for a longer period of time based on the law or our legitimate interest.
WITH WHOM WE SHARE YOUR DATA:
Data is transmitted to and may be processed by our trusted, carefully selected partners with whom we collaborate in order to provide our services to you.
We transmit some data to third parties (our suppliers and partners) in order to perform the functions and services necessary to operate our business, such as:
- payment/banking service providers;
- market research service providers;
- insurance companies;
- IT service providers;
- other companies with whom we can develop joint programs to market our goods and services.
- We may also disclose certain personal data to public authorities where we have a legal obligation to do so or if necessary to protect a legitimate interest.
- we ensure that access to your data by third parties, legal entities under private law, is carried out in accordance with the legal provisions on data protection and confidentiality of information, on the basis of contracts concluded with them.
We ensure the technical processes necessary to collect, process and keep data secure, including against unauthorized access, unauthorized use of data, or destruction, loss or alteration of data. We are committed to keeping your personal data secure and take all reasonable safeguards to do so.
We implement systematic processes for training the people responsible for IT security and for monitoring and auditing the security of IT systems and infrastructures according to the Provider’s internal policies.
In addition, we make all reasonable efforts to ensure (including through our contracts with them) that our trusted partners also manage appropriate technical and organizational arrangements for the processing of the data we share with them.