1. General information
- This policy applies to the Website, operating at the url: https://medicalclinic.pl
- The website operator and the administrator of personal data is: Medical Clinic Podhale Spółka Jawna ul. Nowotarska 294, 34-431 Waksmund
- The operator’s e-mail contact address: email@example.com
- The operator is the administrator of your personal data in relation to the data provided voluntarily on the website.
- The website uses personal data for the following purposes:
- Keeping the newsletter
- Handling inquiries via the form
- The website obtains information about users and their behavior in the following way:
- Through data entered voluntarily in forms, which are entered into the Operator’s systems.
- By saving cookie files in end-devices (so-called “cookies”).
2. Selected data protection methods used by the Operator
- The places of logging in and entering personal data are protected in the transmission layer (SSL certificate). As a result, personal data and login data entered on the website are encrypted on the user’s computer and can only be read on the target server.
- The operator periodically changes his administrative passwords.
- An important element of data protection is regular updating of all software used by the Operator to process personal data, which in particular means regular updates of programming components.
- The website is hosted (technically maintained) on the operator’s server: linuxpl.com
- Hosting company registration data: H88 S.A. with its registered office in Poznań, Franklin Roosevelt 22, 60-829 Poznań, entered into the National Court Register by the District Court Poznań – Nowe Miasto and Wilda in Poznań, 8th Commercial Division of the National Court Register under the number KRS 0000612359, REGON 364261632, NIP 7822622168, share capital PLN 210,000.00 fully paid up.
- Hosting company:
- applies measures to protect against data loss (e.g. disk arrays, regular backups),
- applies adequate measures to protect the processing sites in the event of a fire (e.g. special fire extinguishing systems),
- applies adequate measures to protect processing systems in the event of a sudden power failure (e.g. dual power lines, aggregates, UPS voltage support systems),
- applies means of physical protection of access to data processing sites (e.g. access control, monitoring),
- applies measures to ensure appropriate environmental conditions for servers as elements of the data processing system (e.g. environmental conditions control, specialized air-conditioning systems),
- applies organizational solutions to ensure the highest possible level of protection and confidentiality (training, internal regulations, password policies, etc.),
- appointed the Data Protection Officer.
- The hosting company keeps logs at the server level to ensure technical reliability. The following may be saved:
- resources defined by the URL identifier (addresses of the requested resources – pages, files),
- time of arrival of the inquiry,
- time of sending the answer, name of the client’s station – identification carried out by the HTTP protocol, information about errors that occurred during the implementation of the HTTP transaction,
- URL address of the page previously visited by the user – if the Website was accessed via a link,
- information about the user’s browser,
- information about the IP address,
- diagnostic information related to the process of self-ordering services through recorders on the website,
- information related to the handling of e-mail addressed to the Operator and sent by the Operator.
4. Your rights and additional information on how to use the data
- In some situations, the Administrator has the right to transfer your personal data to other recipients, if it is necessary to perform the contract concluded with you or to fulfill the obligations incumbent on the Administrator. This applies to such groups of recipients:
- comment system operator
- authorized employees and associates who use the data to achieve the purpose of the website.
- Your personal data processed by the Administrator for no longer than it is necessary to perform the related activities specified in separate regulations (e.g. on accounting). With regard to marketing data, the data will not be processed for more than 3 years.
- You have the right to request from the Administrator:
- access to your personal data,
- rectifying them,
- processing restrictions,
- and data portability.
- You have the right to object to the processing indicated in point 3.3 c) to the processing of personal data in order to perform the legitimate interests pursued by the Administrator, including profiling, while the right to object may not be exercised if there are valid legally justified grounds for processing of your interests, rights and freedoms, in particular establishing, investigating or defending claims.
- The Administrator’s actions may be appealed against to the President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw.
- Providing personal data is voluntary, but necessary to operate the Website.
- In relation to you, actions may be taken consisting in automated decision making, including profiling in order to provide services under the concluded contract and for the purpose of conducting direct marketing by the Administrator.
- Personal data is not transferred from third countries within the meaning of the provisions on the protection of personal data. This means that we do not send them outside the European Union.
5. Information in the forms
- The website collects information provided voluntarily by the user, including personal data, if provided.
- The website may save information about connection parameters (time stamp, IP address).
- The website, in some cases, may save information facilitating the linking of data in the form with the e-mail address of the user filling in the form. In this case, the user’s e-mail address appears inside the url of the page containing the form.
- The data provided in the form is processed for the purpose resulting from the function of a specific form, eg to process the service request or commercial contact, service registration, etc. Each time the context and description of the form clearly informs what it is used for.
6. Administrator logs
- Information on the behavior of users on the website may be subject to logging. These data are used to administer the website.
7. Relevant Marketing Techniques
8. Information about cookies
- Cookie files (so-called “cookies”) are IT data, in particular text files, which are stored on the User’s device and are intended for using the Website’s pages. Cookies usually contain the name of the website they come from, the storage time on the end device and a unique number.
- The entity that places cookies on the Website User’s end device and obtains access to them is the Website operator.
- Cookies are used for the following purposes:
- maintaining the Website user’s session (after logging in), thanks to which the user does not have to re-enter the login and password on each subpage of the Website;
- achieving the goals set out above in the section “Important Marketing Techniques”;
- The Website uses two basic types of cookies: session cookies and persistent cookies. Session cookies are temporary files that are stored on the User’s end device until logging out, leaving the website or turning off the software (web browser). Persistent cookies are stored on the User’s end device for the time specified in the cookie file parameters or until they are deleted by the User.
- Software for browsing websites (web browser) usually allows cookies to be stored on the User’s end device by default. Website users can change the settings in this regard. The web browser allows you to delete cookies. It is also possible to automatically block cookies.Detailed information on this subject can be found in the help or documentation of the web browser.
- Cookies placed on the Website User’s end device may also be used by entities cooperating with the Website operator, in particular the following companies: Google (Google Inc. based in the USA), Facebook (Facebook Inc. based in the USA), Twitter (Twitter Inc. based in the USA).
9. Managing cookies – how to express and withdraw consent in practice?
- If the user does not want to receive cookies, he may change the browser settings. We reserve that disabling cookies necessary for authentication processes, security, maintaining user preferences may make it difficult, and in extreme cases may prevent the use of websites.
- In order to manage cookie settings, select the web browser you use from the list below and follow the instructions:
- Urządzenia mobilne: