Privacy Policy for The Dental Expert Hub
Effective Date: Feb 21st, 2025
Welcome to The Dental Expert Hub. We are committed to ensuring the lawful, fair, and transparent processing of your personal data in accordance with the General Data Protection Regulation (GDPR) applicable in Spain and the wider European Economic Area (EEA), as well as ensuring compliance with the Health Insurance Portability and Accountability Act (HIPAA) when applicable to clients in the United States.
1. Collection of Personal Data
We may collect the following categories of data when you use our website or services:
-
Personal Data: Identifiers such as name, email address, phone number, and other contact information.
-
Health Information (PHI): Protected Health Information when required for service provision, subject to HIPAA compliance.
-
Financial Data: Payment information, including credit/debit card details and bank account information (e.g., SEPA payments), processed securely and in compliance with PCI DSS standards.
-
Technical Data: IP address, browser type, browsing behavior, and session duration.
-
Cookies and Tracking Technologies: Information collected through cookies, web beacons, and other tracking mechanisms.
2. Purpose and Legal Basis for Processing
We process your personal data for the following purposes, based on the corresponding legal grounds:
-
Performance of a Contract: To provide the requested services and fulfill contractual obligations, including processing payments.
-
Consent: For sending newsletters and marketing communications, subject to your explicit consent.
-
Legal Compliance: To comply with statutory obligations under GDPR, HIPAA, and financial regulations.
-
Legitimate Interests: To improve our services, ensure security, and optimize user experience.
3. Data Sharing and Disclosure
We do not sell or rent your personal data. We may disclose your data to:
-
Service Providers: Third-party vendors engaged to support our operations, including secure payment processors, all bound by data protection agreements.
-
Financial Institutions: Banks and payment service providers for the purpose of processing payments.
-
Legal Authorities: Government bodies or regulators where disclosure is legally mandated.
-
Healthcare Entities: Authorized healthcare professionals, when required for treatment purposes.
4. Your Rights Under GDPR
You have the following rights regarding your personal data:
-
Access: Request access to your personal information.
-
Rectification: Correct inaccurate or incomplete data.
-
Erasure: Request deletion of your data, subject to legal exceptions.
-
Restriction: Limit the processing of your data in certain circumstances.
-
Portability: Receive your data in a structured, machine-readable format.
-
Objection: Object to processing based on legitimate interests or direct marketing.
5. Compliance with HIPAA
For U.S.-based clients, we adhere to HIPAA requirements to ensure the confidentiality, integrity, and availability of Protected Health Information (PHI), including:
-
Secure transmission and storage of PHI
-
Access controls to prevent unauthorized access
-
Procedures for addressing data breaches
6. International Data Transfers
Personal data transferred outside the EEA is safeguarded through mechanisms such as Standard Contractual Clauses approved by the European Commission.
7. Cookies and Tracking Technologies
We utilize cookies to enhance website functionality and analyze user interactions. You may manage your cookie preferences through your browser settings.
8. Data Security Measures
We employ robust technical and organizational measures to safeguard personal data against unauthorized access, disclosure, or destruction, including compliance with PCI DSS for payment information.
9. Retention Periods
We retain personal data only as long as necessary to fulfill the purposes outlined in this policy, or as required by applicable laws, including financial record-keeping regulations.
10. Amendments to the Privacy Policy
We reserve the right to modify this Privacy Policy. Updated versions will be published on our website, with the revised effective date indicated.
11. Contact Information
For any inquiries or to exercise your data protection rights, please contact us at:
The Dental Expert Hub
Calle Los Sauces 236. Chiloeches. Guadalajara.
thedentalexperthub@gmail.com
+34686367017
Supervisory Authority in Spain: Agencia Española de Protección de Datos (AEPD) – www.aepd.es