Privacy Policy
Pursuant to art. 13 of Regulation (EU) 2016/679, we inform you that the personal data you provide by browsing our website (hereinafter “Site”) will be treated as described below. The data controller of this site indicated in point one undertakes to respect and protect your confidentiality by processing the personal data you provide in compliance with the provisions of the law aimed at guaranteeing security, accuracy, updating and the relevance of the data with respect to the declared purposes.In accordance with Article 13 of European Regulation 2016/679, we would like to inform you that the personal data provided by you, through browsing on the NYUMA PHARMA S.r.l. website (hereinafter referred to as “Website”), will be processed as described below. NYUMA PHARMA S.r.l. undertakes to respect and protect your privacy by processing the personal data provided by you in compliance with law provisions aimed at ensuring the data security, accuracy, updating, and relevance to the stated purposes.
1. Data Controller
The Data Controller is NYUPHARMA S.r.l. with registered office in via San Carlo 56 – 28041 Arona (NO), tel. 0322.600623, e-mail: nyumapharma@pec.it
2. Scope, purpose, processed data, Lawful basis, and data retention period of individual treatments
DATA PROCESSING FOR THE WEBSITE OPERATION
a) Processing scope and purpose
During their ordinary activity, the computer systems and software procedures designed to run the Website collect some personal data. The transmission of these personal data is implied in the internet communication protocols use. This type of information could allow users identification through processing and association with data held by third parties.
b) Processed data
Processed data includes IP addresses or domain names of computers used by users visiting the Website, requested resources URI (Uniform Resource Identifier) addresses, request time, the method used to submit the request to the server, size of the file obtained in response, numerical code indicating the status of the response given by the server (successful, error, etc.) and other parameters related to user’s operating system and IT environment.
c) Lawful basis
Data processing is based on consent. By visiting the Website, users express their consent to the personal data processing as described in this policy. Browsing data communication is required to visit the Website and the lack of communication may prevent Website operation.
d) Data retention period
Some data are stored for the browsing session time. Other data will be stored for a longer period depending on your browser settings and your operations carried out on the Website. For further information, please visit our cookie policy page.
DATA PROCESSING WITH FACEBOOK PIXEL
a) Processing scope and purpose
“Facebook Pixel” allows to track the actions of users redirected to the Website after clicking on an advertisement on Facebook.
Your browser automatically establishes a direct connection with the Facebook server, in so far as it allows to use cookies requiring the concerned person’s consent. “Facebook Pixel” technology implementation allows to track Website visitors, visitors who add products to their shopping cart, and visitors who place orders.
The Website uses Facebook social network technology named “Facebook Pixel” for the following purposes:
– Marketing: the data will be used to send commercial communications with automated contact methods (e.g. text messages, e-mails, via app push notifications and instant messaging) and traditional methods (e.g. telephone calls with an operator and traditional mail);
– Profiling: in order to send personalized commercial communications, the data will be used to create a customer profile based on preferences, habits, interests, behaviours, purchased products, market research responses. Based on purchases and on Website pages visited, the data helps us to understand your shopping habits in order to perform analysis or customize as per your interests our promotional campaigns.
In addition, Facebook receives information about Website browsing, or specific Website pages browsing, and social network ads clicked by you. If you are registered with a Facebook service, Facebook can link the visit to our Website to your account. The processing of this data by Facebook is carried out within Facebook’s data policy terms. For further information and details on the “Facebook Pixel” technology and its functionalities please refer to https://www.facebook.com/about/privacywebsite.
“Facebook Pixel” function can be deactivated in cookie section settings and, for registered users, it can be deactivated on Facebook at https://www.facebook.com/settings/? tab=ads#.
b) Processed data
Contact details, identity details, location, and device data, purchase preferences data, social media data.
c) Lawful basis
Data processing is based on consent. Personal data communication provided voluntarily by users is optional. Failure to communicate such data may prevent from obtaining personalized offers.
d) Data retention period
The data are stored for a maximum of 12 months (for collected cookies set by the Website).
DATA PROCESSING FOR PRODUCT SALES
a) Processing scope and purpose
You can purchase our products on the Website. The data processing is necessary to follow up online orders, to provide different payment options, for product billing and delivery.
b) Lawful basis
Data processing is necessary for the execution of the agreement. Failure to communicate of such data will prevent the agreement conclusion.
c) Processed data
Contact data, identity data, location data.
d) Data retention period
Personal data relating to completed orders are retained by the Data Controller for 10 years.
Data relating to the managed orders will be automatically anonymized by our Website after three days.
Registered on Website account users that, for whatever reason, do not log in and/or place an order for a continuous period of three months, will be automatically deleted, and any orders previously placed will be converted into anonymous orders.
Pending, incorrect or cancelled and/or for any reason unfinished orders are automatically deleted from our Website after three days.
VOLUNTARILY PROVIDED DATA BY THE USER
a) Processing scope and purpose
The optional, explicit and voluntary e-mail messages sending to the addresses indicated on the Website involves the subsequent collection of the sender’s address and any other personal data included in the same request. Such data collection is necessary to respond to requests. The optional, explicit and voluntary registration through Website dedicated forms involves the subsequent collection of all the data contained in the fields filled out by the user.
Data processing is aimed at following up on the requests received.
b) Lawful basis
Data processing is based on consent. Communication of personal data provided voluntarily by users is optional; failure to communicate such data may make it impossible to obtain the service requested.
c) Processed data
Contact data, identity data.
d) Retention period
Data will be stored for the time necessary to fulfil the request.
DATA PROCESSING FOR THE REGISTRATION OF ITALIAN CENTRES, DOCTORS AND PLASTIC SURGEONS ON THE HYAMIRA.IT WEBSITE (PERSONAL CARD ACTIVATION)
a) Processing scope and purpose
Personal data requested through the dedicated form (such as name, surname, company name, VAT number, tax code, website address, Medical Association registration, tax office address, city, e-mail address, telephone numbers, logo, personal photo, medical office addresses, brief personal description, and social profiles links) will be posted in a special section of the website www.hyamira.it (Search Doctor), by which Website users can directly contact the centers, doctors and Italian plastic surgeons.
b) Lawful basis
Processing data is based on consent. Communication of personal data provided voluntarily by users is optional; failure to communicate may make it impossible to obtain the service requested.
c) Processed Data
Contact data, identity data.
d) Data retention period
Data will be stored for the time necessary to fulfil the request.
NEWSLETTER SUBSCRIPTION PROCESSING DATA
a) Processing scope and purpose
To receive our newsletter for commercial and promotional purposes, it is necessary to process your e-mail address. At any time, registered users can unsubscribe from the service by simply clicking the link in each e-mail received. However, each message sent at the user’s request always contains all the instructions for service subscription cancelling. Mailchimp is a management service used by us to send email messages, provided by Mailchimp Inc., USA – full privacy policy adopted by the service at this link https://mailchimp.com/Lawful/privacy/
b) Lawful basis
Data processing is based on consent. Communication of personal data provided voluntarily by users is optional; failure to communicate such data may make it impossible to obtain the service requested.
c) Processed Data
Email address.
d) Data retention period
Data will be stored until the concerned person decides to unsubscribe from the newsletter.
SOCIAL NETWORKS INTERACTION AND EXTERNAL PLATFORMS
a) Processing scope and purpose
It is possible to interact with us through social networks pages or other external platforms, directly from the pages of the Website. Interactions and collected information are always subject to the user privacy settings relating to each social network. External social networks or platforms may collect traffic data relating to pages in which the user is registered even if users do not use the service.
For further details, please check below the links to social networks and other external platforms privacy policies:
1. Facebook – processing place: USA – full privacy policy adopted by the service at this link https://www.facebook.com/privacy/explanation
2. Youtube – processing place: USA – full privacy policy adopted by the service at this link https://policies.google.com/privacy?hl=it
3. Virtual Tour (Google Maps) – processing place: USA – full privacy policy adopted by the service at this link https://policies.google.com/privacy?hl=it
4. Instagram: – processing place: USA – full privacy policy adopted by the service at this link https://help.instagram.com/
5. Linkedin: processing place: USA – full privacy policy adopted by the service at this link https://www.linkedin.com/Lawful/privacy-policy?trk=hb_ft_priv 1896641480634370?ref=ig
Notwithstanding the foregoing regarding “Facebook Pixel”, in the event you interact with us through social network pages, the processing is governed by the following terms.
b) Lawful basis
Data processing is based on consent. Communication of personal data provided voluntarily by users is optional; failure to communicate such data may make it impossible to obtain the service requested.
c) Data Processed
User-provided data.
d) Data retention period
Data will be stored for the time as set forth by social network.
3. Personal data recipients
Personal data may be disclosed to subjects internal or external to the Data Controller, such as consultants, professionals, and service providers. Disclosed data will be used solely for the purposes described above.
Personal data may be disclosed by the Data Controller to other entities where it is required by law.
4. Concerned person rights
Data subjects have the right to request at any time to the Data Controller to access personal data; the right to request correction, cancellation or limitation of data processing; the right to object the data processing; the right to data portability.
NAVIGATION DATA – GOOGLE ANALYTICS
The services contained in this section allow the Data Controller of this site to monitor and analyze traffic data anonymously and are used to keep track of User behavior. Google Analytics is a web analytics service provided by Google Ireland Limited. Place of processing: EU – complete privacy policy adopted by the service at this link https://policies.google.com/terms?hl=it
Privacy Police Valid from 13/11/2021