Privacy Policy

Import

The company responsible for processing your personal data is MATHIOUDAKI PANAGIOTA TOU GEORGIOU – “Laserskin Solutions Scientific Center for Aesthetics & Hair Removal” located at 18 Sivitanidou Street, Kallithea, ZIP Code 176 76, telephone: 211 11 30944, VAT number 132191100, E-mail: info@laserskin.gr

Laserskin Solutions offers aesthetic and therapeutic services using the most modern and specialized equipment, focusing on proper care and excellent service to its customers.

In the daily activities of the Center and our website, we process data concerning natural persons, including:

  • Customers
  • Visitors to our website
  • Other stakeholders (employees, suppliers)

Our Company complies with the General Data Protection Regulation (2016/679 EU GDPR) and any other European and national legislation concerning the protection of personal data, electronic communications, etc. and is committed to ensuring the protection of your Data at all times:

  • The data are collected for specific, explicit and legitimate purposes and are not further processed in a manner incompatible with those purposes.
  • We collect the necessary personal data for each processing purpose and process it lawfully, fairly and in a transparent manner in relation to the data subjects.
  • We ensure that they are, as far as possible, accurate and up-to-date and we only retain them for the period of time necessary for the purposes for which they are processed.
  • In any case, the criterion we use to determine the storage period is based on and takes due account of the need to comply with any relevant legal requirements as well as the principle of data minimization.
  • We process Data electronically and manually and take all appropriate measures to protect personal data, including protection against unauthorized or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organizational measures.

Collection, purpose, legal basis for processing and retention period of your data

  1. Data we collect automatically through our website

The website www.laserskin.gr uses the SSL (Secure Sockets Layer) protocol which uses methods to encrypt data exchanged between two devices (most commonly Computers), establishing a secure connection between them via the internet, which results in the protection of your personal data.

When you visit our website, our server collects so-called server log files, specifically:

  • Date and time of entry to the website.
  • The volume of data sent in bytes.
  • The browser and operating system you used to access the website.
  • Internet Protocol (IP) address, when you log in to the website. The IP address is personal data along with the date and time of your visit, although we cannot identify you with this data alone.

The legal basis for which we collect your IP address and store it in special files (log files) is our legitimate interest in processing this data in order to ensure the security of networks, information and services against accidental events or illegal or malicious actions that compromise the availability, authenticity, integrity and confidentiality of stored or transmitted data (e.g. attack control), as well as our legal obligation to provide a more secure environment for the processing of your personal data (GDPR Article 6(1)(f) and (c). The data will not be transferred or used in any other way. However, we reserve the right to check the server logs if specific indications of unauthorized use are identified.

  1. Customer Data

When you visit our business, we collect your personal data, such as name, date of birth, address, contact information, as well as any simple and "special" data (health data) contained in the forms you fill out and related to our offered aesthetic and therapeutic services.

The purpose of processing your data is to provide you with the requested services and the legal basis for the processing is the execution of the contract between us (Article 6, paragraph 1b' and 9, paragraph 2h' GDPR). The retention period of your data is five years after the last treatment. Regarding your financial transactions with the business, we retain them for as long as required by tax and any other relevant legislation.

  1. Data we collect via email and contact form

In the context of communication between us via email and contact form, we collect your name, email address and any other information you provide to us. This data is stored and used exclusively to respond to your request. The legal basis for the processing of your personal data is your consent (GDPR, Article 6 para. 1a). Your data will be deleted after the final processing of our communication. This will happen after the purpose and scope of our communication has been completed, provided that there are no legal requirements to store such data.

  1. Supplier data

For the execution of the contract between us, we collect the data of our suppliers such as name, address, contact details, shipping details, financial data, which you provide to us yourself. The legal basis for the processing of your data is the execution of the contract and our compliance with legal obligations (GDPR article 6 par. 1b and c), and we retain it for as long as required by tax and any other relevant legislation.

  1. Facebook page, Instagram account and YouTube channel

Our Company maintains Pages on social networking platforms (“Facebook”, “Instagram”, “YouTube”). You can contact us through our page in order to receive more information about our services through the option to send a message. In order to answer your relevant questions, we collect and process your username on Social Media as well as other information that is publicly available through your profile. The very sending of a message for the purpose of communicating with us implies your consent to the above processing of your data.

In case you choose to "connect" to our page (by clicking "add"), this implies that you give your consent to see the news and promotions (via newsfeed) carried out by the Company through its page on Social Media. If you do not wish to receive such updates, you can at any time click on the "Delete" "Unfollow" option, etc.

We take all security measures (technical and organizational) for the security of data processing through Facebook and other Social Media, such as limiting the number of people who have access to manage our Social Media account. Our Company bears no responsibility for the way or means by which social media platforms process your data. You can find out about the processing of your data by social media platforms through the corresponding links. Facebook, Instagram, YouTube.

Who has access to your data. Data transfers.

Your data is accessible by our employees as well as by any other person authorized to process your data in the course of their duties. In addition, we collaborate with third parties, natural or legal persons, professionals, independent consultants, etc. who provide us with commercial, professional or technical services (e.g. website hosting, accounting services) for the purposes mentioned above, and support our Company in whole or in part, in relation to our activities. Where applicable, these natural/legal persons will act as Joint or Independent Processors, Processors or persons authorized to process personal data for the same purposes mentioned above, with the same security measures and in accordance with applicable legal obligations.

Before the third party receives Personal Data, we must: (1) complete a privacy audit to assess the privacy practices and risks associated with such third parties; (2) obtain contractual assurances from such third parties that they will process Personal Data in accordance with our instructions and in accordance with this Policy and applicable law, that they will promptly notify our business of any Privacy or Security incidents, failure to comply with the standards set out in this Policy and applicable law, that they will cooperate in remediating any such incident, that they will assist us in fulfilling the rights of individuals set out below, and that they will allow the Controller to monitor their processing for compliance with these requirements.

Finally, the data may be further transmitted to public authorities and institutions, as well as to our legal supporters (lawyers and insurance companies), for legitimate purposes.

Apart from the above, the Data will not be disclosed to third parties, individuals or legal entities and will not be disseminated.

Our Company does not transfer Personal Data outside the EU, and if necessary (for example, in order to use Cloud services) this will be done under the terms and conditions provided for in articles 44 et seq. of the GDPR, such as with your consent, the application of standard contractual clauses approved by the European Commission or to countries considered safe by the European Commission.

Minors' data

When we need to process data of minors, i.e., according to the GDPR, those who have not reached the age of 15, the processing is carried out only with the written and expressly expressed consent of the persons who have parental responsibility for the minor. In any case, we make reasonable efforts to verify that the consent is provided or approved by the person who actually has parental responsibility for the child, i.e. by checking identity and any other available information.

Cookies and related technologies

Like most websites, we use cookies and similar technologies when you access and browse our Website, in order to make it as comfortable and efficient as possible.

Cookies are small text files that are stored on the hard drive of the computer or other electronic device with which the user accesses the website. Cookies are unique to each web browser (e.g. Google Chrome, Mozilla Firefox, Internet Explorer, Opera, etc.) and contain anonymized information about the websites you visit and the devices you use.

Types of cookies we use:

a) Functionality cookies (necessary)

These cookies are responsible for basic functions of our website and application. They are necessary for you to be able to navigate our website and access its various sections. The provision of the basic online services of the website is not possible without these cookies.

b) Cookies statistical analysis and performance

These cookies collect information about how you use our website, such as the website from which you came, the pages you visit most often, the browser you use, etc. We use them to analyze traffic and improve the performance of our website. They collect aggregated, anonymous statistical information that cannot lead to the identification of the visitor.

About Google service Analytics

We use Google Analytics to track traffic and improve our website. Google Analytics uses cookies to store certain information, such as the duration of the visit to the website, the browser used, the location from which the visit originated and the frequency of visits. In order to access this data, we allow Google Analytics to place cookies on the hard drive of the visitor's computer or any electronic device. The Google Analytics service belongs to the company Google Inc.More information about Google's data processing policy can be found here. here, and for the use of cookies within the framework of the Analytics service, hereTechnical information about Google Analytics cookies is available. here.

You have the option to completely block the collection of your data through Google Analytics by installing the add-on in your browser: https://tools.google.com/dlpage/gaoptout

c) Cookies third parties.

We also use various external services such as Google Maps. Since these providers can collect personal data such as your IP address, you can block them. Please note that this may significantly reduce the functionality and appearance of our website. The changes will take effect as soon as you reload the page.

Managing cookies

You can decide individually or collectively to accept cookies when you visit our website. You can also set your browser in such a way that you are informed about the setting of cookies and decide whether to accept or block them. Each browser differs in the way it manages cookie settings. This is described in the help menu of each browser, which explains how you can change your cookie settings. Follow the links below depending on the browser you are using:

Internet Explorer
Firefox
Chrome
Safari
Opera

Please note that you must adjust the settings individually for each browser and device you use. We also inform you that any restriction of cookies will prevent you from fully using some of our services and will not allow us to improve and personalize your navigation on our website.

You can find more information about cookies on the websites www.allaboutcookies.org and www.youronlinechoices.eu.

Alternatives, you can disable the use of cookies by third parties through the relevant service of Network Advertising Initiative.

Rights of Subjects

You can contact us by phone, mail or email at the addresses mentioned in the introduction above, to exercise your rights under Articles 15 et seq. of the GDPR, namely the rights of information, access, rectification, erasure (where applicable), restriction of processing or objection to processing. You can, for example, request an updated list of the persons who have access to your data, obtain confirmation as to whether or not we process personal data relating to you, check their content, source, accuracy and location (also in relation to any third country), request a copy, request their correction and restriction of processing, even their deletion, if applicable. Similarly, you can always report comments and file complaints with the Hellenic Data Protection Authority, Ave. Kifissias 1-3, GR 115 23, Athens, Call Center: + 30-210 6475600 or at http://www.dpa.gr/