Call +48739102575

PRIVACY POLICY

The controller of personal data is:

Entity name: AMC MEDICAL SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ

Address: 42 Młynarska St., 01-171 Warsaw

Contact information (phone number, email address): Tel.: +48 22 100 42 92, Email: info@amcmedical.pl

The data is processed in connection with the protection of patients’ health, the provision of preventive healthcare, medical diagnosis and treatment, the improvement of medical care standards, the enhancement of the quality of healthcare system and service management, and the maintenance of safety at the facility, as well as to inform you about the services offered by the Controller. Providing personal data is a statutory obligation and is necessary for the fulfillment of the aforementioned purposes. If personal data is not provided, it will not be possible to provide healthcare services.

Personal data will be processed for the period specified by the laws governing the handling of medical records, i.e., the Act of November 6, 2008, on Patient Rights and the Patient Rights Ombudsman (Journal of Laws 2017.1318, as of July 4, 2017), as appropriate to the circumstances.

The legal grounds for the processing of personal data are Article 6(1)(b), (c), and (f) of the GDPR in conjunction with Article 24(1) of the Act on the Rights of Patients and the Patient Rights Ombudsman, in conjunction with Article 9(2)( H of the GDPR, i.e., based on a legal obligation incumbent on the Controller and its legitimate legal interest, as well as being necessary for the purposes of preventive healthcare. To the extent that the processing of personal data

The legal grounds for the processing of personal data are Article 6(1)(b), (c), and (f) of the GDPR, in conjunction with Article 24(1) of the Act on Patient Rights and the Patient Rights Ombudsman, in conjunction with Article 9(2)( H of the GDPR, i.e., based on a legal obligation incumbent upon the Controller and its legitimate interest, as well as being necessary for the purposes of preventive healthcare. To the extent that the processing of personal data will be based on consent in accordance with Article 6(1)(a) of the GDPR and Article 9(2)(a), the Controller will request your consent in this regard. Legitimate interest should be understood as ensuring the proper organization and scheduling of visits by maintaining a registration schedule.

The recipients of your data may include entities authorized to receive it under generally applicable laws, companies supporting the Controller’s day-to-day operations (e.g., accounting and legal services, software providers, etc.), and any persons you have authorized to obtain information from your medical records.

In connection with the Controller’s processing of your personal data, you have the following rights: the right to access your personal data, the right to rectify your personal data, the right to data portability, the right to erasure or restriction of processing, the right to lodge a complaint with the President of the Personal Data Protection Office, and the right to withdraw your consent to data processing if it was the basis for such processing

In connection with the processing of your personal data by the Controller, you have the following rights: the right to access your personal data, the right to rectify your personal data, the right to data portability, the right to erasure or restriction of processing, the right to lodge a complaint with the President of the Personal Data Protection Office, and the right to withdraw your consent to data processing if it was the basis for such processing.

The exercise of the rights listed above, e.g., regarding the right to be forgotten referred to in Section 8(4), may be limited due to the Controller’s legal obligations or in connection with the Controller’s legitimate interests, e.g., due to the obligation to retain medical records for the periods specified in Section 7.

Data is not transferred to countries outside the European Economic Area and is not subject to automated decision-making.