Read the Privacy Statement below or download via this link: PRIVACY STATEMENT
Contents
- Introduction Pam Goeverneur Privacy Statement
- Categories of Personal Data
- Basis and Purposes of Data Processing
- Storage Period
- Recipients of Personal Data
- Security
- Your Rights Regarding Your Personal Data a. Right of Access (Article 15 GDPR) b. Right to Rectification (Article 16 GDPR) c. Right to Data Portability (Article 20 GDPR) d. Right to Erasure (Article 17 GDPR) e. Right to Lodge a Complaint with the Data Protection Authority f. Right to Restrict Data Use, Right to Object (Article 21 GDPR)
- Obligations
1. Introduction Pam Goeverneur Privacy Statement
Within our company, we always refer to you in the informal manner, hence we do the same in our legal documents. This is the privacy statement of Pam Goeverneur. This privacy statement applies to all privacy-sensitive information or personal data you provide to us, for example when you send an email to us. We clearly explain how we store your data, how long it is kept, and the specific purpose of data processing. Additionally, we provide clear insight into how you can exercise your rights regarding data processing.
What exactly does Pam Goeverneur do? Pam Goeverneur is an orthomolecular therapist and hormone dietitian. Not only are the complaints addressed and your overall health improved, but step by step, the underlying cause of the complaints is also tackled.
Because we process personal data in various situations (or have it processed), we have chosen a comprehensive privacy statement. Often, there are situations where Pam Goeverneur needs to collect and process/use your personal data. It is important that you know what happens to your personal data and how you can communicate your wishes regarding the handling of personal data to us.
Pam Goeverneur takes your privacy very seriously and will use and process personal information in a secure manner. All articles in this privacy statement are in accordance with the applicable General Data Protection Regulation (GDPR) legislation. This European privacy legislation has been applicable in the Netherlands since May 25, 2018.
Do you have doubts or questions about data processing by Pam Goeverneur? Please feel free to contact us via the details below. Info@irisdegoede.nl | 06 22 48 91 44
2. Categories of Personal Data
To support our visitors and customers as best as possible, it is necessary for us to collect/process certain data, including personal data. Personal data is data that can be traced back to a natural person. The personal data we (generally) process are:
- First and last name;
- Address;
- Date of birth;
- Telephone number;
- (Personal) email address (note: under the GDPR, certain business email addresses may be considered personal email addresses. For example, the email address janssen@company.nl);
- Health data.
We only store and use the personal data that is directly provided by you or for which it is clear upon submission that it is intended for processing by Iris de Goede.
3. Basis and Purposes of Data Processing
Under the GDPR legislation, we are required to have a lawful basis for processing your personal data. Article 6(1)(a), (b), and (c) of the GDPR apply to our situation: the processing of your personal data is based on consent, because it is necessary for the performance of a contract between you and Pam Goeverneur, or because it is necessary to comply with legal obligations. Article 13(1)(c) of the GDPR then requires us to clearly indicate the purposes of the processing of personal data. Below is an overview of different processing purposes. There are several purposes for which Pam Goeverneur collects your data:
- Contacting If you have contacted Pam Goeverneur in any way, the data you provide will be stored and used for further contact.
- Newsletter To send a newsletter, at least your email address is processed. Possibly other data such as your name is processed.
- Accounting Pam Goeverneur is legally required to maintain proper accounting. For this, the data that is reasonably present on quotes or invoices is stored. Think of name and if necessary bank details.
- Invoicing For sending invoices, certain data is processed, including name and address details, invoice address, and BSN number.
- The Agreement When entering into an agreement, Pam Goeverneur needs certain data. Without this data, it is not possible to properly execute the agreement. Think of first and last name, health data, address data, and if necessary BSN number. The BSN number is required to submit claims to the health insurer.
- Cookies, placed via https://pamgoeverneur.com (Read our cookie statement for detailed information) To use the website and to ensure the website functions properly, certain data is stored. Think of IP address, location data, statistical data about surfing behavior and website visit (scrolling and clicking behavior). Note: Regarding cookies, we comply with both the GDPR and the Dutch Telecommunications Act (article 11.7A). This means that more detailed information about cookies is provided in a separate document: our cookie statement.
4. Storage Period
Above, we have indicated the processing purposes for which we use your personal data. According to Article 13(2)(a) of the GDPR, we must then indicate what the storage period of personal data is.
- Contacting If the contact does not lead to the provision of a service or work, the data you provide will be stored for a maximum period of two (2) years.
- Newsletter We store the data as long as there is no unsubscription from the newsletter. After unsubscription, the data will be deleted.
- Accounting To maintain proper accounting, we need to store personal data linked to financial purposes for a minimum period of seven (7) years, possibly increased by five (5) years for internal accounting.
- The Agreement All data related to an agreement will be stored for at least the period that the agreement is active. When the agreement is completed or terminated, the processed data will be stored for seven (7) years. After the end of the agreement, customer data will be stored for another three (3) years.
- Invoicing Data for this purpose will be stored for seven (7) years after the documentation is created. This unless a longer storage period is required due to legal obligations, limitation periods, and/or an expected legal dispute.
- Cookies, placed via https://pamgoeverneur.com (Read our cookie statement for detailed information) All information regarding cookies is extensively explained in our cookie statement.
5. Recipients of Personal Data
Pam Goeverneur shares personal data with third parties only when strictly necessary. In all cases, Pam Goeverneur, as the data controller, will comply with the GDPR legislation, specifically Article 28 et seq. GDPR. To guarantee the best service from Pam Goeverneur, we work with certain external parties. Think of parties that handle our financial affairs. Below we provide you with an overview of external parties that receive personal data from you.
- Accountant To maintain proper accounting, personal data may be provided by an accountant. These are strictly necessary data, which are also listed on invoices.
- Mollie Mollie is the payment service used when you order something via the webshop. Mollie only receives strictly necessary data required for the payment.
- Tax Authorities/Government Agencies To comply with our tax obligations and/or any other legal requirements, we share the necessary personal data with the Tax Authorities and other government agencies, if we are legally obliged to do so. The government may have separate rules, this responsibility lies with the other party.
Further, we will not disclose the data you provide to other parties unless legally required and permitted.
6. Security
Personal data is only accessible to authorized employees of Pam Goeverneur. These personal data are secured with a password. The devices on which your data is stored are locked with a password and/or fingerprint scan and/or facial recognition. These are of course the necessary devices, such as computers, laptops, and mobile phones.
For the website or digitally sent data, Pam Goeverneur uses firewalls, virus scanners, and periodic backups. Naturally, no data is included in the backup if the retention period has expired. Passwords for systems are changed periodically and emails are periodically cleaned up. Physical data is stored in a locked space. When physical data is destroyed, it is done with shredders and secured trash cans.
Your visit to the Pam Goeverneur website is also secured by “https” security. This means your connection to Pam Goeverneur is private. We also have an SSL certificate and a sitelock. This ensures that your personal data remains safe during your website visit.
7. Your Rights Regarding Your Personal Data
Below are the rights you can exercise regarding your personal data. We provide as detailed as possible how you can exercise the respective right. a. Right of Access (Article 15 GDPR) You always have the right to view the data processed and stored by Pam Goeverneur. To exercise this right, you can send an email with your request to: pam.goeverneur@gmail.com. b. Right to Rectification (Article 16 GDPR) If the data stored by Pam Goeverneur is incorrect, you have the right to have it rectified. Iris de Goede will then replace the current incorrect data with the correct data. c. Right to Data Portability (Article 20 GDPR) You have the right to have your