+36 (83) 313 030 lorinczritadr@gmail.com

Privacy Notice

Dens et Sanitas Health Limited Liability Company registered office: 8360 Keszthely, Erzsébet királyné útja 14. Cg .: 20-09-077833 Tax number: 27441118-1-20

DATA MANAGEMENT POLICY

Act CXII of 2011 on the right to information self-determination and freedom of information. Act No. - hereinafter: Infotv. - and pursuant to Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR) PREAMBLE We represent our Dear Customers on behalf of Dent et Sanitas Kft. the visitors of our community site - hereinafter collectively: the data subject (s) - that we respect the personal rights of the data subjects, therefore we act in accordance with the data management policy below in the course of our data processing. We reserve the right to change our regulations due to the harmonization of the legal background and other internal regulations to be amended in the meantime. An electronic version of our regulations is available on the drlorinczrita.hu website, as well as on paper at our Company's branch - 8360 Keszthely, Queen Elizabeth Road 14. Based on the above, our Company, as the Data Controller, recognizes the provisions of the Regulations as binding on it and acts in accordance with them. I. Interpretative provisions of the Infotv. Affected by § 3: a natural person identified or identifiable on the basis of any information; identifiable natural person: a natural person who, directly or indirectly, in particular by means of an identifier, such as a name, an identification number, a location data, an online identifier, or the physical, physiological, genetic, intellectual, economic, cultural or social identity of a natural person identifiable by one or more relevant factors; personal data: data which can be contacted with the data subject, in particular the name, identification mark and knowledge of one or more physical, physiological, mental, economic, cultural or social identities of the data subject, and the inference that can be drawn from the data. health data: personal data concerning the physical or mental health of a natural person, including data relating to health services provided to a natural person which provide information on the health of a natural person biometric data: data relating to the physical, physiological or behavioral characteristics of a natural person , personal data obtained by specific technical procedures enabling or confirming the unique identification of a natural person, such as the consent of a facial image or dactyloscopic data: a voluntary, unambiguous statement of the will of the data subject indicates by other means that he or she consents to the processing of personal data concerning him or her; protest: a statement by the data subject objecting to the processing of his or her personal data and requesting the termination of the processing or the deletion of the processed data; "controller" means the natural or legal person, or any entity without legal personality, who alone or jointly with others determines the purposes for which the data are processed, makes decisions on the processing (including the means used) or executes them with a data controller. " data management: any operation or set of operations on data, regardless of the procedure used, in particular the collection, recording, recording, systematisation, storage, alteration, use, interrogation, disclosure, coordination or aggregation, blocking, erasure and destruction of data, and prevent the further use of the data, take photographs, sound or images and record physical features that can be used to identify the person (eg fingerprint or palm print, DNA sample, iris image); data transfer: making the data available to a specific third party; third party: a natural or legal person or an entity without legal personality who is not the same as the data subject, the controller or the processor, or the persons who carry out the processing of personal data under the direct control of the controller or processor ; data protection incident: a breach of data security which results in the accidental or unlawful destruction, loss, alteration, unauthorized transmission or disclosure of, or unauthorized access to, personal data transmitted, stored or otherwise handled; II. Purpose and scope of the regulations II / 1. Purpose of the Data Management Policy The purpose of this Policy is that Dent et Sanitas Kft. II / 2. Scope of the policy The scope of this policy covers the Company's employees and the flow of information between employees, as well as all data handling and data processing that relates to personal data, ie all personal data handled by the Company. III. Principles of data processing Personal data may only be processed for a clearly defined, legitimate purpose, in order to exercise a right and fulfill an obligation. At all stages of data processing, the purpose of data processing must be appropriate, and the collection and handling of data must be fair and lawful. Only personal data that is essential for the purpose of data processing and suitable for that purpose may be processed. Personal data may only be processed to the extent and for the time necessary to achieve the purpose. Personal data retains this quality during data processing as long as its connection with the data subject can be restored. The connection with the data subject can be restored if the data controller has the technical conditions necessary for the recovery. The processing shall ensure the accuracy, completeness and, where necessary for the purposes of the processing, the accuracy of the data and that the data subject can only be identified for the time necessary for the processing. Adequate security of personal data shall be ensured through the application of appropriate technical or organizational measures to protect personal data, in particular against unauthorized or unlawful processing, accidental loss, destruction or damage. ARC. Legal basis and general conditions of data processing Personal data may be processed if a) it is absolutely necessary for the performance of the data controller's tasks specified by law and the data subject has expressly consented to the processing of personal data; b) it is ordered by law or, in the case of data which does not qualify as special data or criminal personal data within the scope specified therein by law, by a decree of a local government for a purpose based on the public interest; (c) necessary and proportionate to protect the vital interests of the data subject or of another person and to prevent or avert an imminent threat to the life, limb or property of the data subject; or and proportional to it; Our company processes data in accordance with Article 6 (1) GDPR. (a) and (b), ie where the data subject has consented to the processing of his or her personal data for one or more specific purposes and the processing is necessary for the performance of a contract to which the data subject is a party or necessary to take action at the request of the data subject. In addition to the data of the data subject's natural identity, based on the principles of data protection and purposefulness, we only include data that is strictly necessary for the fulfillment of the contract and the customer's debt claims or business risk assessment. Before obtaining the statement of consent, the data subject shall be duly informed that he or she will not be disadvantaged in any way by refusing to consent. If the data subject does not wish to provide the minimum information required for the contract during the conclusion of the contract, our Company may refuse to enter into the contract. Our Company makes copies of the documents presented by our Clients only with the consent of the Clients, ie the parties concerned, and does not refuse to enter into a contract if consent is refused. Our Company uses the data provided by our customers during the conclusion of the contract exclusively for the exercise of the rights and fulfillment of the obligations arising from the contract. V. Rights of data subjects 1. The data subject shall have the right to be informed of the personal data processed by the data controller and the data processor acting on his or her behalf or on his or her behalf a.) Prior to the commencement of data processing; b.) upon request, the data controller shall provide the data subject with personal data and information related to their processing; c.) at the request of the data controller to correct or supplement his / her personal data - the right to rectify; d.) upon request, the processing of personal data is restricted by the data controller - the right to restrict data processing; e.) at the request of the data controller to delete personal data - the right to delete; f.) authority may initiate proceedings - the right to an official remedy; g.) to initiate court proceedings - the right to a judicial remedy; In order to facilitate the exercise of the data subject's rights, the controller shall take appropriate technical and organizational measures to ensure that any notice and information provided to the data subject is in an easily accessible and legible form, with concise, clear and comprehensible content. an application for the exercise of rights shall be examined as soon as possible after its submission, but not later than within 25 days, and the data subject shall be notified of its decision in writing or, if the data subject has submitted the application electronically, by electronic means. The Data Controller performs the above activities free of charge. In order to exercise the right to prior information, our Company shall make available to the data subject prior to the commencement of the data processing operations, but no later than immediately after the commencement of the first data processing operation a.) The name and contact details of the data controller; b.) the purpose of the planned data processing; c.) the rights of the data subject and the manner of enforcing them; We provide information to the data subjects a.) On the legal basis of the data processing b.) On the period of retention of the processed personal data c.) On the scope of the data transfer or, in the case of a planned transfer, on the recipients of the data transfer; d.) about the source of the collection of the processed personal data e.) and about all other material facts related to the circumstances of the data processing we supplement. The Company handles the personal data of the Clients as a data controller, and does not use a data processor - who processes personal data on behalf of the data controller. The data subject has the right to withdraw his or her data processing consent free of charge at any time. The withdrawal shall not affect the lawfulness of the data processing carried out before the withdrawal of the consent. Our customers can also initiate the cancellation by post or electronically at the e-mail address lorinczritadr@gmail.hu. Interested parties have the right to submit a complaint to the supervisory authority (National Data Protection and Freedom of Information Authority, http://naih.hu, telephone number: +36 (1) 391-1400, postal address: 1530 Budapest, Pf .: 5., e-mail: ugyfelszolgalat@naih.hu). A foreign national may also lodge a complaint with the supervisory authority of his or her place of residence. If your rights are violated, you can go to the relevant court. The court is acting out of turn in the case. Data protection lawsuits fall within the jurisdiction of the tribunal, which may also choose to sue in the court of the place of residence or stay. Please contact our Company before contacting the supervisory authority or the court in order to find a solution and resolve the problem as soon as possible. The recipients of the personal data of the data subject are a) the employees of the Company performing customer service tasks, b) the employees of the Company performing financial, accounting and tax tasks, and c) the data processors of the Company. The period of storage of personal data is 5 years after the termination of the contract on which this data management information is based. The personal data of the data subject will be handed over to a) an accounting firm appointed by the company for accounting and tax purposes due to data processing: Andrea Somogyi 8315-Gyenesdiás, Fazekas u.7. , Tax number: 55765929-1-40 b) for the purpose of postage and delivery to the Hungarian Post VI. Data controller register As a data controller, our company keeps a register of the data management operations related to the personal data it manages, in which it records: - the name and contact details of the data controller; - the purpose of the data processing; - the range of recipients of the data transfer; - the range of data subjects and data processed; - the fact that profiling is used; - in the case of international data transfers, the scope of the data transmitted; - the legal basis for data processing operations; - the date on which the personal data processed were deleted; - a general description of the technical and organizational security measures; - the circumstances in which data protection incidents occur, their effects and the measures taken to deal with them; - the legal and factual reasons for the measure restricting or refusing to exercise the data subject's right of access; VII. Management of data protection incidents In connection with the data protection incident related to the data processed, our company records the nature of the incident, including the scope and approximate number of data subjects, as well as the scope and approximate amount of data affected by the incident. We describe the probable consequences of a data protection incident and the measures taken or planned to deal with the data protection incident. The data protection incident shall be reported to the competent authority without delay, but no later than 72 hours after becoming aware of it. A data protection incident need not be reported if it is likely that it will not jeopardize the rights of data subjects. In order to facilitate the fulfillment of the legal regulations concerning the processing of personal data and the enforcement of the rights of the data subjects, our company has appointed a data protection officer in accordance with Infotv. 25 / L. § (1) does not apply. VIII. Our data management related to our website on the website of our Company, drlorinczrita.hu, provides an opportunity for the visitors of the website, as potential Customers, to send us a Request in connection with the services provided by our Company. By accessing our personal data through our website, you voluntarily provide us with information, which is why we gradually take care of the authenticity, correctness and accuracy of your data, because you are responsible for them. Incorrect, inaccurate or incomplete data may prevent us from using our services. If you provide personal information other than your own, we will assume that you have the necessary authority to do so. You can withdraw your consent to data processing at any time, free of charge, by sending a simple request to our Company's e-mail address - lorinczritadr@gmail.com. For technical reasons, we undertake to register the withdrawal of consent for a period of 2 days, however, we draw your attention to the fact that we may process certain data after the withdrawal of consent in order to fulfill our legal obligation or enforce our legitimate interests. In the event of the use of misleading personal data, or if one of our visitors commits a criminal offense or attacks our Company's system, we will immediately delete or, if necessary, retain their data for the duration of the civil liability or criminal proceedings. IX. Other We use a device that allows us to record images inside the building located at the headquarters of our Company for security reasons. Our surveillance system a) does not monitor public areas, b) does not monitor its employees or their activities, c) does not aim to influence the behavior of employees at work. We always inform our new and old Employees and visitors about the monitoring system. In order to inform the clients and visitors, we have placed a leaflet at our headquarters, on which we warn them that by entering they will consent to their inclusion in the recordings. Our Company has a separate Regulation on access to recordings, licenses, cancellation of recordings, and supervision of recordings. X. Obligation of confidentiality The employees of our company undertake to keep the personal data that came to their knowledge in the course of their duties without any time limit. Employees undertake not to use the data concerned solely in the performance of their duties or to disclose it to third parties. These Regulations shall enter into force on 4 October 2022. Dated: Keszthely, 10/04/2022 Dent et Sanitas Kft. Dens et Sanitas Limited Liability Company registered office: 8360 Keszthely, Erzsébet királyné útja 14. Cg.:20-09-077833 Tax number: 27441118-1-20

DATA MANAGEMENT POLICY
 
CXII on the right to information self-determination and freedom of information. Act No. - hereinafter: Infotv. - and in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR - General Data Protection Regulation) PREAMBLE REGARDING THE ELECTRONIC MONITORING SYSTEM On behalf of Dent et Sanitas Kft. and the visitors of our community site - hereinafter collectively: the data subject (s) - that we respect the personal rights of the data subjects, therefore during our data processing, taking into account the fact and we act. We reserve the right to change our regulations due to the harmonization of the legal background and other internal regulations to be amended in the meantime. The electronic version of our regulations is available on the drlorinczrita.hu website, as well as on paper at the registered office of our company - Keszthely, at 14 Erzsébet királyné útja. Based on the above, our Company, as the Data Controller, recognizes the provisions of the Regulations as binding on it and acts in accordance with them. Interpretative provisions of the Infotv. Affected by § 3: a natural person identified or identifiable on the basis of any information; identifiable natural person: a natural person who, directly or indirectly, in particular by means of an identifier, such as a name, an identification number, a location data, an online identifier, or the physical, physiological, genetic, intellectual, economic, cultural or social identity of a natural person identifiable by one or more relevant factors; personal data: data which can be contacted with the data subject, in particular the name, identification mark and knowledge of one or more physical, physiological, mental, economic, cultural or social identities of the data subject, and the inference that can be drawn from the data. consent: a clear, voluntary and informed statement of the will of the data subject, by which he or she indicates his or her consent to the processing of personal data concerning him or her by means of a statement or other unambiguous expression of his or her will; protest: a statement by the data subject objecting to the processing of his or her personal data and requesting the termination of the processing or the deletion of the processed data; "controller" means the natural or legal person, or any entity without legal personality, who alone or jointly with others determines the purposes for which the data are processed, makes decisions on the processing (including the means used) or executes them with a data controller. " data management: any operation or set of operations on data, regardless of the procedure used, in particular the collection, recording, recording, systematisation, storage, alteration, use, interrogation, disclosure, coordination or aggregation, blocking, erasure and destruction of data, and prevent the further use of the data, take photographs, sound or images and record physical features that can be used to identify the person (eg fingerprint or palm print, DNA sample, iris image); data transfer: making the data available to a specific third party; third party: a natural or legal person or an entity without legal personality who is not the same as the data subject, the controller or the processor, or the persons who carry out the processing of personal data under the direct control of the controller or processor ; data protection incident: a breach of data security which results in the accidental or unlawful destruction, loss, alteration, unauthorized transmission or disclosure of, or unauthorized access to, personal data transmitted, stored or otherwise handled; Purpose and scope of the regulations II / 1. Purpose of the Data Management Regulations The purpose of these regulations is to ensure that the data processing of Dens et Sanitas Kft. Using an electronic monitoring system at the Data Controller respects the privacy of natural persons, respect. II / 2. Scope of the regulations The scope of these regulations extends to the Company's employees, customers and visitors. Data management using an electronic surveillance system We inform our existing and new Clients, Visitors, Employees that our Company is located at the headquarters of Erzsébet királyné út 14 in Keszthely, Keszthely. . Our monitoring system: it does not monitor public areas, it does not monitor its employees, visitors or their activities, it does not aim to influence the behavior of employees at work. We inform our new and old Employees and visitors about the application of the monitoring system in all cases. In order to inform the customers and visitors, we have placed an attention-grabbing information (sign) at our site in a clearly visible place with regard to the areas equipped with a monitoring system, on the basis of which we warn our customers, visitors and employees that they consent to being included in the recordings. When applying the surveillance system, our company respects human dignity and does not use hidden cameras. In the recording of an electronic device, the data subject's conduct shall be considered personal data. When using an electronic monitoring system, the legal basis for data management is the legitimate interest of the employer with regard to our employees and the consent of the data subject with regard to visitors and customers. The basis of the personal data management of the Company is their voluntary consent in the case of our Visitors, therefore we draw the attention of our Dear Customers and Visitors to the fact that if they enter the area monitored by the camera with this information, we consider their consent to be recorded. If you do not wish to consent to the processing of your personal data, please do not enter the area monitored by the camera! The tool we use also records activity. Location and duration of the storage of the recording, data security measures related to the storage of the recording The recording is stored at the headquarters of our company at 8360 Keszthely, Queen Elizabeth Road for three working days. Persons entitled to access, delete and supervise the data The managing director of our company. The person supervising the system indicated below may give permission to review the recordings by filling in the form in the annex to these regulations. Contact details of the person supervising the system: Dr. Rita Lőrincz (contact details: 06-30-957-6370) A person whose rights or legitimate interests are affected by the recording of the recording do not destroy or delete the data. Recordings will be blocked upon request, but if a court or authority does not request them from our Company within 30 days, we must destroy them. Our company may not issue copies of recordings that contain the personal data of persons other than the applicant. The recording is considered to be used if it is intended to be used as evidence in court or other official proceedings. Your rights regarding the processing of your personal data are enshrined in law, according to which you may request information about our data processing, rectification, erasure or blocking of the processed data, protest against the processing of personal data, and sue for damages and damages. The legal basis for data processing (recording) is based on Article 6 (1) (f) GDPR. With regard to the processing of personal data, the main legislation is Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR) on the processing of personal data of natural persons and Act CXII of 2011 on the right to self-determination and freedom of information. Act CXXXIII of 2005 on the rules for the protection of persons and property and the activities of private investigators. Act I of 2012 on the Labor Code (Mt.). These Regulations shall enter into force on 4 October 2022. Dated: Keszthely, October 4, 2022. Dent et Sanitas Kft.


Dens et Sanitas Health Limited Liability Company registered office: 8360 Keszthely, Erzsébet királyné útja 14. Cg .: 20-09-077833 Tax number: 27441118-1-20

CSO number: About the use of cookies: "Cookies" are short text files that are placed on the computer's browser by the websites you visit. Cookies do not connect to your system and do not damage your files. Cookies can be "permanent" or "temporary" cookies. The persistent cookie is stored by the browser for a certain period of time, provided that the user does not delete it before, but the temporary cookie is not stored by the browser, it is automatically deleted when the browser is closed. In order for our website to work as efficiently as possible, we also use cookies. Cookies allow a website to identify returning users and allow us to collect information about the behavior of our users, such as in which country you have accessed our website, what browser software and operating system you use, what your IP address is, what pages you have viewed on our website which features you have used. We do not collect personally identifiable information unless you provide it voluntarily. We use the data for the further development of our website, for the analysis of our traffic and for our advertising strategy. If you do not consent to the placement of cookies, you can do so through the settings made in your own browser (ban, revocation). In this case, it may restrict or prevent the use of certain services. Advertising Information: Third-party service providers, such as Google, serve cookies based on a user's previous visits to the site. The DART cookie used by Google allows Google and its partners to serve ads to users based on their visits to your website and other sites on the Internet. Users can turn off the use of the DART cookie when they visit the ad opt-out page. (You may also be directed to the Network Advertising Initiative opt-out page to opt out of third-party cookie use.) Google provides paid links to this website. Visitors can opt out of some (if not all) cookies on the Network Advertising Initiative's opt-out website: www.networkadvertising.org/managing. What is the DoubleClick DART cookie? The DoubleClick DART cookie is used by Google to serve ads on our partner sites, such as those that display AdSense ads or participate in Google-approved ad networks. When users visit a partner's website and either view an ad or click on an ad, a cookie may be placed in that end user's browser. The information we collect from these cookies is used by our system to help publishers better serve and manage ads on their websites and on the Internet. Links to Other Websites: This site contains links and references to other websites. Please note that our organization and company belonging to this website do not have the power to use cookies or tracking technologies used by other websites, and this policy does not apply to other websites. General Information: This data, information and conditions appearing on the pages and subpages of the current user (hereinafter: our website, website) are for information purposes only, and we do not accept any liability for their completeness or accuracy. We are not responsible for the information contained on our website or for the information on other proprietary websites available on our website and we do not control the correctness, accuracy or timeliness of the content. By viewing and downloading our website, the visitor accepts the terms and conditions of the privacy statement posted on our website. If you do not agree with our terms, leave the website and do not visit it. The entire content of our Website is protected by copyright. No part of this site may be reproduced, stored in a retrieval system, or transmitted, in any form or by any means, without the prior written permission of our website. In addition, make it available to the public and store it in printed form if it exceeds personal use. Our website and its owner (s) shall not be liable for any damages resulting from the use, deficiencies, errors, unusability of the website, malicious viruses, content, data transmission errors. In addition, information, files, documents, printed materials published by third parties that may be brought in connection with our website. We will only use the personal information you provide to our website and the contact details of the website for contact purposes. In addition, we will provide it to the 3rd person listed on your authorized website at the request of the visitor. The person who requests the domain address of the website is responsible for the privacy policy. The user visiting our website agrees that the partners and link owners listed on the website may use their personal data for business purposes. Further information: The IP address of the server server information system, the production of various traffic and traffic statistics, the identification of malicious viruses, content, attacks and the data processing information technology system for the processing of data or hand it over to a person. Contact: If you have any questions, comments or concerns about this cookie / cookie policy, privacy policy or the data collection procedures of the website, please contact us at one of our contact details on our website or on our contact forms.