Information security system

Thanks to new provisions of law specified in the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation), we strive to improve our services. Guaranteeing the highest security of your personal data is our priority, therefore we make our best to implement the most reliable security measures which minimize the risk of data breach. At the same time we want to satisfy our information duty and provide you with the following information:

MDH Sp. z o.o. with its registered office in Łódź, ul. Tymienieckiego 22/24, 90-346 Łódź, is a Controller of your data. You can search our company in the CEIDG (Central Registration and Information on Business) entering our NIP number: 728-22-95-492 and REGON number: 472253652.  If you would like to discuss any issue concerning personal data processing and protection, please call us: +48 (42) 674 83 84 or write to our e-mail address: This email address is being protected from spambots. You need JavaScript enabled to view it.. Should you prefer to contact us by traditional post, please make an annotation: "Personal data protection" or visit us in our seat specified above.

Due to the fact, that under Article 9 of the GDPR we process "sensitive" data i.e. data concerning health, the Controller assigned the Data Protection Supervisor. This function is held by Mr/Mrs "Name and Surname". To discuss issues concerning processing of your personal data, please contact the Supervisor: This email address is being protected from spambots. You need JavaScript enabled to view it.

Your personal data are being processed in particular as:

  • processing is necessary for compliance with a legal obligation to which the Controller is subject i.e. Article 6 section 1 letter c) of the GDPR, e.g. relating to collection and archiving documents containing personal data,
  • processing is necessary for the performance of a contract, i.e. Article 6 section 1 letter b) of the GDPR,
  • processing is necessary for the communication purposes aimed at guaranteeing professional contact with the client and maintaining high quality services, i.e. Article 6 section 1 letter f) of the GDPR.

Your personal data will be stored for the period necessary to achieve the aforementioned purposes, and following their completion for the period and within the scope required by the applicable provisions of law. If the processing is based on the consent, data will be processed until withdrawal of such consent, without affecting the lawfulness of processing based on consent before its withdrawal.

Your data may be transferred to other entities, authorised to receive them under applicable provisions of law, as well to other receivers specified in the personal data protection regulations, i.e. companies providing postal and courier services; companies providing IT systems, banks, companies providing insurance services. If you contact us by e-mail, e-mail providers shall be considered as a specific category of receiver, to whom your personal data may be transferred.

Due to the personal data processing and under applicable provisions of law, you hold the right to:

  1. have access to your personal data, under Article 15 of the GDPR;
  2. rectify to your personal data, under Article 16 of the GDPR;
  3. restrict processing, under Article 18 of the GDPR.

Where provision of personal data is required by law, you are obliged to provide your data. If your refuse to provide your personal data, your case will no be considered.

Where processing is based on consent, you have the right to:

  1. have access to your personal data, under Article 15 of the GDPR;
  2. rectify personal data, under Article 16 of the GDPR.
  3. request erasure of your personal data, under Article 17 of the GDPR.
  4. restrict processing, under Article 18 of the GDPR.
  5. object processing, under Article 21 of the GDPR.
  6. withdraw your consent, at any time, no matter which form of consent was given, as a result of which your personal data are subject to erasure.

You also have the right to lodge a complaint to the Personal Data Protection Office. Personal data will not be subject to profiling, and will not be transferred outside Poland. If you decide to exercise your right, please contact the Controller using contact details specified above.

 

Information Security Policy

Personal data security policy

Application on exercising data subject's rights

 

OUR BRANDS