1 General
1.1 Your privacy is very important to Nordberg Medical AB, reg. no. 559068-5946 (“Nordberg”). Our mission is that you feel comfortable with us processing your personal data. The purpose of this privacy notice is to explain how we ensure that your personal data is processed in compliance with applicable legislation.
1.2 To provide our products and services to you as our customer, we need to process certain personal data about you. This privacy notice applies to you who visits our website nordbergmedical.com.
2 Data controller
2.1 Nordberg is the data controller for the processing of your personal data and is thus responsible for ensuring that the processing of personal data complies with applicable legislation.
3 Our processing of your personal data
3.1 We use your personal data for the following purposes.
Marketing, including individually targeted direct marketing ► | |||
▼What we do:We process your personal data for marketing purposes, including for the purpose of market segmentation. Our marketing measures may consist of newsletters, information about new products or special offers.Market segmentation entails that we target our marketing towards specific segments of our customer base. The segmentation is based on demographic selection criteria such as age, gender, marital status, or place of residence. Segmented marketing measures are not targeted on the basis of individual customers but rather the relevant segments of our customer base.If you wish to receive individually targeted marketing, which is personalised based on your individual preferences, you may consent to such targeted marketing. Targeted marketing may entail, for example, that we analyse your use of our services and products such as when you usually make purchases and tailor our marketing measures based on such individual insights. We may also analyse your browsing habits on our and others’ websites, in our app as well as your transaction history for the purposes of targeted marketing. | Categories of personal data:Contact details such as name, telephone number and e-mail address.Browsing habits and visit history such as which pages you have visited on our (and others’) website and the duration of the visit.Demographic information such as age, gender, marital status, address and education. | Legal basis:Legitimate interest as we assess that our interest in sending general and segmented marketing to you outweighs your interests or fundamental rights and freedoms requiring protection of personal data. We ensure that the regulatory requirements for marketing via automatic systems are fulfilled.When we do not have a previous contractual relationship with you, the legal basis is legitimate interest, but we must receive your explicit consent for such marketing under the Swedish Marketing Act.Consent is the legal basis for processing of personal data for the purposes of individually targeted marketing.Your rights:You always have the right to request access to your personal data and that we rectify your personal data if it is incorrect.You may also have right to request that we restrict the processing of your personal data and that we erase personal data concerning you.As the legal basis of this data processing is legitimate interest, you have the right to object to processing of your personal data.When we process your personal data based on your consent, you have right to withdraw your consent at any time.Information about what these rights entail in practice and how you can exercise your rights is found in Section 8 of this privacy notice. | Retention period: For you as our customer: the personal data is stored and used throughout the contractual relationship and up to 12 months after the contractual relationship ends assuming that you have not objected to our direct marketing before that.For those who are not yet our customers:We retain your personal data for direct marketing purposes for 3 months from receiving your contact details, assuming that you have not objected to our direct marketing before that.If you choose to become a customer, the conditions set out under the heading “For you as our customer” will apply. |
Business development► | |||
▼What we do:We use your personal data for the purposes of conducting market analyses. The results of our analyses are used with the goal of developing our business and constantly improving in meeting our customers expectations and needs. For example, we may process your personal data to improve our customer service or to adapt our website and/or app in accordance with our customers’ preferences.We always pseudonymise, and if possible anonymise, the personal data we process to the greatest extent possible for achieving the purpose of the processing. | Categories of personal data:Contact details such as name, telephone number and e-mail address.Demographic data such as age, gender, marital status, address and education.Browsing habits and visit history such as the pages you have visited on our (and other) websites and the duration of your visit. | Legal basis:Legitimate interest as we assess that our interest in developing our business to better meet our customers expectations and needs outweighs your interests or fundamental rights and freedoms requiring protection or personal data.Your rights:You always have the right to request access to your personal data and that we rectify your personal data if it is incorrect.You may also have right to request that we restrict the processing of your personal data and that we erase personal data concerning you.As the legal basis of this data processing is legitimate interest, you have the right to object to processing of your personal data.Information about what these rights entail in practice and how you can exercise your rights is found in Section 8 of this privacy notice. | Retention period:We retain your personal data for direct marketing purposes for 3 months from receiving your contact details, assuming that you have not objected to our direct marketing before that. |
Defending our legal interests in the event of a dispute► | |||
▼What we do:In the event of a dispute, we have the right to use your data for the purpose of establishing, defending or enforcing the legal claim. | Categories of personal data:Contact details such as name, social security number, telephone number and e-mail address.Order and payment details such as order history and payment details.Login details such as e-mail address and password.Sensitive personal data such as health data. | Legal basis:Legitimate interest as we assess that our interest in defending our interests in the event of a dispute outweighs your interests or fundamental rights and freedoms requiring protection of personal data.Your rights:You always have the right to request access to your personal data and that we rectify your personal data if it is incorrect.You may also have right to request that we restrict the processing of your personal data and that we erase personal data concerning you.As the legal basis of this data processing is legitimate interest, you have the right to object to processing of your personal data.Information about what these rights entail in practice and how you can exercise your rights is found in Section 8 of this privacy notice. | Retention period:The personal data is retained as long as they are needed to establish, defend or enforce a legal claim, however a maximum of 3 years. |
Complying with legal obligations ► | |||
▼What we do:We may process your personal data to comply with our legal obligations under applicable law, e.g., legislation regarding accounting, audit and tax. | Categories of personal data:Contact details such as name, social security number, telephone number and e-mail address. | Legal basis:Compliance with a legal obligation.Your rights:You always have the right to request access to your personal data and that we rectify your personal data if it is incorrect.You may also have right to request that we restrict the processing of your personal data and that we erase personal data concerning you.Information about what these rights entail in practice and how you can exercise your rights is found in Section 8 of this privacy notice. | Retention period:The personal data is retained for as long as necessary to comply with the applicable legal obligation, for example seven years when it comes to our obligations under the Accounting Act. |
4 From where do we collect your personal data
4.1 We receive the personal data we process from the contact information form on the website and through use of third-party cookies. Please see our cookie notice on our website for more information on how we collect your personal data from cookies.
4.2 It may be necessary that you provide certain personal data to us at Nordberg in order for you, or an organization that you represent to enter into an agreement with us. In case you do not provide us with the necessary personal data, it may not be possible for us to enter into such an agreement.
5 Retention of your personal data
5.1 We only retain your personal data for as long as it is needed for the purposes described in this privacy notice. When we no longer need your personal data we will remove the personal data from our systems and databases, including any back-ups. More specific retention periods are provided in the tables above under the heading “Retention period”.
6 With whom do we share your personal data?
6.1 We may share your personal data with reliable external parties, such as to other group companies, IT providers and companies with whom we partner to provide our products and services. We may also need to disclose personal data at the request of public authorities or to other parties in the context of court proceedings, mergers and acquisitions or similar.
6.2 We will not sell your personal data to any other party.
7 Where do we use your personal data?
7.1 We process your personal data primarily within the EU/EEA. In some cases, we may transfer your personal data to a country outside of the EU/EEA. If personal data is transferred to any such country, we will ensure that your personal data is protected and that the transfer is carried out in accordance with applicable law.
7.2 When carrying out any transfer which is not subject to an applicable adequacy decision by the European Commission, we will use the standard contractual clauses for transfers to third countries (SCC) issued by the European Commission as legal basis for the transfer.
8 Your rights
8.1 Our responsibility for your rights ►
8.1.1 In our capacity of a data controller, we are responsible for ensuring that your personal data is processed in compliance with applicable legislation and that you can effectively exercise your rights as a data subject. You may contact us at any time if you wish to exercise your rights. You will find the contact details in the end of this privacy notice.
8.1.2 We have an obligation to respond to your requests to exercise your rights within one month from receiving your request. If your request is complex or if we have received many requests, we have the right to extend this deadline by two more months. If we are unable to take the action you have requested within one month, we will inform you of the reason for the delay and of your right to lodge a complaint with a supervisory authority and to seek a judicial remedy.
8.1.3 You will not be charged for any information, communication or measures that we implement. However, if your request is manifestly unfounded or excessive, we may charge an administrative fee for providing the information or taking the action requested or refuse to act on your request altogether.
8.1.4 You have the right to request:
- Access to your personal data. This means that you have the right to request access to personal data that we hold about you. You also have the right to be provided, at no cost, with information about which personal data we are processing about you. We have the right to charge a reasonable administration fee if you request further copies. If you make a request by electronic means, e.g. via email, we will provide you with the information in commonly used electronic format.
- Rectification of your personal data. At your request or on our own initiative, we will correct, anonymise, delete or complete data that we know to be inaccurate, incomplete or misleading. Also, you have the right to complete any incomplete personal data if something relevant is missing.
- Erasure of your personal data. You have the right to request that we erase your personal data if there is no compelling reason for us to continue processing the data. Compelling reasons for use to continue processing may be:
- Processing is necessary for the right of freedom of expression and information,
- Processing is necessary to comply with a legal obligation,
- Processing is necessary for reasons of public interests in the area of public health,
- Processing is necessary for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes or
- Processing is necessary for the establishment, exercise or defence of legal claims.
Your personal data will be erased if none of the circumstances above are applicable and if:
- The personal data is no longer needed for the purpose for which we collected them,
- We process your personal data based on your consent and you withdraw your consent,
- You object to us processing your personal data which is based on a legitimate interest assessment, and we have no compelling interests that overrides your interests or rights and freedoms,
- We have processed the personal data unlawfully or
- We have a legal obligation to erase the personal data.
- Right to restrict processing. This means that we temporarily restrict the processing of your data. You have the right to request restriction when:
- You consider your data to be inaccurate and you have requested rectification as defined in paragraph 1.4 b), while we establish the accuracy of the personal data,
- The processing is unlawful, and you do not want the data to be erased,
- As the personal data controller, we no longer need to process the personal data for our processing purposes, but you need them to be able to establish, exercise or defend a legal claim, or
- You have objected to processing as defined in paragraph 2, while waiting for our assessment of whether our legitimate interests override yours.
8.1.5 We will take all reasonable measures possible to notify everyone who has received personal data as stated in Section 6 above if we have rectified, erased or restricted access to your personal data after you have requested us to do so. At your request, we will provide you with more information about the recipients of your personal data.
8.2 Your right to object to processing ►
8.2.1 You have the right to object to the processing of your personal data if our processing is based upon legitimate interest (see Section 3 above). If you object to such processing, we will only continue to process your data if we have compelling reasons for doing so that override your interests or rights and freedoms or if the processing is necessary for the establishment, exercise or defence of legal claims.
8.2.2 If you do not wish that we use your personal data for direct marketing purposes, you always have the right to object to such processing by contacting us. We will cease to use your personal data for that purpose when we have received your objection.
8.3 Your right to withdraw consent ►
8.3.1 If we process your personal data based on your consent as the legal basis, you always have the right to withdraw your consent. You can do this at any time by contacting us. Our contact details are found in the end of this privacy notice.
8.4 Your right to data portability ►
8.4.1 You have right to data portability when we process your personal data by automated means and when the legal basis for the processing is your consent or performance of a contract.
8.4.2 Right to data portability means that you have the right to receive the personal data we process about you in machine-readable format which allows you to transfer these personal data to another data controller. You may also request us to transfer the personal data directly to another data controller.
8.5 Your right to complain to the supervisory authority ►
8.5.1 You have the right to lodge a complaint with the Swedish Authority for Privacy Protection (Sw. Integritetsskyddsmyndigheten, IMY) if you are not satisfied with our processing of your personal data.
9 We protect your personal data
9.1 We are committed to ensuring that you always feel comfortable when providing your personal data to us. We have therefore implemented both technical and organisational security measures, including access restrictions and regular internal controls, to best protect your personal data against, for example, unauthorised access, alteration or loss. Should a data breach that materially impacts you or your personal data, e.g. entailing risk of fraud or identity theft, occur, we will contact you to explain what has happened and to provide you with advice on how you can mitigate any potential adverse effects of such data breach relevant for you.
10 Cookies
10.1 We use cookies and similar technologies on our website and app in order to, inter alia, improve your experience with us and to simplify and adapt our website to your needs and preferences. In our privacy notice, we inform you about how we process your personal data when you visit our website or app. If you would like to know more about our use of cookies, please refer to our cookie notice on the Website.
11 Changes to this privacy notice
11.1 We have the right to change this privacy notice at any time. The latest version of the notice will always be available on our website.
11.2 When we make changes that are not purely linguistic or editorial, you will be notified of the changes within a reasonable time prior to the changes taking effect. If you do not agree to the changes, you have the right to object to the processing before the changes take effect.
12 Contact details
12.1 If you have any complaints or questions about how we use your personal data, please do not hesitate to contact us:
- Company registration number 559068-5946
- Postal address: Hälsovägen 7, 141 57 Huddinge
- Visiting address: Hälsovägen 7, 141 57 Huddinge
- E-mail: info@nordbergmedical.com
- Website: [nordbergmedical.com]
LEGAL NOTICE
1 General
1.1 Nordberg Medical AB, reg. no. 559068-5946 (“Nordberg”) is a limited liability company incorporated under the laws of Sweden. Its registered address is Hälsovägen 7, 141 57 Huddinge.
2 Disclaimer
2.1 Information which is published on Nordberg’s website is only intended as general information about Nordberg and [skin, skin aging and skin aging treatment including Juläine], and nothing stated on this website constitute or shall be construed to constitute medical advice. You should, thus, seek advice from healthcare professional on skin treatment options.
2.2 There is a risk that the content of this website is neither exhaustive nor completely updated. Any use of information on this website is done at the user’s own risk. Nordberg is not responsible for, and has no obligations as regards, information on Nordberg’s website or information on another website with a link to or from Nordberg’s website.
3 Intellectual property rights
3.1 [Nordberg Medical] [and] [Juläine] [are] registered trademark[s] being the property of Nordberg. Nordberg reserves all rights to the mentioned trademark[s].
3.2 Information which is published on Nordberg’s website belongs to Nordberg or is used with the permission of the rights holder. Making of copies, presentations, distribution, display or any other transfer of the information on the website to the public is, except for strictly private use, prohibited unless done with the consent of Nordberg.
3.3 About personal data
3.4 Nordberg cares about your privacy and protecting the personal data about you that we process. All processing of personal data takes place in accordance with applicable data protection legislation. Please find more information in our privacy notice.
4 About cookies
4.1 Nordberg’s website uses cookies, and for further information you are referred to the cookie notice.
4.2 If you do not want cookies to be saved on your computer, you can prevent this by changing the settings in your web browser. If you choose not to accept cookies, the website can still be used but with limited functionality.
COOKIE NOTICE
1 General
1.1 Nordberg Medical AB, reg. no. 559068-5946 (“Nordberg”) uses cookies and similar technologies (jointly called “cookies”) on our website to ensure the functionality of the website and to improve your experience when visiting our website.
1.2 Below is a detailed explanation of how we use cookies and which choices you can make regarding our cookies.
1.3 Also, please refer to Nordberg’s privacy notice for further information about how we at Nordberg process personal data, including when using cookies.
2 What are cookies?
2.1 Cookies are small text files containing information that is stored on your computer, mobile or tablet. Some are necessary for you to be able to make full use of the website’s functionality, while others are used to enhance your user experience and facilitate navigation on the website.
3 Which types of cookies does Nordberg use?
3.1 We use a cookie to administrate our cookie banner as well as other essential cookies which are necessary for the website to function properly (“essential cookies”).
3.2 With your consent, we also use third-party cookies for analytics purposes (“non-essential cookies”).
3.3 Cookies stay on your device for different periods depending on the purpose of the cookie. For example, a cookie that is necessary for the website to operate will only exist on your device whilst you use the website. A cookie that is used for analytics purposes will, on the other hand, be retained even after you’ve ended your visit.
3.4 Nordberg only uses non-essential cookies when you have given your consent.
3.5 For more information on Nordberg’s use of non-essential cookies, please see below.
4 Table of individual cookies used on the Nordberg’s website
Cookie provider | Cookie name and domain | Type of cookie | Purpose – what do they do? | Do these cookies collect my personal data? | Storage time | Sharing/ transfer? |
Matomo | _pk_idClick on the button to load the content from matomo.org.Load content | Third-party cookie, analytical cookie | Collect information and usage statistics for our website | Yes, these cookies track your IP address and so may collect some personal data. For more information about these cookies, including the information they collect and how this is used, see our privacy notice on this website. | 1 month | No |
5 How can you control Nordberg’s use of cookies?
5.1 When you enter our website, a cookie banner will appear with general information about our use of cookies on our website. You are given the choice to consent to our use of non-essential cookies, or to decline. If you decline, we will not use non-essential cookies.
5.2 There are several ways of managing the use of cookies on your device, such as:
- Block individual originators of cookies on our website by following the link in the table above to the relevant party’s website.
- Change the settings for the usage and scope of cookies in your browser or device. If you wish to do so, please go to the settings in your browser or device to learn more about adjusting settings for cookies.
6 Changes in our cookie notice
6.1 Nordberg may update this notice by publishing changes on its website. If we require your consent, we will request it the next time you visit our website.
7 Contact
7.1 You can contact us at info@nordbergmedical.com
COOKIE BANNER
”This website uses essential cookies and other similar technologies in order to ensure the proper functioning of the website. With your consent, we also use Matomo in order to analyse how this website is used. More information about how we use cookies can be found in our cookie notice. Please, confirm whether you give your consent to the use of non-essential cookies or not in this website by choosing one of the alternatives below:
I accept
I refuse”