2. The Personal Data we collect
The types of Personal Data we collect may include:
- Email address;
- Payment information;
- Phone number;
- User name;
- Device information;
3. WHEN Personal Data is Collected.
Marvel Medtech collects certain information that may constitute Personal Data in the following ways:
(a) Personal Data you provide to us directly:
In various areas of our Service, we provide you the opportunity to submit Personal Data, such as your name, email, or mailing address.
(b) Document Submissions.
Our Service may allow users to upload documents or specifications relating to an order or purchase. If you choose to submit documents of this nature, you may disclose certain Personal Data through our Service as a product of your submission. Marvel Medtech uses commercially reasonable efforts to ensure the appropriate administrative, physical, and technical safeguards are in place as it relates to the Personal Data you provide through our Service as part of any document submission.
4. Information Collected Automatically.
Certain information on our Service is collected automatically by means of various software tools. We have a legitimate interest in using such information to assist in log-in, systems administration purposes, information security and abuse prevention, to track user trends, and to analyze the effectiveness of our Service.
(a) Log Files.
Log files refers to the information that is automatically sent by your web browser or device (or otherwise automatically collected) each time you view or interact with our online Service. The information inside the log files may include IP addresses, type of browser, internet service provider, date/time stamp, referring/exit pages, clicked pages and any other information your browser may send to us.
(b) Device and Online Usage.
- Remembering your preferences and allowing you to enter your user name less frequently;
- Presenting information that’s targeted to your interests, which may include our content presented on another website;
- Measuring the effectiveness of our sites, services, content, and advertising;
The Options/Settings section of most internet browsers will tell you how to manage cookies and other technologies that may be transferred to your device, including how to disable such technologies. You can disable our cookies or all cookies through your browser settings, but please note that disabling cookies may impact some of our Service features and prevent the Service from operating properly.
(d) Do Not Track Signals.
We do not currently respond or take any action with respect to web browser “do not track” signals or other mechanisms that provide consumers the ability to exercise choice regarding the collection of Personal Data about an individual consumer’s online activities over time and across third-party websites or online services. However, you may set your web browser to not accept new cookies or web beacons, be notified when one is received, or disable them altogether. Please note that by disabling these features, your experience may not be as smooth and you may not be able to take full advantage of our Service features. Please visit the Help section of your website browser for instructions on managing available preferences.
(e) Analytics Service.
We may use certain third party analytics services to improve the functionality, features, or delivery of our Service. We may also use these analytics services to record mouse clicks, mouse movements, scrolling activity, as well as any text that you type into our Service. For example, we may use Google Analytics on our Service to track user trends and usage. For more information on Google Analytics’ processing of Personal Data as it relates to our Service, please see http://www.google.com/policies/privacy/partners/. By using a browser plugin provided by Google, you can opt out of Google Analytics.
(f) Web Beacons and Similar Tracking Technologies.
When you visit our Service, we may collect your IP address for certain purposes such as, for example, to monitor the regions from which you navigate our Service. We may also use web beacons alone or in conjunction with cookies to compile information about your usage of our Service and interaction with emails from us. Web beacons are clear electronic images that can recognize certain types of information on your computer, such as cookies, when you viewed a particular site tied to the web beacon. We may use web beacons to operate and improve our Service.
5. The Purposes For Which We Use Personal Data.
If you submit or we collect Personal Data through our Service, then such Personal Data may be used to:
- Provide, analyze, administer, improve, and personalize the Service;
- Provide you with the Service and any product or order fulfillment;
- Contact you in connection with the Service, notifications, events, programs or offerings;
- Send you updates and promotional materials;
- Provide personalized advertising to you;
- Identify and authenticate your access to the parts of the Service that you are authorized to access;
- Protect our rights or our property and to ensure the technical functionality and security of the Service; and
- Comply with applicable law, assist law enforcement, and to respond to regulatory or other legal inquiries.
6. How We Disclose Personal Data.
We do not sell, lease, rent or otherwise disclose the Personal Data collected from our Service to third parties unless otherwise stated below or with your consent.
(a) Our Third Party Service Providers.
We transfer Personal Data to our third party service providers to perform tasks on our behalf and to assist us in providing our Service. For example, we may share your Personal Data with service providers who assist us in performing core functions (such as hosting, data storage, and security) related to our operation of the Service and/or by making certain interactive tools available to you as a user. We also use third parties for technical and customer support, application development, tracking and reporting functions, quality assurance, and other services. In the performance of our Service, we may share Personal Data from or about you with these third parties so that we can deliver the highest quality user experience.
From time-to-time, we may engage advertising services to assist us in advertising our brand and Service. Those services may target advertisements on third-party websites based on cookies or other information indicating previous interaction with our Service.
(c) Aggregate or Anonymized Information.
To better serve our users, business partners, and to improve our Service, we may conduct research on user demographics, interests and behavior based on the Personal Data and other information provided to us. This research may be compiled and analyzed on an aggregate or anonymized basis, and we may share this aggregated or anonymize information with our affiliates, agents and business partners. This aggregate or anonymized information does not identify a user personally. We may also disclose aggregated or anonymized information in order to describe our Service to current and prospective business partners and to other third parties for other lawful purposes.
(d) Business Partners.
From time to time, we may partner with other companies to jointly offer products or services. If you purchase or specifically express interest in a jointly-offered product or service from us, we may share Personal Data collected in connection with your purchase or expression of interest with our joint promotion partner(s). We do not control our business partners’ use of Personal Data we collect, and their use of the information will be in accordance with their own privacy policies.
(e) In the Event of Merger, Sale, or Change of Control.
(f) Other Disclosures.
7. Retention of Personal Data.
We reserve the right to retain any Personal Data as long as the Personal Data are needed to: (i) fulfill the purposes that are described in Section 5, and (ii) comply with applicable law.
8. Data Security.
The privacy and security of Personal Data is very important to us. Taking into account the nature, scope, context and purposes of processing Personal Data as well as the risks of varying likelihood and severity for the rights and freedoms of natural persons, we have implemented appropriate technical and organizational measures to ensure and to be able to demonstrate that its processing of Personal Data is performed in accordance with applicable law. However, no method of transmission over the Internet, or method of electronic storage, is 100% secure. Therefore, while we strive to use commercially acceptable means to protect Personal Data, we cannot guarantee its absolute security.
9. Children’s Privacy.
Our Service is intended for individuals over eighteen 18 years of age. We do not target children and do not knowingly collect any Personal Data from children under the age of thirteen (13). When a user discloses Personal Data on our Service, the user is representing to us that he or she is at least eighteen (18) years of age.
10. SOCIAL MEDIA and PLUG-INS.
Our online services may use social media plug-ins (e.g., the Facebook “Like” button, “Share to Twitter” button) to enable you to easily interact with certain social media websites (e.g., Facebook, Twitter, Instagram) and share information with others. When you visit our online services, the operators of the available social media plugins can place a cookie on your device enabling such operators to recognize individuals who have previously visited our online services. If you are logged into these social media websites while visiting our online services, the social media plugins allow the relevant social media websites to receive information that you have visited our online services or other information. The social media plugins also allow the applicable social media websites to share information about your activities on our online services with other users of the social media website. For example, Facebook Social Plugins allow Facebook to show your “Likes” and comments on our online services to your Facebook friends. Facebook Social Plugins also allow you to see your friends’ Facebook activity on our online services. We do not control any of the content from the social media plugins. We may also interact with you on social media platforms. If you contact us on one of our social media platforms, request services, or otherwise communicate directly with us on social media, we may contact you to interact with you. For more information about social media advertising and social media plugins from other social media websites, please refer to those websites’ privacy and data sharing statements.
11. email communications.
You may choose not to receive future promotional or advertising emails from us by selecting an unsubscribe link at the bottom of each email that you receive from us. Additionally, you may send a request specifying your communications preferences to firstname.lastname@example.org. You cannot opt out of receiving transactional emails related to the performance of our services. Please note that even if you opt out of receiving the foregoing emails, we may still send you a response to any “Contact” request as well as administrative, maintenance and operational emails (for example, in connection with a password reset request).
13. Contacting Us.
GDPR POLICY (FOR EUROPEAN DATA SUBJECTS ONLY).
We have created this General Data Protection Regulation (“GDPR”) Policy to explain how we process Personal Data about you as a data subject. As used in this Section, a “data subject” is an identified or identifiable person who is located in the European Union/European Economic Area (“EU/EEA”), and “process” or “processing” means any operation or set of operations which is performed on Personal Data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
(1) OUR LEGAL Basis for Processing.
The following sets out four (4) lawful bases under the GDPR to which we may process your Personal Data:
|Your Consent||Where you have given us your express consent to process your Personal Data for one or more specified purposes, such as to provide our Service and other services as requested by you.|
|To Perform a Contract||Where the processing is necessary for the performance of contract to which you are a party and to (e.g., to verify information you have provided to us, or review and process account registration).|
|Comply with the Law||Where the processing is necessary for compliance with a legal obligation to which we are subject.|
|Legitimate Interests||Where the processing is necessary for the purposes of the legitimate interests pursued by us or by a third party, except where such interests are overridden by your interests or fundamental rights and freedoms which require protection of personal data.|
(2) Data Subject Privacy Rights.
In certain circumstances, local data protection laws and certain local laws (including the GDPR) may give you rights with respect to Personal Data if you are located in the EEA. These rights differ by country/region, but may include the right to request:
|Access to your Personal Data||You may have the right to obtain from us confirmation as to whether or not Personal Data concerning you is being processed, and, where that is the case, to request access to the Personal Data. This access information includes the purposes of the processing, the categories of Personal Data concerned, and the recipients or categories of recipient to whom the Personal Data have been or will be disclosed. You may have the right to obtain a copy of the Personal Data undergoing processing. For further copies requested by you, we may charge a reasonable fee based on administrative costs.|
|Rectification||You may have the right to obtain from us the rectification of inaccurate Personal Data concerning you. Depending on the purposes of the processing, you may have the right to have incomplete Personal Data completed, including by means of providing a supplementary statement.|
|Erasure||You may have the right to obtain from us the erasure of Personal Data concerning you and we may be obliged to erase such Personal Data.|
|Restriction of processing||You may have the right to obtain from us restriction of processing your Personal Data. In such cases, the respective data will be marked and may only be processed by us for certain purposes.|
|Data portability||You may have the right to receive the Personal Data concerning you, which you have provided to us, in a structured, commonly used and machine-readable format, and you may have the right to transmit those data to another entity without hindrance from us.|
|Object||You may have the right to object, on grounds relating to your particular situation, at any time to the processing of your Personal Data by us, and we can be required to no longer process your Personal Data. If you have a right to object and you exercise this right, your Personal Data will no longer be processed for such purposes by us. However, such a right to object may in particular not exist if the processing of your Personal Data is necessary to take steps prior to entering into a contract or to perform a contract already concluded.|
(3) How to Exercise Your Rights.
You may exercise these rights at any time by sending an email to email@example.com. Depending on where you live, you may have the right to lodge a complaint with a supervisory authority or other regulatory agency if you believe that we have violated any of the rights concerning Personal Data about you. We encourage you to first reach out to us at firstname.lastname@example.org so we have an opportunity to address your concerns directly before you do so.