top of page

Privacy Policy and Data Protection 

 

This Privacy Policy is intended to provide site visitors with information on important aspects regarding the data processing within www.suma-medtec.com.  

 

Suma Medtec GmbH (“Suma Medtec”, “Controller”), as the Controller of this site, may process visitors’ data according to applicable law; the following applies to the design, content, and use of this site:

 

Definitions

  • Personal Data; means any information relating to an identified or identifiable natural person (‘data subject’); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.

  • Processing: means any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

  • Restriction of processing; means the marking of stored personal data with the aim of limiting their processing in the future.

  • Controller: means the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data; where the purposes and means of such processing are determined by Union or Member State law, the controller or the specific criteria for its nomination may be provided for by Union or Member State law.

  • Third Party: means a natural or legal person, public authority, agency or body other than the data subject, controller, processor and persons who, under the direct authority of the controller or processor, are authorized to process personal data.

  • Consent: of the data subject means any freely given, specific, informed and unambiguous indication of the data subject's wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her.

 

Controller

Suma Medtec GmbH

Schützenstraβe 12b Top B01

6330 Kufstein

Austria

Phone: +43 660 281 2463

E-mail: info@suma-medtec.com

Website: www.suma-medtec.com

 

Legal Bases

If you are located in the EU or UK, this section applies to you.

The General Data Protection Regulation (GDPR) and UK GDPR require us to explain the valid legal bases we rely on in order to process your personal information. As such, we may rely on the following legal bases to process your personal information:

  • Consent. We may process your information if you have given us permission (i.e., consent) to use your personal information for a specific purpose. You can withdraw your consent at any time.

  • Performance of a Contract. We may process your personal information when we believe it is necessary to fulfill our contractual obligations to you, including providing our Services or at your request prior to entering into a contract with you.

  • Legal Obligations. We may process your information where we believe it is necessary for compliance with our legal obligations, such as to cooperate with a law enforcement body or regulatory agency, exercise or defend our legal rights, or disclose your information as evidence in litigation in which we are involved.

  • Vital Interests. We may process your information where we believe it is necessary to protect your vital interests or the vital interests of a third party, such as situations involving potential threats to the safety of any person.

In legal terms, we are generally the "data controller" under European data protection laws of the personal information described in this privacy notice, since we determine the means and/or purposes of the data processing we perform. This privacy notice does not apply to the personal information we process as a "data processor" on behalf of our customers. In those situations, the customer that we provide services to and with whom we have entered into a data processing agreement is the "data controller" responsible for your personal information, and we merely process your information on their behalf in accordance with your instructions. If you want to know more about our customers' privacy practices, you should read their privacy policies and direct any questions you have to them.

 

If you are located in Canada, this section applies to you.

We may process your information if you have given us specific permission (i.e., express consent) to use your personal information for a specific purpose, or in situations where your permission can be inferred (i.e., implied consent). You can withdraw your consent at any time.

In some exceptional cases, we may be legally permitted under applicable law to process your information without your consent, including, for example:

  • If collection is clearly in the interests of an individual and consent cannot be obtained in a timely way

  • For investigations and fraud detection and prevention

  • For business transactions provided certain conditions are met

  • If it is contained in a witness statement and the collection is necessary to assess, process, or settle an insurance claim

  • For identifying injured, ill, or deceased persons and communicating with next of kin

  • If we have reasonable grounds to believe an individual has been, is, or may be victim of financial abuse

  • If it is reasonable to expect collection and use with consent would compromise the availability or the accuracy of the information and the collection is reasonable for purposes related to investigating a breach of an agreement or a contravention of the laws of Canada or a province

  • If disclosure is required to comply with a subpoena, warrant, court order, or rules of the court relating to the production of records

  • If it was produced by an individual in the course of their employment, business, or profession and the collection is consistent with the purposes for which the information was produced

  • If the collection is solely for journalistic, artistic, or literary purposes

  • If the information is publicly available and is specified by the regulations

 

If you are located in California (United States of America), this section applies to you.

California Civil Code Section 1798.83, also known as the "Shine The Light" law, permits our users who are California residents to request and obtain from us, once a year and free of charge, information about categories of personal information (if any) we disclosed to third parties for direct marketing purposes and the names and addresses of all third parties with which we shared personal information in the immediately preceding calendar year. If you are a California resident and would like to make such a request, please submit your request in writing to us using the contact information provided below.

CCPA Privacy Notice

The California Code of Regulations defines a "resident" as:

(1) every individual who is in the State of California for other than a temporary or transitory purpose and

(2) every individual who is domiciled in the State of California who is outside the State of California for a temporary or transitory purpose

All other individuals are defined as "non-residents."

If this definition of "resident" applies to you, we must adhere to certain rights and obligations regarding your personal information.

The only personal information that we have collected in the past twelve (12) months are identifiers (for example contact details, such as real name, company, e-mail address) via voluntary submission using our contact form.

We will use and retain the collected personal information as needed to provide the Services or until you request its deletion, revoke your consent for its storage, or the purpose of storage is no longer applicable.

You may contact us by email at info@suma-medtec.com, or by referring to the contact details at the bottom of this document. If you are using an authorized agent to exercise your right to opt out we may deny a request if the authorized agent does not submit proof that they have been validly authorized to act on your behalf.

We do not intend to disclose your personal information with our service providers, unless explicitly agreed with you beforehand.

We may use your personal information for our own business purposes, such as for undertaking internal research for technological development and demonstration. This is not considered to be "selling" of your personal information.

Suma Medtec GmbH has not disclosed, sold, or shared any personal information to third parties for a business or commercial purpose in the preceding twelve (12) months. Suma Medtec GmbH will not sell or share personal information in the future belonging to website visitors, users, and other consumers.

Right to request deletion of the data – Request to delete

You can ask for the deletion of your personal information. If you ask us to delete your personal information, we will respect your request and delete your personal information, subject to certain exceptions provided by law, such as (but not limited to) the exercise by another consumer of their right to free speech, our compliance requirements resulting from a legal obligation, or any processing that may be required to protect against illegal activities.

Right to be informed – Request to know

Depending on the circumstances, you have a right to know:

  • whether we collect and use your personal information;

  • the categories of personal information that we collect;

  • the purposes for which the collected personal information is used;

  • whether we sell or share personal information to third parties;

  • the categories of personal information that we sold, shared, or disclosed for a business purpose;

  • the categories of third parties to whom the personal information was sold, shared, or disclosed for a business purpose;

  • the business or commercial purpose for collecting, selling, or sharing personal information; and

  • the specific pieces of personal information we collected about you.

In accordance with applicable law, we are not obligated to provide or delete consumer information that is de-identified in response to a consumer request or to re-identify individual data to verify a consumer request.

Right to Non-Discrimination for the Exercise of a Consumer’s Privacy Rights

We will not discriminate against you if you exercise your privacy rights.

Right to Limit Use and Disclosure of Sensitive Personal Information

We do not process consumer's sensitive personal information.

Verification process

Upon receiving your request, we will need to verify your identity to determine you are the same person about whom we have the information in our system. These verification efforts require us to ask you to provide information so that we can match it with information you have previously provided us. For instance, depending on the type of request you submit, we may ask you to provide certain information so that we can match the information you provide with the information we already have on file, or we may contact you through a communication method (e.g., phone or email) that you have previously provided to us. We may also use other verification methods as the circumstances dictate. We will only use personal information provided in your request to verify your identity or authority to make the request. To the extent possible, we will avoid requesting additional information from you for the purposes of verification. However, if we cannot verify your identity from the information already maintained by us, we may request that you provide additional information for the purposes of verifying your identity and for security or fraud-prevention purposes. We will delete such additionally provided information as soon as we finish verifying you.

Other privacy rights

  • You may object to the processing of your personal information.

  • You may request correction of your personal data if it is incorrect or no longer relevant or ask to restrict the processing of the information.

  • You can designate an authorized agent to make a request under the CCPA on your behalf. We may deny a request from an authorized agent that does not submit proof that they have been validly authorized to act on your behalf in accordance with the CCPA.

  • You may request to opt out from future selling or sharing of your personal information to third parties. Upon receiving an opt-out request, we will act upon the request as soon as feasibly possible, but no later than fifteen (15) days from the date of the request submission.

To exercise these rights, you can contact us by email at info@suma-medtec.com, or by referring to the contact details at the bottom of this document. If you have a complaint about how we handle your data, we would like to hear from you.

 

If you are located in Virginia (United States of America), this section applies to you.

Under the Virginia Consumer Data Protection Act (CDPA):

"Consumer" means a natural person who is a resident of the Commonwealth acting only in an individual or household context. It does not include a natural person acting in a commercial or employment context.

"Personal data" means any information that is linked or reasonably linkable to an identified or identifiable natural person.

"Personal data" does not include de-identified data or publicly available information.

"Sale of personal data" means the exchange of personal data for monetary consideration.

If this definition "consumer" applies to you, we must adhere to certain rights and obligations regarding your personal data.

The information we collect, use, and disclose about you will vary depending on how you interact with

Suma Medtec GmbH and our Services.

Your rights with respect to your personal data:

  • Right to be informed whether or not we are processing your personal data

  • Right to access your personal data

  • Right to correct inaccuracies in your personal data

  • Right to request deletion of your personal data

  • Right to obtain a copy of the personal data you previously shared with us

  • Right to opt out of the processing of your personal data if it is used for targeted advertising, the sale of personal data, or profiling in furtherance of decisions that produce legal or similarly significant effects ("profiling")

Suma Medtec GmbH has not sold any personal data to third parties for business or commercial purposes. Suma Medtec GmbH will not sell personal data in the future belonging to website visitors, users, and other consumers.

Exercise your rights provided under the Virginia CDPA

More information about our data collection and sharing practices can be found in this privacy notice.

You may contact us by email at info@suma-medtec.com, by submitting a data subject access request, or by referring to the contact details at the bottom of this document.

If you are using an authorized agent to exercise your rights, we may deny a request if the authorized agent does not submit proof that they have been validly authorized to act on your behalf.

Verification process

We may request that you provide additional information reasonably necessary to verify you and your consumer's request. If you submit the request through an authorized agent, we may need to collect additional information to verify your identity before processing your request.

Upon receiving your request, we will respond without undue delay, but in all cases, within forty-five (45) days of receipt. The response period may be extended once by forty-five (45) additional days when reasonably necessary. We will inform you of any such extension within the initial 45-day response period, together with the reason for the extension.

Right to appeal

If we decline to take action regarding your request, we will inform you of our decision and reasoning behind it. If you wish to appeal our decision, please email us at info@suma-medtec.com. Within sixty (60) days of receipt of an appeal, we will inform you in writing of any action taken or not taken in response to the appeal, including a written explanation of the reasons for the decisions. If your appeal if denied, you may contact the Attorney General to submit a complaint.

 

Your Privacy Rights

In some regions (like the EEA, UK, and Canada), you have certain rights under applicable data protection laws. These may include the right (i) to request access and obtain a copy of your personal information, (ii) to request rectification or erasure; (iii) to restrict the processing of your personal information; and (iv) if applicable, to data portability. In certain circumstances, you may also have the right to object to the processing of your personal information. You can make such a request by contacting us via e-mail info@suma-medtec.com. We will consider and act upon any request in accordance with applicable data protection laws. If you are located in the EEA or UK and you believe we are unlawfully processing your personal information, you also have the right to complain to your Member State data protection authority or UK data protection authority. If you are located in Switzerland, you may contact the Federal Data Protection and Information Commissioner.

Withdrawing your consent: If we are relying on your consent to process your personal information, which may be express and/or implied consent depending on the applicable law, you have the right to withdraw your consent at any time. You can withdraw your consent at any time by contacting us via e-mail info@suma-medtec.com.

However, please note that this will not affect the lawfulness of the processing before its withdrawal nor, when applicable law allows, will it affect the processing of your personal information conducted in reliance on lawful processing grounds other than consent.

 

Data Protection

At Suma Medtec, data protection is a high priority; we do not require personal data to operate this website. However, some personal data, such as name, last name, company, e-mail address, may be collected and processed for the sole purpose of communicating with the site visitors that wish to contact us. The submission of said information is entirely voluntary and will be treated as confidential in accordance with this privacy policy and in the basis of GDPR.

Furthermore, when visiting our website, your IP address may be recorded for the duration of the session for technical reasons (e.g., to connect your computer to the internet), and in accordance with the definition of legitimate interest within the provisions of GDPR, Article 6(1). It is not intended to be processed by Suma Medtec GmbH unless otherwise specified within this Policy.

We have implemented appropriate and reasonable technical and organizational security measures designed to protect the security of any personal information we process. However, despite our safeguards and efforts to secure your information, no electronic transmission over the Internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorized third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Although we will do our best to protect your personal information, the usage of our website is at your own risk. You should only access the website within a secure environment.

We do not knowingly solicit data from or market to children under 18 years of age. By using the Services, you represent that you are at least 18 or that you are the parent or guardian of such a minor and consent to such minor dependent’s use of the Services.

 

Contact Information

As mentioned above, personal data may be voluntarily submitted by visitors of this website. This information is submitted through a form, and it requires a contact Name, Last Name, e-mail address and Message to us. These fields are required as a means of identifying the user and being able to contact them to address their inquiry. Company field is optional. By submitting your contact information through the website’s Contact form, visitor is giving explicit consent to Suma Medtec to store it.

This website provides other means for contacting Suma Medtec for visitors who do not want to use the website’s form as the first point of contact.

Suma Medtec will store this information only for the purpose of answering your inquiry and any follow-ups, and until you request its deletion, revoke your consent for its storage, or the purpose of storage is no longer applicable.

You have the right to request your data to be deleted from our system, please send us an e-mail to: info@suma-medtec.com.

 

Cookies

Cookies are small pieces of data stored on a site visitor's browser. They are typically used to keep track of the settings users have selected and actions they have taken on a site. Some of these cookies may remain stored on your device until you delete them. Deactivating cookies could restrict the full functionality of our website.

More information can be found here: Wix Help Center - Cookies and your website at Wix

 

Legitimate Interest

In accordance with GDPR Article 6(1) on Lawfulness of processing of information, the data which is subject to collection and for which the website visitors give consent to, are processed for the legitimate interest of carrying out our businesses, providing our customers and internal employees the best experience.

 

Website Host

Suma Medtec has created the content of its site and designed on Wix.com Ltd., an Israeli software company which provides cloud-based web development services.

 

SSL Encryption

Suma Medtec uses SSL encryption (Secure Sockets Layer) allowing visitors to view our site over an HTTPS connection. This can be confirmed by checking the lock icon in your browser, located on the left site to the website’s address bar.

 

Supported browsers for desktop devices:

Supported browsers for mobile devices:

 

Older browsers may not support the high security standards required by SSL certificates. For more information, please visit Wix Help Center - SSL and HTTPS.

 

Third Party Plugins

Suma Medtec uses third party plugins, which are available within the website and direct the visitors to external links.  The responsibility for the content on the external links of these third party providers is entirely with the Controllers of those linked pages. Should one of the linked pages contain questionable or illegal content, please notify us, in which case the link will be deleted immediately.

 

LinkedIn Plugin

A LinkedIn plugin is used to direct visitors to Suma Medtec’s LinkedIn professional page. When a visitor clicks on the plugin, a direct connection between your browser and LinkedIn servers will be established. The LinkedIn network is provided by LinkedIn Corporation, Headquartered in 1000 West Maude Avenue, Sunnyvale, California, United States.

Privacy Policy: LinkedIn Legal - Privacy Policy

Cookies Policy: LinkedIn Legal - Cookie Policy

Google Maps

Our website uses Google Maps as the service to mainly indicate our company’s location. It may also be necessary to store a visitor’s IP address in order to use all functions of Google Maps. Google Maps is a web mapping product developed at Google, Headquartered in 1600 Amphitheatre Parkway in Mountain View, California, United States.

Privacy Policy: Google Policies - Privacy

Google Use of Cookies: Google Policies - Cookies

 

Google Analytics

Suma Medtec’s website has Google Analytics integrated. This tool is used by us to better understand the use of our site, and it provides us with a (non-personal data) summary of number of visitors, site sessions, and page views. The use of this feature offered by the Wix and Google is not intended to collect visitor’s personal data, it is use with the legitimate interest to evaluate the use of this website and improve its functionality.

Google Analytics uses cookies, see Cookies section of this policy for details.

Further details on Google Analytics: https://www.google.com/analytics

To opt out of being tracked by Google Analytics across all websites, visit this link: http://tools.google.com/dlpage/gaoptout.

 

Controls for do-not-track features

Most web browsers and some mobile operating systems and mobile applications include a Do-Not-Track ("DNT") feature or setting you can activate to signal your privacy preference not to have data about your online browsing activities monitored and collected. At this stage no uniform technology standard for recognizing and implementing DNT signals has been finalized. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online. If a standard for online tracking is adopted that we must follow in the future, we will inform you about that practice in a revised version of this privacy notice.

Changes to this Policy

Suma Medtec actively monitors applicable regulations pertaining to Privacy and Data Protection. This website and policy may be updated for continuous compliance to the latest applicable regulations and as such, Suma Medtec reserves the rights to update without prior notice.

 

About the content of this website

All content has been created by Suma Medtec GmbH based on its acquired expertise and industry knowledge.

Photos credits: Suma Medtec GmbH or Shutterstock stock photos purchased through Wix.com All rights reserved.

Use of any of the content within this website is only allowed with written permission by Suma Medtec GmbH.

 

Questions and comments 

If you would like to access, correct, amend, or delete any personal data we have about you, please contact us: 

Suma Medtec GmbH 

Schützenstraβe 12b Top B01 

6330 Kufstein 

Austria 

 

 

Last update: June 2023. 

bottom of page