SIA “Nordic Medical Group” Privacy Policy

This privacy policy provides transparent information on how SIA “Nordic Medical Group”, reg. No. 40203590821 (hereinafter – the Company), processes personal data in accordance with the requirements of the General Data Protection Regulation (EU) 2016/679 and other applicable laws and regulations.

Controller and contact details

SIA “Nordic Medical Group”
Exempt. No. 40203590821
Legal address: Riga, Gertrudes street 113 – 43, LV-1009

AZO clinic address: Jelgava, Pulkveža Oskara Kalpaka street 16, LV-3001
Email: info@azoklinika.lv
Phone: +37127339449

Purposes and legal basis for the processing of personal data

Personal data is processed for the following purposes:
– provision and administration of health care services;
– ensuring customer appointment, communication and settlement;
– maintenance of health documentation (medical history, examination data);
– quality control and improvement of services;
– transfer of data to insurers, if necessary;
– in accordance with the law, for the transfer of information to public authorities.

Basis for data processing:
– performance of the contract;
– requirements of regulatory enactments (Medical Treatment Law, Law on the Rights of Patients);
– consent of the data subject (for example, for loyalty program or marketing purposes);
– legitimate interests (e.g. video surveillance for security purposes).

CCTV

Video surveillance is carried out on the premises with the aim of ensuring the safety of customers, employees and property. Video surveillance is carried out in accordance with Article 6(1)(f) of the GDPR.

Data storage period

Personal data are stored in accordance with the time periods specified in the law (medical documentation – in accordance with the requirements of regulatory enactments), or until the purpose of their processing expires.

Data recipients

Personal data may be transferred:
– cooperating medical institutions, diagnostic centers;
– insurance companies;
– state institutions in the cases provided for by law;
– data processors (IT service providers), in accordance with concluded contracts and security requirements, in accordance with the service provided, in compliance with the obligations of the processor specified in the General Data Protection Regulation, including on the observance of confidentiality.

Data is not transferred outside the EU/EEA unless it is necessary for the performance of a particular service and appropriate safeguards are ensured.

Rights of the data subject

The data subject has the following rights under the General Data Protection Regulation:
– access your personal data;
– request the correction of inaccurate or incomplete data;
– object to the processing of data if it takes place on the basis of the legitimate interests of the Company;
– withdraw consent if the processing is based on consent (e.g. for marketing purposes);
– request the erasure of personal data.

Important:
If deletion of data is requested in relation to medical treatment documentation (medical history, examination data, etc.), the Company as a medical treatment institution cannot fully comply with the request for deletion, because regulatory enactments – including the Law on the Rights of Patients and the Procedures for the Record-keeping of Medical Documents – impose an obligation to retain such data for a certain period of time. In this case, the deletion is refused, and the patient is informed about it, indicating the legal basis.

However, erasure may be applied in cases where the data are processed on the basis of consent or are no longer necessary for the purpose in question.

Use of cookies

Technical and analytical cookies may be used on the Company’s website. The user can control the use of cookies in his browser. Cookies are not used to track the user without consent.

Contacts for data protection questions

If you have any questions about this policy or the processing of your data, please contact us by e-mail: info@azoklinika.lv