Datenschutzrichtlinie
Zuletzt aktualisiert: 1. Juni 2023
Diese Datenschutzrichtlinie erklärt, wie TEOXANE SA sowie deren hundertprozentige Tochtergesellschaften und Rechtsnachfolger (zusammen als „TEOXANE“ bezeichnet) personenbezogene Daten im Zusammenhang mit ihren Produkten, Dienstleistungen, Apps und Websites sowohl online als auch offline (zusammen die „Dienste“) verarbeitet. Außerdem wird erläutert, welche Rechte und Wahlmöglichkeiten Einzelpersonen in Bezug auf ihre personenbezogenen Daten haben.
Einwohner bestimmter Rechtsordnungen können nach den Gesetzen dieser Rechtsordnungen Anspruch auf zusätzliche Informationen über ihre personenbezogenen Daten haben. Bitte beachten Sie den unten stehenden Abschnitt „Zusätzliche Datenschutzinformationen für bestimmte Rechtsordnungen“ für weitere Informationen.
TEOXANE verarbeitet Ihre personenbezogenen oder sensiblen personenbezogenen Daten in Übereinstimmung mit den geltenden Datenschutzgesetzen und dieser Datenschutzrichtlinie. Bitte beachten Sie, dass wir dort, wo es gesetzlich erforderlich ist, Ihre Einwilligung einholen werden.
1. GELTUNGSBEREICH DIESER DATENSCHUTZRICHTLINIE
Soweit nachstehend nichts anderes vermerkt ist, gilt diese Datenschutzrichtlinie für die personenbezogenen Daten, die TEOXANE im Zusammenhang mit folgenden Gruppen verarbeitet:
- unsere kostenlosen oder kostenpflichtigen Dienste sowie den Verkauf von Waren gegen Entgelt, einschließlich unserer klinischen Forschungs- und Patientenunterstützungsprogramme sowie anderer Gesundheits- und Patientenprogramme, die wir verwalten, sponsern oder betreiben
- Angehörige der Gesundheitsberufe
- Personen, die sich für unsere Webinare und andere Veranstaltungen anmelden oder daran teilnehmen
- Personen, die unsere Nachrichten-, Informations- und Marketingmitteilungen abonniert haben
- Personen, die an Gewinnspielen, Wettbewerben, Umfragen und von uns durchgeführten Forschungen teilnehmen
- Personen, die sonst in Bezug auf unser Geschäft oder unsere Dienste mit uns kommunizieren, sich engagieren oder interagieren
Diese Datenschutzrichtlinie gilt nicht für personenbezogene Daten, die wir über Mitarbeiter, Personal oder Bewerber erfassen und verarbeiten. Diese unterliegen gesonderten Datenschutzhinweisen.
Zusätzliche Hinweise: In einigen Fällen können zusätzliche oder ergänzende Datenschutzhinweise für bestimmte personenbezogene Daten gelten, die wir erfassen und verarbeiten. Solche Hinweise ergänzen in der Regel diese Datenschutzrichtlinie, indem sie weitere Informationen zu bestimmten personenbezogenen Daten und Geschäftstätigkeiten bereitstellen. Beispielsweise können wir spezifische Hinweise bereitstellen und gesonderte Einwilligungen von Teilnehmern klinischer Studien einholen. Soweit es zu Widersprüchen mit dieser Datenschutzrichtlinie kommt, gilt der zusätzliche oder ergänzende Hinweis vorrangig für die betreffenden personenbezogenen Daten.
2. QUELLEN PERSONENBEZOGENER DATEN
Wir erheben personenbezogene Daten aus verschiedenen Quellen, unter anderem:
- Direkt von Einzelpersonen, die unsere Dienste nutzen oder mit uns in Kontakt treten, z. B.:
- Teilnehmer an klinischen Studien und Patientenunterstützungsprogrammen, die wir sponsern
- Bevollmächtigte Vertreter oder gesetzliche Vormunde von Patienten
- Nutzer unserer Websites und mobilen Anwendungen
- Personen, die mit TEOXANE kommunizieren
- Personen, die Qualitäts-, Sicherheits- oder Nebenwirkungsinformationen zu unseren klinischen Produkten und Behandlungen melden
- Durch unsere Dienste
- Von Angehörigen der Gesundheitsberufe
- Von Auftragsforschungsinstituten und klinischen Studienleitern
- Von Regierungsbehörden und/oder öffentlichen Registern
- Von Dienstleistern, Datenhändlern oder Geschäftspartnern
- Von Branchen- und Patientengruppen und Verbänden
- Aus öffentlich zugänglichen Quellen (Websites, soziale Medien, Foren, Plattformen etc.)
3. PERSONENBEZOGENE DATEN, DIE WIR ERHEBEN
Die Art der von uns erhobenen und verarbeiteten personenbezogenen Daten hängt von unserer Beziehung und den Interaktionen mit Ihnen ab. Wir können Daten direkt von Ihnen, von Dritten oder automatisiert (z. B. Cookies, Pixel, Server-Logs) erfassen.
Beispiele:
- Kontaktdaten (Name, E-Mail, Adresse, Telefonnummer, Notfallkontakt)
- Angaben zu Eltern/gesetzlichen Vertretern bei Minderjährigen
- Biografische und demografische Informationen (Geburtsdatum, Alter, Geschlecht, ethnische Zugehörigkeit, Familienstand, sexuelle Orientierung)
- Gesundheits- und medizinische Informationen (Diagnosen, Behandlungen, genetische Daten, Familienanamnese, Medikamente, behandelnde Ärzte)
- Sicherheits- und Qualitätsinformationen zu unseren Produkten (z. B. Nebenwirkungsmeldungen)
- Finanz- und Transaktionsdaten (Zahlungen, Einkünfte, Kaufhistorie, Honorarabrechnungen)
- Zugangsdaten für Online-Konten (Benutzername, Passwort)
- Kommunikationsaufzeichnungen (z. B. E-Mails, Telefonate, Anfragen)
- Registrierungsdaten für Programme, Events oder Promotions
- Fotos und Social-Media-Handles
- Digitale oder elektronische Signatur
Zusätzliche Informationen bei Angehörigen der Gesundheitsberufe:
- Berufliche Qualifikationen, Ausbildung, beruflicher Werdegang, Mitgliedschaften
- Interaktionen mit TEOXANE (z. B. Teilnahme an Programmen, Verschreibungsverhalten)
- Praxisbezogene Informationen (Lizenz, Disziplinarhistorie, Rechtsverfahren)
- Angaben zu möglichen Interessenkonflikten
- Teilnahme an von TEOXANE unterstützten Initiativen (klinische Forschung, Seminare, Fortbildungen)
Von Dritten erhobene Informationen:
Wir können auch Daten aus sozialen Medien, öffentlichen Registern oder von Geschäftspartnern erheben, z. B. um Lizenzen von Ärzten zu prüfen oder öffentlich verfügbare Informationen zu analysieren.
Automatisiert erfasste Daten:
Geräte- und Browserinformationen, IP-Adresse, Standortdaten, Nutzungs- und Aktivitätsdaten bei der Verwendung unserer Dienste.
4. ZWECKE DER ERHEBUNG UND VERARBEITUNG
Wir verarbeiten personenbezogene Daten für folgende Zwecke:
- Bereitstellung und Unterstützung unserer Dienste
- Qualität, Sicherheit und regulatorische Berichterstattung
- Forschung und Analyse (z. B. klinische Studien, Marktforschung)
- Anpassung und Personalisierung von Inhalten
- Marketing und Werbung (im Einklang mit geltendem Recht)
- Planung und Verwaltung von Veranstaltungen
- Sicherheit und Schutz von Rechten
- Erfüllung rechtlicher Verpflichtungen
- Allgemeine Geschäftstätigkeit und operative Unterstützung
Zusätzlich für Angehörige der Gesundheitsberufe:
- Erfüllung von Verträgen (z. B. Beratungs- oder Dienstleistungsverträge)
- Entwicklung und Verbesserung unserer Programme und Angebote
- Bewertung von Förderanträgen und Stipendien
- Erfüllung von Transparenz- und Berichtspflichten gemäß Branchenstandards
5. RECHTSGRUNDLAGEN DER DATENVERARBEITUNG
TEOXANE verarbeitet personenbezogene Daten nur, wenn eine Rechtsgrundlage vorliegt, z. B.:
- Berechtigte Interessen (z. B. Bereitstellung unserer Dienste)
- Vertragserfüllung
- Vertragserfüllung im Interesse Dritter
- Gesetzliche Verpflichtung oder wichtiges öffentliches Interesse
- Schutz lebenswichtiger Interessen
- Einwilligung (jederzeit widerrufbar)
6. WEITERGABE PERSONENBEZOGENER DATEN
Wir geben personenbezogene Daten weiter:
- Innerhalb der TEOXANE-Unternehmensgruppe
- An Dienstleister und Geschäftspartner (z. B. IT, Analyse, Hosting, Zahlungsabwicklung)
- An Drittplattformen für Marketing und Analysezwecke
- Im Rahmen von Unternehmens-Transaktionen (Fusionen, Übernahmen etc.)
- An Behörden zur Erfüllung rechtlicher Verpflichtungen (z. B. Nebenwirkungsmeldungen)
- Zur Abwehr von Rechtsansprüchen oder zum Schutz unserer Rechte
- An Dritte bei berechtigtem Interesse (z. B. Betrugsprävention)
7. COOKIES, PERSONENBEZOGENE DATEN UND ANALYTIK
Wir und unsere Drittanbieter nutzen Cookies, Web-Beacons (Pixel/Tags) und ähnliche Technologien, um Informationen über die Nutzung unserer Dienste zu sammeln.
Dies umfasst z. B.: Gerätetyp, Browser, IP-Adresse, vorherige Websites, Klicks, besuchte Seiten.
Zwecke: Analyse, Fehlerbehebung, Sicherheit, Optimierung, Personalisierung von Inhalten und Werbung.
Verwaltung Ihrer Cookie-Präferenzen:
- Cookie-Einstellungen auf unseren Websites
- Browsereinstellungen (Cookies blockieren/löschen)
- Branchenprogramme zur Anzeigenkontrolle:
- USA: aboutads.info/choices
- EU: youronlinechoices.eu
- Kanada: youradchoices.ca/choices
- Japan: ddai.info/optout
Wir können auch Kundenlisten für gezielte Werbung nutzen (mit Opt-out-Möglichkeit).
Anonyme/aggregierte Daten: Wir können anonymisierte oder de-identifizierte Daten zu Analyse-, Forschungs- und Entwicklungszwecken nutzen und weitergeben.
8. INTERNATIONALE DATENÜBERMITTLUNGEN
TEOXANE ist weltweit tätig und kann personenbezogene Daten in Länder außerhalb des Erhebungslandes übertragen. Diese Daten können dortigen Gesetzen unterliegen, die möglicherweise ein niedrigeres Schutzniveau bieten.
Wir ergreifen geeignete Schutzmaßnahmen, z. B. Verträge mit Standarddatenschutzklauseln. Sollte ein Dienstleister oder Partner Daten entgegen dieser Richtlinie verarbeiten, ergreifen wir Maßnahmen zur Beendigung oder Verhinderung dieses Verhaltens.
9. AUFBEWAHRUNG PERSONENBEZOGENER DATEN
Wir speichern personenbezogene Daten, solange dies notwendig oder zulässig ist im Hinblick auf die Zwecke, für die sie erhoben wurden, sowie in Übereinstimmung mit geltendem Recht.
Die Kriterien, die wir zur Bestimmung unserer Aufbewahrungsfristen heranziehen, umfassen:
- Die Dauer unserer laufenden Beziehung zu Ihnen (zum Beispiel solange Sie ein Konto bei uns haben oder unsere Dienste weiterhin nutzen);
- Ob eine gesetzliche Verpflichtung besteht, der wir unterliegen (bestimmte Gesetze verlangen von uns beispielsweise, Daten über Ihre Transaktionen für einen bestimmten Zeitraum aufzubewahren, bevor wir sie löschen dürfen); oder
- Ob eine Aufbewahrung im Hinblick auf unsere rechtliche Position ratsam ist (wie in Bezug auf geltende Verjährungsgesetze, Rechtsstreitigkeiten oder behördliche Untersuchungen).
10. SICHERHEIT
TEOXANE hat Schutzmaßnahmen implementiert, um die von uns erhobenen personenbezogenen Daten zu sichern. Wir können jedoch nicht garantieren, dass diese Maßnahmen zu 100 % wirksam sind, um Diebstahl, Verlust, unbefugten Zugriff, Nutzung oder Offenlegung zu verhindern, und wir übernehmen keine Gewähr für die Angemessenheit, Wirksamkeit oder Zweckmäßigkeit der von uns eingesetzten Schutzmaßnahmen.
TEOXANE empfiehlt Ihnen daher, beim Übermitteln personenbezogener Daten über das Internet vorsichtig zu sein und Ihre Passwörter an einem sicheren Ort aufzubewahren.
11. YOUR PRIVACY RIGHTS AND CHOICES
You may have certain rights which depend on TEOXANE’s reason for processing your personal information, local laws, and exceptions to those laws in your jurisdiction, as described in this Section. In addition, residents of certain jurisdictions may be entitled to additional rights under the laws of those jurisdictions; please refer to the section titled, “Additional Privacy Information for Certain Jurisdictions” below for more information. We will not restrict or deny you access to our Services because of choices and requests you make in connection with your personal information. Please note, certain choices may affect our ability to deliver the Services.
• Marketing communications and reminders: You may unsubscribe or opt-out from our marketing emails and future communications at any time by following the instructions included in those emails.
• Cookie preferences. You may exercise your consumer right to opt-out by clicking the “Cookies Settings” link on the website cookie banner of the TEOXANE site you’re visiting. For further information about the data we may collect, please see our Cookie Policy.
• Access, correction, and deletion. You may have the right under applicable law to review, correct, and request deletion of your personal information. You may submit a request to access, correct, and delete personal information, or another privacy request at dataprotection@teoxane.com .
You may also submit a request to us as set forth in the “Contact Information” section below. We will respond to your request as required by applicable law. When you submit a request regarding your personal information, we reserve the right to verify your identity in connection with any requests regarding personal information to help ensure that we provide the information we maintain to the individuals to whom it pertains and allow only those individuals or their authorized representatives to exercise rights with respect to that information.
To help us respond to your request, all communications to TEOXANE should include the sender’s name and contact information (such as email address, phone number or mailing address), and a detailed explanation of the request. In addition, communications related to TEOXANE websites should include, as applicable, the email address used for registration and the TEOXANE website address on which personal information was provided (e.g., www.teoxane.com ). Email requests to delete, amend, or correct personal information should include “Deletion Request” or “Amendment/Correction Request”, as applicable, in the subject line of the email. TEOXANE will endeavor to respond to all reasonable requests in a timely manner, and in any case, within any time limits prescribed by applicable local law.
Please note that TEOXANE may not be able to comply with a request where personal information has been destroyed, erased, or made anonymous in accordance with TEOXANE’s record retention obligations and practices, or where we are unable to verify your identity.
12. CHILDREN
Our Services are not targeted to children, and we do not knowingly collect personal information from children under 13 without parental consent. If we discover that a child under 13 has provided us with personal information, we will delete such information from our systems. If you are a parent and you believe we have collected your child’s information, please contact us as set forth below in the “Contact Information” section.
13. LINKS TO THIRD-PARTY SERVICES
Links to other websites, services, and applications that are not operated or controlled by TEOXANE (“Third-Party Services”) may be contained in our Services. This Privacy Policy does not apply to the Third-Party Services. Please review the applicable privacy policy of any Third-Party Services before providing any information to or through them.
14. CONTACT INFORMATION
Any questions, concerns, request relating to your privacy rights and choices or complaints regarding handling of personal information by TEOXANE, or related to revocation of consent to collect, process, transfer, or disclose your personal information should be directed by email to dataprotection@teoxane.com .
You may also contact us by mail at the following address:
TEOXANE SA
Attn: Data Privacy Officer
Rue de Lyon 105,
1203 Geneva
SWITZERLAND
15. CHANGES TO TEOXANE PRIVACY POLICY
TEOXANE may update this Privacy Policy from time to time. TEOXANE will provide notice of such changes by updating the effective date listed on this Privacy Policy. If we materially change how we process your personal information previously collected by us, we will not use the personal information previously gathered without providing notice and/or obtaining your consent. Please check this Privacy Policy frequently for the latest information on our privacy practices.
16. ADDITIONAL PRIVACY INFORMATION FOR CERTAIN JURISDICTION
Residents of certain jurisdictions may have additional rights and choices regarding the processing of their personal information, as described in the applicable Privacy Policy supplements.
16.1. EU/UK/SWITZERLAND SUPPLEMENT
If you are an EU/UK/Swiss citizen and/or accessing TEOXANE websites in the EEA, the UK or Switzerland, then this Supplement may apply in addition to the above.
EU, UK, and Swiss citizens generally have the following rights with respect to their personal information:
• The right to request access to the personal information that TEOXANE has about you;
• The right to rectify or correct any personal information that is inaccurate or incomplete;
• The right to request a copy of your personal information in electronic format so that you can transmit the data to third parties, or to request that TEOXANE directly transfer your information to third parties;
• The right to object to the processing of your personal information for marketing and other purposes;
• The right to erasure of your personal information when it is no longer needed for the purposes for which you provided it, as well as the right to restriction of processing of your personal information to certain limited purposes where erasure is not possible; and
• The right to withdraw consent at any time (where relevant)
Transfers of your personal information may be made to entities located outside the European Economic Area, United Kingdom, and/or Switzerland, including entities located in the United States, for processing consistent with the purposes above. TEOXANE will implement appropriate contractual measures (including the Standard Contractual Clauses, a copy of which you can obtain by contacting dataprotection@teoxane.com ) to ensure that the relevant TEOXANE companies and third parties outside the European Economic Area, United Kingdom, and/or Switzerland provide an adequate level of protection to your personal information as set out in this Privacy Policy and as required by applicable law.
For the processing of personal information relating to the EEA, UK, and/or Switzerland, TEOXANE has assigned a data protection officer responsible for overseeing our compliance with data protection law, whom you may contact at dataprotection@teoxane.com in case of any questions or concerns regarding the processing of your personal information.
If TEOXANE’s processing of your personal information is covered by EU/UK/Swiss law, you may also lodge a complaint with the corresponding data protection supervisory authority in your country of residence.
You can find the relevant supervisory authority’s name and contact details under http://ec.europa.eu/justice/data-protection/bodies/authorities/index_en.htm .
You can find the contact details of the UK Commissioner under https://ico.org.uk/ , and of the Swiss Federal Data Protection and Information Commissioner under https://www.edoeb.admin.ch/edoeb/de/home.html.
16.2. BRAZIL SUPPLEMENT
If you are citizen of Brazil and/or accessing TEOXANE websites in Brazil, then this Supplement may apply in addition to the above.
For the processing of Personal Information relating to Brazil, TEOXANE has assigned a data protection office responsible for overseeing our compliance with Brazilian data protection law, whom you may contact at dataprotection@teoxane.com in case of any questions or concerns regarding the processing of your Personal Information.
If TEOXANE’s processing of your Personal Information is covered by Brazilian law, you may also lodge a complaint with the Brazilian Data Protection National Authority (ANPD) and afford the ANPD an opportunity to use best efforts to resolve the issue. Additional resources regarding the complaint process are available here: https://www.gov.br/anpd/pt-br/canais_atendimento .
16.3. CHINA SUPPLEMENT
This China Addendum supplements the TEOXANE Privacy Policy and provides additional information about how TEOXANE processes personal information provided by individuals within China. This China Addendum shall be read in conjunction with TEOXANE Privacy Policy. Please refer to the TEOXANE Privacy Policy for issues not specified in this China Addendum.
TEOXANE SA (“TEOXANE”, contact address: Rue de Lyon 105, 1203 Geneva, SWITZERLAND; contact info.: dataprotection@teoxane.com ) is the personal information controller of personal information you provided. As defined under China’s Personal Information Protection Law, personal information refers to any information related to identified or identifiable natural persons recorded by electronic or other means, excluding anonymized information.
Providing personal information overseas. TEOXANE is a company located in Switzerland, and personal information you provide to TEOXANE will be transferred outside of China.
You shall be cautious to fully comply with applicable laws and regulations in China with respect to providing information or data overseas and shall avoid providing TEOXANE with any information or data whose transfer outside of China is prohibited under any applicable law or regulation.
Processing sensitive personal information. As defined under China’s Personal Information Protection Law, sensitive personal information refers to personal information which is likely to result in damage to the personal dignity of any natural person or damage to his or her personal or property safety once disclosed or illegally used. Sensitive personal information may include biometric identification, religious belief, specific identity, medical health, financial account, whereabouts, and tracking data etc., as well as personal information of minors under the age of 14.
TEOXANE will process sensitive personal information only to the extent necessary and will take organizational and technical measures to protect security of sensitive personal information. Prior to processing sensitive personal information, TEOXANE will notify you about the necessity of the data processing as well as potential impact on your interests and will provide you the opportunity to affirmatively and explicitly authorize or consent to the data processing.
16.4. JAPAN SUPPLEMENT
If you are citizen of Japan and/or accessing TEOXANE websites in Japan, then this Supplement may apply in addition to the above.
Transfers of your personal information may be made to entities located outside of Japan, including entities located all over the world, for processing consistent with the purposes above. TEOXANE will implement appropriate measures to ensure that the relevant TEOXANE companies and third parties outside of Japan provide an adequate level of protection to your personal information as set out in this Privacy Policy and as required by applicable law.
Compliance with Related Laws, Regulations and Guidelines. TEOXANE conducts business in compliance with the applicable laws and regulations, etc. governing the collection, use, and provision of your personal information. TEOXANE will process and handle your personal information appropriately in compliance with the “Act on the Protection of Personal Information” (hereinafter referred to as “Personal Information Protection Act”), other related laws and regulations, and the relevant “Guidelines Concerning the Act on the Protection of Personal Information”.
Purpose of Utilization. TEOXANE will use your personal information it collects for the internal purposes set forth below, in addition to those set forth in “Purposes of Collection and Processing”.
• Personal information of healthcare professionals
o To collect and provide information on the quality, safety, efficacy, or proper use of pharmaceutical products and treatments.
o To plan, request, and conduct clinical trials, post-marketing surveillance, and research, and provide and receive information.
o To provide information on lectures, information meetings, and conferences hosted, co-hosted, or supported by TEOXANE, and to conduct post-lecture questionnaires.
o To implement TEOXANE’s internal approval procedures and to create and maintain records related to such procedures.
o To confirm and respond to inquiries regarding Services and products provided by TEOXANE.
o To analyze information for strategic planning on TEOXANE website and in our sales and advertising activities
o To collect, manage, and review information related to payment processing and preparation of payment records.
• Personal Information of Patients
o To conduct clinical trial, post-marketing surveillance, and other research and investigation related to our business.
o To perform safety management operations
o To provide compensation for adverse health effects, etc.
o Personal Information of Employment Candidates
o To screen candidates for employment and to communicate with potential employees
o To select employees, and to communicate with potential employees regarding the selection process or pre-employment procedures.
o To consider and decide whether to accept or reject the application.
Joint Utilization of Personal Information. We will jointly utilize personal information as follows:
• TEOXANE Group Companies
We jointly utilize the following personal information with TEOXANE Group companies: (i) personal information of our business partners (wholesalers, contractors, lawyers and other consultants, etc.), (ii) personal information of healthcare providers involved in clinical trials, post-marketing surveillance, research and preparation/presentation of papers conducted by us and academic presentations, healthcare providers providing safety information, and healthcare providers receiving our Services, and (iii) personal information of participants in clinical trials etc. and patients using our Services.
16.5. ISRAEL SUPPLEMENT
If you provide personal information to TEOXANE and/or access TEOXANE Israel websites, then this Supplement will apply in addition to the above.
You should be aware that you are not legally bound to provide any personal information to TEOXANE and that your personal information is provided on your own free will.
By providing the personal information, you agree that TEOXANE may share your personal information with other TEOXANE affiliates, third-party vendors and other entities including those located outside the State of Israel and outside the European Economic Area, including entities located in the United States, for the purposes detailed in this Privacy Statement.
Your rights to review or amend your personal information will be in accordance with the Protection of Privacy Law, 5741-1981. If you want to review or amend your personal information, please contact us in accordance with the contact information detailed in this Privacy Statement.
Processing your personal information, your interaction with TEOXANE, and this Privacy Statement, are subject to the laws of Israel. In case of conflict, the laws of Israel shall prevail.
16.6. ADDITIONAL INFORMATION FOR CALIFORNIA RESIDENTS
In this section, we provide additional information to California residents about how we handle their personal information, as required under the California Consumer Privacy Act, as amended by the California Privacy Rights Act, and its implementing regulations (collectively, the “CCPA”). This section does not address or apply to our handling of personal information that is exempt under the CCPA.
Categories of personal information. While our processing of personal information varies based upon our relationship and interactions with you, the table below generally identifies the categories of personal information we have collected about California residents in the past 12 months, as well as the categories of third parties to whom we may disclose this information for a business or commercial purpose:
Categories of Personal Information
Third party disclosures for business or commercial purposes
Identifiers: including direct identifiers, such as name, user ID, username, account number or unique personal identifier; email address, phone number, address, and other contact information; IP address and other online identifiers.
• service providers
• healthcare professionals
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Customer records: including personal information, such as name, account name, user ID, contact information, education and employment information, account number, and financial or payment information that individuals provide us to purchase or obtain our Services. For example, this may include information collected when an individual registers for an account, purchases or orders our products and Services, or enters into an agreement with us related to our products and Services.
• service providers
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Commercial information: including records of products or services purchased, obtained, or considered, or other purchasing or use histories or tendencies. For example, this may include demographic information that we receive from third parties to better understand and reach our customers.
• service providers
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Internet and electronic network activity information: including, but not limited to, browsing history, search history, and information regarding interactions with an internet website, application, or advertisement, including other usage data related to your use of any of our Services or other online services.
• service providers
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Location data: including location information about a particular individual or device.
• service providers
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Audio, visual and other electronic data: includes electronic or visual information, such as your photograph or electronic signature, call recordings, and webinar and other event recordings.
• service providers
• healthcare professionals
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Professional information: includes professional and employment-related information, such as current and former employer(s) and position(s), credentials, resume, business contact information and professional memberships.
• service providers
• healthcare professionals
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Education information: includes information about an individual’s educational history (such as the schools attended, degrees you were awarded, and associated dates).
• service providers
• healthcare professionals
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Profiles and inferences: includes inferences drawn from any of the information identified above to create a profile reflecting a consumer’s preferences, characteristics, behavior, or attitudes.
• service providers
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Protected classifications: we may collect some information that is considered a protected classification under California/federal law, including your gender, date of birth, and marital status.
• service providers
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
Sensitive personal information: in limited circumstances, we collect racial or ethnic origin, genetic data, personal information concerning a consumer’s health and/or sexual orientation, financial information, Social Security number, passport number and other government identifiers.
• service providers
• healthcare professionals
• advisors and agents
• regulators, government entities and law enforcement
• affiliates and subsidiaries
• advertising networks
• data analytics providers
• social networks
• internet service providers, operating systems, and platforms
• others as required by law
“Sales” and “Sharing” of Personal Information. The CCPA defines a “sale” as disclosing or making available to a third-party personal information in exchange for monetary or other valuable consideration, and “sharing” broadly includes disclosing or making available personal information to a third party for purposes of cross-context behavioral advertising. While we do not disclose personal information to third parties in exchange for monetary compensation, we may “sell” or “share” (as defined by the CCPA) internet and electronic network activity information, and profiles and inferences, and identifiers to third party ad companies and analytics providers. We do so to improve and evaluate our advertising campaigns, monitor, and measure site performance, and better reach customers and prospective customers with more relevant ads and content. We do not sell or share sensitive personal information, nor do we sell or share any personal information about individuals who we know are under sixteen (16) years old.
Sources of Personal Information. In general, we may collect personal information from the following sources:
• Directly from individuals
• Through our websites, mobile apps, and Services
• From healthcare professionals
• From contract research organizations and clinical trial investigators
• From government agencies and/or public records
• From third-party service providers, data brokers, or business partners
• From industry and patient groups and associations
• From third party sources
Purposes of Collection, Use, and Disclosure. As described in more detail in the “Purposes of Collection and Processing” and “Disclosures of Personal Information” sections above, we collect, use, disclose, and otherwise process the above personal information for the following business or commercial purposes and as otherwise directed or consented to by you:
• Providing services and support
• Quality, safety, and regulatory reporting
• Research and analytics
• Customization and personalization
• Marketing and advertising
• Planning and managing events
• Security and protection of rights
• Compliance with law and legal process
• General business and operational support
Sensitive Personal Information. Notwithstanding the above, we only use and disclose sensitive personal information as reasonably necessary (i) to perform our Services requested by you, (ii) to help ensure security and integrity, including to prevent, detect, and investigate security incidents, (iii) to detect, prevent and respond to malicious, fraudulent, deceptive, or illegal conduct, (iv) to verify or maintain the quality and safety of our Services, (v) for compliance with our legal obligations, (vi) to our service providers who perform Services on our behalf, and (vii) for purposes other than inferring characteristics about you. We do not use or disclose your sensitive personal information other than as authorized pursuant to section 7027 of the CCPA regulations (Cal. Code. Regs., tit. 11, § 7027 (2022)).
Retention. We retain the personal information we collect only as reasonably necessary for the purposes described in this Privacy Policy, in accordance with our records retention policies, as required under applicable law, or as otherwise disclosed to you at the time of collection. The criteria used to determine our retention periods includes: (i) the length of time we have an ongoing relationship with you; (ii) whether we have a legal obligation to retain the information; and (iii) whether retention is necessary due to the nature of our business activities (for example, enforcing other applicable program or participation terms and conditions, or any active litigation or regulatory investigations).
CCPA Rights of California Residents. Individuals who are residents of California generally have the following rights under California law with respect to their personal information processed by us, subject to certain limitations and exceptions:
• To opt out of sales and sharing. The right to opt-out of our sale and sharing of your personal information.
• To limit certain uses and disclosures of sensitive personal information. The right to limit our use or disclosure of sensitive personal information to those uses authorized by the CCPA. As noted above in the Section titled, “Sensitive Personal Information,” we only use and disclose Sensitive Personal Information as authorized by the CCPA.
• Deletion. You have the right to request that we delete your personal information, subject to certain exceptions.
• To know/access. You have the right to request access to the personal information we have collected about you, including the categories of personal information, the categories of sources from which the personal information was collected, the business or commercial purpose for collecting, selling, or sharing personal information, the categories of third parties to whom we disclose personal information, and the specific pieces of personal information we have collected about them.
• Correction. You have the right to request correction of inaccurate personal information that we have about you.
• Non-discrimination. You have the right not to be subject to discriminatory treatment for exercising your rights under the CCPA.
Submitting Requests to Access, Delete, Correct, and Limit. California residents may submit a request according to Section “Contact” of this Privacy Policy.
We will process your request based upon the personal information in our records that is linked or reasonably linkable to the information provided in your request. In some cases, we may request additional information to verify your request or where necessary to process your request. If we are unable to adequately verify a request, we will notify the requestor. Authorized agents may initiate a request on behalf of another individual by emailing dataprotection@teoxane.com to provide proof of their authorization and we may also require that the relevant consumer directly verify their identity and the authority of the authorized agent.