Privacy Policy
Privacy Policy
Welcome to the website www.apotekarica.hr .
We care about the protection of personal data and user privacy, and we want to inform you how we collect, use and provide information in a lawful and fair manner.
These rules define and regulate how we use and protect all personal data that visitors to the website www.apotekarica.hr submit when using this website.
Personal data
Personal data is any information relating to an identified or identifiable visitor. An identifiable visitor is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that individual. Processing of personal data means any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means.
Before a visitor to the website www.apotekarica.hr enters their personal data (name, surname, e-mail address, telephone number) for the purpose of asking a question, submitting a complaint, sending any message in the "Contact us" section, receiving a newsletter, or for the purpose of purchasing a product via the web shop, we have enabled the visitor to be informed about all necessary information related to the protection of personal data.
Personal data protection statement
General information: ZU Ljekarne Petrinec collects and processes personal data and pays special attention to their adequate protection. This statement describes what data we collect, how we process it, and for what purposes we use it, as well as your rights related to your data.
The person responsible for data processing is: Data processing manager of ZU Ljekarne Petrinec
Slavonska Street 54
10 000 Zagreb
OIB: 35012028456
Phone: +385 91 5192 620
Email address for contact: webshop@apotekarica.hr
Types of personal data
We process the following personal data in relation to our employees, contractors performing student work, respondents, customers, suppliers, contractual partners, submitters of inquiries or complaints, recipients of marketing content, and job candidates at ZU Ljekarne Petrinec.
- Employees : Name, surname, address, OIB, citizenship, gender, date of birth, title, professional qualifications, education, contact number, bank account number, salary information, official e-mail, photo, video recording, and all other data determined by regulations or necessary for the execution of the contract.
- Contractors of student work : Name, surname, OIB, gender, day, month and year of birth, place of residence, contact number, e-mail, and other personal data necessary for performing work.
- Customers : Name, surname, address, contact number, e-mail, account number, employment information, and all other information necessary for the execution of contracts and legal obligations.
- Suppliers : Name, surname, OIB, address, employment information of persons authorized to represent or contact persons, and all other information necessary to fulfill the contract.
- Submitters of inquiries and/or complaints : Name, surname, address, contact number, e-mail, and all other personal data that the submitter submits to ZU Ljekarne Petrinec.
- Recipients of marketing content : Email address, contact number.
- Job candidates : Name, surname, address, OIB, gender, date of birth, citizenship, education information, information on previous work experiences, contact number, e-mail, photo, and all other information contained in the resume and motivation letter.
Processing of personal data in the payment process
ZU Ljekarne Petrinec, when processing payments on the website www.apotekarica.hr , as a condition for paying for products and services by credit or debit cards, requests the customer's consent to activate the payment process through our partners. The customer activates the card processing and collection process by confirming (clicking) the "pay" link. ZU Ljekarne Petrinec does not at any time dispose of, collect or process personal data entered for the purpose of card processing and collection.
Purposes of processing personal data and legal basis for processing
The legal basis for the processing of personal data of employees is the Ordinance on the content and manner of keeping records of employees for the purpose of establishing an employment relationship and fulfilling the legal obligations of ZU Ljekarne Petrinec. An additional legal basis for the processing of personal data of employees is an employment contract, with the aim of fulfilling the rights and obligations arising from the employment relationship. The legal basis for the processing of personal data of contractors performing student work is a contract for performing student work. The legal basis for the processing of personal data of customers, suppliers and contractual partners is a contract, all with the aim of fulfilling the rights and obligations arising from the contractual relationship. The legal basis for the processing of personal data of recipients of marketing content is legitimate interest, and the data is processed for marketing purposes. The legal basis for the processing of personal data of job candidates is consent, with the aim of employment at ZU Ljekarne Petrinec.
Forwarding of personal data
Personal data of employees are provided to authorized recipients, such as the labor inspector, the Croatian Insurance Institute, courts, and other authorized recipients in accordance with legal obligations. The data controller will not provide personal data of customers to any third parties, except in the event that they are to serve as evidence in court, administrative, arbitration or other proceedings. The data controller is also authorized to provide personal data of customers for use only and exclusively based on the written request of the recipient, if necessary for the purpose of performing tasks within the scope of the recipient's legally established activity, or for the implementation of contracts with providers of goods distribution and parcel delivery services.
Transfer to third countries
ZU Ljekarne Petrinec will not transfer personal data outside the borders of the European Union. In the event of the transfer of personal data to countries that do not have an adequate level of personal data protection, the Data Controller will take all necessary protection measures in accordance with the provisions of the GDPR.
Retention period
ZU Ljekarne Petrinec has prescribed in its internal regulations the retention period for certain personal data. Personal data of employees, suppliers, customers, contractors and other categories of respondents are retained in accordance with legal obligations, or for as long as necessary to fulfill contractual or employment obligations. Depending on the specific category of personal data, retention periods may vary, for example:
- Employee data processed for the purpose of fulfilling an employment contract is retained until the employment relationship ends.
- Customer data is kept in accordance with legal regulations, usually for 11 years, or until there are no disputes or other obligations.
- The data of recipients of marketing content is kept until unsubscribed or as long as there is a legitimate interest in processing.
Rights of the respondent
Users of the website www.apotekarica.hr have rights arising from the GDPR:
- Right to rectification : If we process your personal data that is incomplete or inaccurate, you can ask us to correct or supplement it at any time.
- Right of access : You have the right to request confirmation as to whether we are processing your personal data and, if so, to request access to that data.
- Right to erasure : You can request that we erase your personal data if we have processed it unlawfully or if the processing constitutes a disproportionate interference with your rights.
- Right to restriction of processing : If you dispute the accuracy of the data or if the processing of the data was unlawful, but you do not want us to delete it, but rather want the processing to be restricted.
- Right to data portability : If you have provided us with your data, you can request that we deliver it to you in a structured form.
- Right to object : If we process data on the basis of public interest or legitimate interest, you can lodge an objection against such data processing.
- Right to complain : If you believe that we have violated data protection laws, you can contact us or file a complaint with the competent authority.
How to exercise your rights
If you wish to exercise any of these rights, you may contact us using our contact details. In case of doubt, we may request additional information to verify your identity. If you exercise any of these rights excessively and with a clear intention of abuse, we may charge an administrative fee or refuse to process your request.
Automated decision making
In relation to your personal data, we do not carry out an automated decision-making process.
Changes to this Statement
We may change this statement, of which you will be notified in a timely manner.
Health at a Click – Get 10% Discount!
Sign up for the latest expert advice, exclusive offers and products that keep you healthy.