Service

Privacy Policy

Type of website: Ecommerce
Effective date: 14th day of February, 2023

www.amberorthotics.com (the “Site”) is owned and operated by Ambroise Holland B.V. Amber is the data controller and can be contacted at:

info@amberorthotics.com
(053) 430-2836
Twekkeler Es 24, 7547 SM Enschede

Purpose

The purpose of this privacy policy (this “Privacy Policy”) is to inform users of our Site of the following:

  1. The personal data we will collect;
  2. Use of collected data;
  3. Who has access to the data collected;
  4. The rights of Site users; and
  5. The Site’s cookie policy.

This Privacy Policy applies in addition to the terms and conditions of our Site.

GDPR

For users in the European Union, we adhere to the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, known as the General Data Protection Regulation (the “GDPR”). For users in the United Kingdom, we adhere to the GDPR as enshrined in the Data Protection Act 2018.

We have not appointed a Data Protection Officer as we do not fall within the categories of controllers and processors required to appoint a Data Protection Officer under Article 37 of the GDPR.

Consent

By using our Site users agree that they consent to:

  1. The conditions set out in this Privacy Policy.

    When the legal basis for us processing your personal data is that you have provided your consent to that processing, you may withdraw your consent at any time. If you withdraw your consent, it will not make processing which we completed before you withdrew your consent unlawful.

    You can withdraw your consent by: Contacting us at info@amberorthotics.com.

Legal Basis for Processing

We collect and process personal data about users in the EU only when we have a legal basis for doing so under Article 6 of the GDPR.

We rely on the following legal bases to collect and process the personal data of users in the EU:

  1. Users have provided their consent to the processing of their data for one or more specific purposes; and
  2. Processing of user personal data is necessary for us to take, at the request of a user, steps before entering a contract or for the performance of a contract to which a user is a party. If a user does not provide the personal data necessary to perform a contract the consequences are as follows: Amber won’t be able to fulfill the order.

Personal Data We Collect

We only collect data that helps us achieve the purpose set out in this Privacy Policy. We will not collect any additional data beyond the data listed below without notifying you first,

Data Collected in a Non-Automatic Way
We may also collect the following data when you perform certain functions on our Site:

  1. First and last name;
  2. Age;
  3. Date of birth;
  4. Sex;
  5. Email address;
  6. Submitted images*;
  7. Clinical history**
  8. Phone number;
  9. Address;
  10. Payment information; and
  11. Auto fill data.

This data may be collected using the following methods:

  1. Creating an account.
  2. Filling out order details
  3. Submitting an image following the upload-your-photo/ link

At Amber Orthotics, we prioritize the privacy and security of our customers’ personal information. We understand the sensitivity of the data we collect, especially concerning images and clinical history, and we are committed to adhering to strict privacy standards in compliance with the General Data Protection Regulation (GDPR).

*Collection and Use of Submitted Images:

Purpose of Collection:
When completing a purchase on our website, customers may be required to submit an image of their hand or other relevant body parts. These images are essential for the accurate manufacturing of custom-made orthoses, ensuring a precise fit and functionality tailored to the individual’s needs.

Handling and Security:
Submitted images are processed solely for the specific purpose of creating customized orthotic devices. These images are securely stored in our Customer Relationship Management (CRM) system, which employs industry-standard encryption and security protocols to protect against unauthorized access. The data is retained only for as long as necessary to fulfill the intended purpose, after which it is securely deleted.

**Collection and Use of Clinical History:

Purpose of Collection:
In certain cases, we may request information regarding your clinical history. This data helps us understand whether our products are suitable for you and to tailor our recommendations to meet your specific health needs. The clinical history may include information about medical conditions, previous treatments, and other health-related details.

Handling and Security:
Clinical history information is collected with your explicit consent and is used solely for assessing product suitability and improving our services. We implement stringent security measures to protect this sensitive data, ensuring that it is stored securely and accessed only by authorized personnel. This information is kept confidential and is not shared with third parties without your explicit consent, except as required by law.

 

Data Collected via Third-Party Services:
We use third-party services such as Meta (formerly Facebook) and Google Ads to provide targeted advertising. These services may collect data including but not limited to user behavior on our site, demographic information, and interests. We use cookies and similar technologies to facilitate this process. You can manage your cookie preferences directly through your browser settings.

Sensitive Personal Data:
We may collect sensitive personal data, including clinical indications provided by users. This data is collected only with your explicit consent and is used strictly for the purpose of providing our services. We implement advanced security measures to protect this data.

Sharing Data with Third Parties:
We may share your data with Meta and Google for the purpose of providing targeted advertisements. These third parties use the data according to their own privacy policies. We recommend reviewing these policies to understand how your data is handled.

 

Your Rights:
You have the right to object to the processing of your data for direct marketing purposes. You can exercise this right by contacting us or managing your preferences through the provided links.

 

 

At Amber Orthotics, we collect and process this information solely for the purposes of providing our services and ensuring the best possible product outcome for you. All data collected is stored securely, with access restricted to authorized personnel who require it to perform their duties.

We do not share, sell, or disclose your personal information to third parties without your explicit consent, except where required by law. Our data retention policy ensures that personal data is only kept for as long as necessary to fulfil the purpose for which it was collected, after which it is securely deleted. We continually review our data protection practices to ensure compliance with GDPR and other relevant data protection laws.

For further information on how we handle and protect your data, or if you have any questions or concerns, please contact us at info@amberorthotics.com. Your privacy is our priority, and we are committed to ensuring the highest level of data protection. 

How We Use Personal Data

Data collected on our Site will only be used for the purposes specified in this Privacy Policy or indicated on the relevant pages of our Site.
We will not use your data beyond what we disclose in this Privacy Policy.

The data we collect when the user performs certain functions may be used for the following purposes:

  1. Communication & marketing
  2. Product Development 
  3. Order fulfillment 

Who We Share Personal Data With

Employees

We may disclose user data to any member of our organization who reasonably needs access to user data to achieve the purposes set out in this Privacy Policy.

 

Other Disclosures

We will not sell or share your data with other third parties, except in the following cases:

  1. If the law requires it;
  2. If it is required for any legal proceeding
  3. To prove or protect our legal rights; and
  4. To buyers or potential buyers of this company in the event that we seek to sell the company.

If you follow hyperlinks from our Site to another Site, please note that we are not responsible for and have no control over their privacy policies and practices.

How Long We Store Personal Data

User data will be stored until the purpose the data was collected for has been achieved.

You will be notified if your data is kept for longer than this period.

How We Protect Your Personal Data

In order to protect your security, we use the strongest available browser encryption and store all of our data on servers in secure facilities.
All data is only accessible to our employees. Our employees are bound by strict confidentiality agreements and a breach of this agreement would result in the employee’s termination.

While we take all reasonable precautions to ensure that user data is secure and that users are protected, there always remains the risk of harm. The Internet as a whole can be insecure at times and therefore, we are unable to guarantee the security of user data beyond what is reasonably practical.

Your Rights as a User

Under the GDPR, you have the following rights:

  1. Right to be informed;
  2. Right of access;
  3. Right to rectification;
  4. Right to erasure;
  5. Right to restrict processing
  6. Right to data portability; and
  7. Right to object.

Children

We do not knowingly collect or use personal data from children under 16 years of age. If we learn that we have collected personal data from a child under 16 years of age, the personal data will be deleted as soon as possible. If a child under 16 years of age has provided us with personal data their parent or guardian may contact our privacy officer.

How to Access, Modify. Delete, or Challenge the Data Collected

If you would like to know if we have collected your personal data, how we have used your personal data, if we have disclosed your personal data and to who we disclosed your personal data, if you would like your data to be deleted or modified in any way, or if you would like to exercise any of your other rights under the GDPR, please contact us here:

info@amberorthotics.com
(053) 430-2836
Twekkeler Es 24, 7547 SM Enschede

Do Not Track Notice

Do Not Track (“DNT”) is a privacy preference that you can set in certain web browsers. We do not track the users of our Site over time and across third party websites and therefore do not respond to browser-initiated DNT signals.

How to Opt-Out of Data Collection, Use or Disclosure

In addition to the method(s) described in the How to Access, Modify, Delete, or Challenge the Data Collected section, we provide the following specific opt-out methods for the forms of collection, use, or disclosure of your personal data specified below:

  1. You can opt-out of the use of your personal data for marketing emails. You can opt-out by clicking “unsubscribe” on the bottom of any marketing email or updating your email preferences under “Your Account”
  2. You can contact us directly at info@amberorthotics.com to opt-out

Cookie Policy

A cookie is a small file, stored on a user’s hard drive by a website. Its purpose is to collect data relating to the user’s browsing habits. You can choose to be notified each time a cookie is transmitted. You can also choose to disable cookies entirely in your internet browser, but
this may decrease the quality of your user experience.

We use the following types of cookies on our Site:

  1. Functional cookies
    Functional cookies are used to remember the selections you make on our Site so that your selections are saved for your next visits;
  2. Analytical cookies
    Analytical cookies allow us to improve the design and functionality of our Site by collecting data on how you access our Site, for example data on the content you access, how long you stay on our Site, etc.; and
  3. Targeting cookies
    Targeting cookies collect data on how you use the Site and your preferences. This allows us to personalize the information you see on our Site for you.

Modifications

This Privacy Policy may be amended from time to time in order to maintain compliance with the law and to reflect any changes to our data collection process. When we amend this Privacy Policy, we will update the “Effective Date” at the top of this Privacy Policy. We recommend that our users periodically review our Privacy Policy to ensure that they are notified of any updates. If necessary, we may notify users by email of changes to this Privacy Policy.

Complaints

If you have any complaints about how we process your personal data, please contact us through the contact methods listed in the Contact
Information section so that we can, where possible, resolve the issue. If you feel we have not addressed your concern in a satisfactory manner you may contact a supervisory authority. You also have the right to directly make a complaint to a supervisory authority.

You can lodge a complaint with a supervisory authority by contacting the European Data Protection Supervisor (EDPS)

Contact Information

If you have any questions, concerns or complaints, you can contact us at:

info@amberorthotics.com
(053) 430-2836
Twekkeler Es 24, 7547 SM Enschede

2024 AmberOrthotics.com®

Shopping Cart