1. Definitions and Scope of This Policy
For the purposes of this Privacy Policy:
"Personal Information" refers to any information that identifies, relates to, describes, or could reasonably be linked with an identifiable natural person, such as names, addresses, email addresses, IP addresses, or payment information.
"Processing" means any operation performed on personal information, whether or not by automated means, including collection, storage, use, disclosure, transfer, or deletion.
This Privacy Policy applies to individuals who visit our website, place orders, contact customer support, subscribe to newsletters, interact with ads or analytics tools, and otherwise engage with our Services.
2. Information We Collect
We collect personal information in several ways, including directly from users, automatically through technical means, and from third-party sources where permitted by law.
2.1. Information You Provide
When you interact with our Services, create an account, place an order, or contact us, you may provide the following directly:
Identity details: first and last name, username, date of birth (if applicable)
Contact information: email address, telephone number, postal address, billing and shipping addresses
Account and profile data: login credentials, customer identifiers, preferences
Financial information: payment details and transaction information submitted through secure, third-party payment processors
Communications and support data: messages you send to us, survey responses, comments, or feedback
This collection is necessary to fulfill contract performance obligations and to provide Services securely.
2.2. Automatically Collected and Technical Information
When you visit the Services, we and our partners collect technical information about your device and activities, including:
Device data: hardware model, operating system, unique device identifiers
Usage data: pages visited, links clicked, time spent on pages, session identifiers
Log data: server logs, IP address, browser type and version, region and language settings
Cookies and tracking technologies: used to recognize your device and preferences, optimize performance, and support analytics
2.3. Third-Party Sources
We may receive personal information about you from third-party partners, such as marketing and analytics providers, social media platforms when you login via social media credentials, and fraud detection services.
3. Purposes for Processing Personal Information
We process personal information for explicit, legitimate, and necessary purposes, including:
3.1. Contractual Obligations
To process transactions, fulfill orders, verify payments, deliver products, manage returns and exchanges, communicate order status, and otherwise perform obligations under agreements with you.
3.2. Communication Purposes
To reply to enquiries, send confirmations, announcements, security alerts, and informational updates regarding changes to our Services, policies, or your account.
3.3. Marketing and Advertising
With your consent where required by law, we may send newsletters and promotional materials and tailor advertising content to your interests. You may opt-out of marketing communications at any time.
3.4. Analytics, Research & Service Improvement
We analyze aggregated and behavioral data to understand usage trends, improve user experience, develop new features, monitor performance, and detect operational issues.
3.5. Security, Fraud Prevention & Legal Compliance
To protect the integrity of our Services, detect and prevent fraud, enforce our Terms & Conditions, and comply with applicable laws, court orders, or lawful requests by public authorities.
4. Legal Bases for Processing (GDPR)
For users in the European Union and EEA, GDPR requires that we identify lawful bases for each processing activity:
Performance of a Contract: To fulfill orders and provide Services you request
Legal Obligation: To comply with legal requirements such as tax, accounting, or consumer protection laws
Consent: Where you agree to certain types of processing, such as marketing communications
Legitimate Interests: To run our business responsibly, improve Services, secure systems, and prevent fraud, provided such interests do not override your fundamental rights and freedoms
We only process data where a valid legal basis exists.
5. User Rights Under GDPR
If you are located in the EU/EEA, you have the following robust rights under GDPR:
Right of Access: You may request confirmation of whether we hold your personal data and obtain a copy
Right to Rectification: You may request correction of inaccurate or incomplete data
Right to Erasure: You may request deletion of data where processing is no longer necessary or lawful
Right to Restrict Processing: You may limit how we use your data in specified circumstances
Right to Data Portability: You can receive your data in a structured, machine-readable format
Right to Object: You may object to processing based on our legitimate interests or direct marketing
Right to Withdraw Consent: If processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing
To exercise any of these rights, please contact us at the address below. Requests will be handled in accordance with GDPR timelines and verification procedures.
6. Rights Under CCPA (California)
If you are a California resident, the California Consumer Privacy Act grants additional protections, including:
Right to Know: You may request information about categories of personal data collected, sources, purposes, and third-party disclosures
Right to Access: You may request a copy of specific pieces of personal data collected about you
Right to Deletion: You may request deletion of your personal data, subject to specific exceptions
Right to Opt-Out: You may opt out of personal data "sale" or sharing for cross-context behavioral advertising. (We do not sell personal data)
Non-Discrimination: You are protected from discriminatory treatment for exercising your CCPA rights
Verification of identity is required for CCPA requests.
7. Cookies and Tracking Technologies
We use cookies, pixel tags, web beacons, and similar technologies to:
• Enable essential site functionality
• Improve performance and analytics
• Understand user behavior across sessions
• Tailor marketing and relevant content
You can control cookies through your browser settings. Note that disabling cookies may affect the functionality of our Services.
8. Data Sharing & Third Parties
We do not sell your personal information. We may share personal information with:
Service Providers: Trusted third parties who assist in operating our website, business, or services (e.g., payment processors, shipping partners, analytics providers), bound by confidentiality obligations.
Legal Requirements: Government authorities or law enforcement when required by applicable law or to protect our legal rights.
Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
All third parties with whom we share data are required to maintain the confidentiality and security of your information.
9. Data Security & Retention
Cerahi Dentistry implements appropriate technical and organizational security measures to protect your personal information against unauthorized access, loss, destruction, or alteration, including:
• SSL/TLS encryption for data in transit
• Restricted access controls for data in storage
• Regular security reviews and audits
We retain personal information for as long as necessary to fulfill the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce agreements. When no longer required, data will be securely deleted or anonymized.
10. Amendments to This Policy
Cerahi Dentistry reserves the right to amend this Privacy Policy at any time. The updated version will be published on our website with a revised "Last Updated" date. Continued use of our Services after any such change constitutes acceptance of the updated Privacy Policy.
If material changes are made, we may notify you directly via email or prominent notice on our website.