Data Protection Policy For Personal Data
Our Company takes very seriously the issue of protecting personal data from any kind of processing. Therefore, in compliance with the New European General Data Protection Regulation (GDPR), we are committed to making every possible effort to provide recipients of our services with the highest possible level of protection regarding the processing of their personal data.
This policy aims to inform you about what data we collect, the methods of collection, the duration for which we retain your personal data, the purposes of processing, as well as your rights.
WHAT DOES THE TERM “PERSONAL DATA” MEAN:
Personal data refers to any information relating to an identified or identifiable natural person (“data subject”). An identifiable natural person is one whose identity can be ascertained, directly or indirectly, particularly by reference to an identifier such as a name, identification number, location data, online identifier, or to one or more factors specific to the physical, physiological, genetic, psychological, economic, cultural, or social identity of that natural person.
WHAT PERSONAL DATA DO WE COLLECT:
We collect all the data necessary for the conclusion and management of your insurance contract:
— Identity details, such as name, surname, age, marital status, gender.
— Contact details, such as phone number, address, street, postal code, email address.
— Special category personal data (SPPD), such as information regarding health, physical condition, any disabilities and impairments, medical history, medication, information relating to your financial/property situation, data regarding your driving behavior in car insurance, etc.
WHY DO WE COLLECT SPPD:
Certain sensitive data is collected because it is necessary for the conclusion of special categories of insurance contracts, such as health insurance, in order to provide you with personalized products and high-quality services that meet the specific circumstances of each case. Special categories of data receive additional protection according to European legislation.
HOW DO WE COLLECT YOUR PERSONAL DATA:
The ways in which we collect your personal data are numerous. Among others:
— When you apply for our services by filling out the relevant forms either in person at our Company’s office or via our website. Additionally, we collect data that you send us via mail, email, or even data you provide us over the phone.
— Through our authorized partners, such as other insurance agents who collect your data and then share it with us in order to seek the best insurance package for you.
— Personal data that you provide us via our website by filling out the corresponding contact forms.
SPECIAL CASES OF INDIRECTLY INSURED PERSONS:
— GROUP INSURANCE: For the conclusion of group insurance policies, the applicant must, before entering into the insurance contract, inform the data subjects about the way their data is collected and processed, the purposes of processing, as well as their rights according to this protection policy, and must have obtained their explicit and unreserved consent in order to enable the conclusion and execution of the insurance contract.
— MINORS: In the case of an insurance contract in favor of a minor, the provider of the minor’s personal data must prove that they are the one with parental responsibility and must explicitly and unreservedly consent to the processing of the minor’s data by our Company in order to enable the conclusion and execution of the insurance contract.
FOR WHAT PURPOSES DO WE PROCESS YOUR PERSONAL DATA:
In the context of insurance mediation, it is necessary for us to process your personal data in order to provide our services and to handle your various requests in the most efficient way. Through the information you provide us, we are able to clarify your requirements and needs, as well as to determine the reasons underlying the advice we give you regarding a specific insurance product. Additionally, processing allows us to manage your insurance contract throughout its duration or even after its expiration.
If you have given your explicit consent, we may use your data for promotional and advertising purposes.
Our Company is committed not to process your data for unlawful purposes or purposes incompatible with those mentioned above. Furthermore, we will not sell or transfer them unless we have your explicit consent for this.
PROCESSING OF YOUR DATA WITH AUTOMATED PROCEDURES:
The Company may use automated processes and automated decision-making systems (such as profiling systems), for example, in the context of risk assessment, where automated means or methods may be used for decision-making at this stage. We will not make decisions that significantly affect you based solely on automated processes. If we were to act in this way, it would be for the cases strictly provided for by European legislation (Regulation EU/2016/679, Article 22) and of course under the also stipulated conditions.
The Company may use the results of automated processing of personal data through technical means (profiling) not by itself, but by the collaborating insurance companies to which it transmits data for the purpose of forming offers and insurance proposals, with the ultimate goal of concluding contracts for the insurance services you have requested.
WITH WHOM DO WE SHARE YOUR DATA:
In order to find the appropriate insurance policy, your data will be shared with the collaborating insurance companies, which, after processing it, will propose the contract that fully meets your needs. All insurance companies with which we collaborate have taken the necessary technical and legal measures to protect your personal data and are fully bound by confidentiality and obligations provided by law regarding the collection and processing of data.
We may share your personal data with our authorized and reliable partners, such as experts, researchers, collaborating clinics, hospitals, diagnostic centers, laboratories, emergency transport companies, IT companies, etc.
We may share your data with public, administrative, and judicial authorities if we are legally or by court order obliged to do so.
We will not share your data with third-party companies for marketing purposes.
HOW WE PROTECT YOUR PERSONAL DATA:
Our Company, in absolute compliance with the requirements of the New European Regulation regarding the level of protection of individuals against the processing of their personal data, is committed to taking every possible action to create an effective information security framework for the data we collect and process. To this end, we have established technical and administrative security measures, taking appropriate technical measures to prevent any unauthorized access to them.
Your personal data from the moment of collection and any further processing is secured and protected, as the Company has invested in the most modern technological equipment that provides higher levels of protection, with the installation of software programs that serve this purpose.
Access to the data concerning you is permitted only to specific and authorized persons who act under our guidance and instructions, while also being subject to all confidentiality commitments.
Finally, our Company has special systems for detecting any leakage or loss, unauthorized use, or access to your personal data in order to identify and promptly address any violations of them.
FOR HOW LONG DO WE RETAIN YOUR PERSONAL DATA:
Your personal data is retained for as long as required for the purpose for which it is being processed. In the event of the termination of the contract or the cessation of our collaboration for any reason, we will keep your data until the relevant claims expire and in any case for as long as required by the applicable law. The retention of your personal data will not exceed twenty (20) years.
If you share your personal data with us for the purpose of submitting an insurance proposal but ultimately do not proceed with its conclusion, we will retain your personal data for a period of two (2) years.
Finally, the law allows us to anonymize your personal data and retain it indefinitely by processing it only for archiving purposes in the public interest, for scientific or historical research purposes, or for statistical purposes.
WHAT ARE YOUR RIGHTS:
You have a range of rights regarding the processing of your personal data, which you can exercise easily and at any time by sending a written notification to our Company. Your rights are as follows:
— Right of access: You can request our Company to provide you with a copy of the personal data file we hold.
— Right of rectification or deletion: You can request our Company to correct or complete any incomplete or inaccurate information concerning your data, as well as to delete your data if you wish.
— Right to portability: The data you have provided us is portable. This means that it can be moved or transferred electronically under certain conditions, if you request it.
— Right to object and restrict processing: In certain cases, you have the right to object to specific types of processing, such as processing your data for promotional and advertising purposes, or to restrict the processing of your personal data.
— Right to lodge a complaint with the supervisory authority: The law gives you the right to directly submit any complaint you have regarding the processing of your data by us to the supervisory authority.
— Right to withdraw consent: If the legality of the processing of your data by us is based on your explicit consent, you may withdraw it at any time by contacting us at the details provided below.
Our Company ensures that it responds to your requests within a reasonable time from their receipt. If your request is deemed complex, we may need more time to satisfy it. In this case, you will receive relevant notification. You will also receive a notification in any case where, for specific legal reasons, we will not be able to comply with your request.
If you have any questions regarding the above protection policy, wish to exercise any of the aforementioned rights, or believe that the protection of your personal data is being violated in any way, you can contact our Data Protection Officer:
— Contact Phone: 2109412565
— Email: dpo@globalis.gr