Privacy Policy
This Data Privacy Policy (“Policy”) sets forth the principles that govern our treatment of personal information across the website accessible at www.dentalharbor.com, including any of its pages and subdomains, as well use by Abby L. Dew, DDS (together with any and all affiliated, designated, contracted, and/or associated dental practices or other legal entities) operating in the United States (together, “DentalHarbor.com”). All employees and those with whom we share personal information must adhere to this Policy. Nothing in this Policy should be construed as a waiver of patient privacy rights under the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”) or similar law or regulation promulgated by the State of Georgia.
DentalHarbor.com is committed to protecting personal information that our employees, customers, prospects, suppliers, and vendors have entrusted to us. We collect and use personal information in order to perform our business functions and provide quality products and services to our customers.
This Policy applies to personal information in any format or medium, relating to employees, customers, vendors and others who do business with DentalHarbor.com.
Our website contains links to other websites. These websites are not covered by this Policy, and we are not responsible for the privacy practices or the content of these other websites.
I. Categories of personal information we collect and use
We recognize personal information as any information that identifies, relates to, describes, is capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular individual or household. Depending on the context of your interactions with DentalHarbor.com, we may collect and use different types of personal information from current and prospective employees, contractors, current and prospective customers and vendors.
A. Personal Identifiers. A real name, alias, postal address, unique personal identifier, online identifier, Internet Protocol address, email address, account name, Social Security number, driver’s license number, passport number, or other similar identifiers.
B. Personal information categories listed in the California Customer Records statute (Cal. Civ. Code § 1798.80(e)). A name, signature, Social Security number, physical characteristics or description, address, telephone number, passport number, driver’s license or state identification card number, insurance policy number, education, employment, employment history, bank account number, credit card number, debit card number, or any other financial information, medical information, or health insurance information. Some personal information included in this category may overlap with other categories.
C. Protected classification characteristics under California or federal law. Age (40 years or older), race, color, ancestry, national origin, citizenship, religion or creed, marital status, medical condition, physical or mental disability, sex (including gender, gender identity, gender expression, pregnancy or childbirth and related medical conditions), sexual orientation, veteran or military status, genetic information (including familial genetic information).
D. Commercial information. Records of personal property, products or services purchased, obtained, or considered, or other purchasing or consuming histories or tendencies.
E. Biometric information. Genetic, physiological, behavioral, and biological characteristics, or activity patterns used to extract a template or other identifier or identifying information, such as, fingerprints, faceprints, and voiceprints, iris or retina scans, keystroke, gait, or other physical patterns, and sleep, health, or exercise data.
F. Internet or other similar network activity Browsing history, search history, information on a consumer’s interaction with a website, application, or advertisement.
G. Geolocation data. Physical location or movements.
H. Sensory data. Audio, electronic, visual, thermal, olfactory, or similar information.
I. Professional or employment related information. Current or past job history or performance evaluations.
J. Non-public education information (per the Family Educational Rights and Privacy Act (20 U.S.C. Section 1232g, 34 C.F.R. Part 99)). Education records directly related to a student maintained by an educational institution or party acting on its behalf, such as grades, transcripts, class lists, student schedules, student identification codes, student financial information, or student disciplinary records.
K. Inferences drawn from other personal information. Profile reflecting a person’s preferences, characteristics, psychological trends, predispositions, behavior, attitudes, intelligence, abilities, and aptitudes.
II . Categories of sources of personal information
DentalHarbor.com receives and uses various types of personal information in order to conduct our day-to-day business activities. We apply the data minimization principle in the collection and use of personal information with the aim to only collect information that is necessary and by fair means and providing notice and requiring consent when necessary.
We may collect categories of personal information listed above from the following categories of sources:
- Third-party vendors
- Recruitment or talent agencies
- Our distributors
- When you browse or use our website or social media pages
- Our business partners (non-vendors)
- Joint marketing partnerships
- Publicly-available non-government and government data
- Contractors (e.g., consultants, agents, and representatives)
- Consumer reporting agencies
- Covered individuals’ email accounts, chat logs, social media accounts
- Covered individuals’ devices
- Directly from covered individuals
- From other individuals, such as friends or family
- Other Company entities
- Third parties (e.g. data brokers)
Some of this data is collected in the following situations when:
- You apply for a position, or to do business, with our company
- We establish contractual employment or commercial relationship
- You provide us with any type of service, as a vendor
- When we provide you with any type of service, product or support
- When you browse or use our website or social media pages
III. Business uses and purposes for which personal information was collected
The purposes for which we collect and use your personal information may vary depending on the type of relationship you have with us, such as if you are one of our employees, customers, or a website user. The use of personal information for new purposes should be consistent with and meet privacy expectations described in this policy, otherwise we will request your authorization.
Generally, we collect, use and disclose your personal information to provide you products and services and as otherwise related to the operation of our business. For more specific detail on our disclosures of personal information, see the next section “Sharing and Disclosures to Third Parties.” Subject to restrictions and obligations of applicable laws, DentalHarbor.com and our vendors may use your personal information for some or all the following business purposes:
- Processing Interactions and Transactions
- Managing Interactions and Transactions
- Performing Services
- Research and Development
- Fulfilling regulatory requirements and Quality Assurance
- Security
- Debugging
Specifically, we:
- Engage in remarketing activities and target similar audiences to advertise online
- Engage third-party vendors, including Google, to show our ads on sites across the Internet
- We allow third-party vendors, including Google, to use cookies and/or device identifiers to serve ads based on someone’s past visits to our website
Visitors can opt-out of Google’s use of cookies or device identifiers by visiting Google’s Ads Settings.
Alternatively, visitors can opt-out of a third-party vendor’s use of cookies by visiting the Network Advertising Initiative opt-out page or control the use of device identifiers by using their device or browser settings.
In addition, we may collect, use and disclose your personal information for the following additional operational business purposes for which we are providing you notice as permitted by applicable law:
- Employees and candidates: if you apply for a job, we use your personal information to consider you for employment and to administer your account. If you have an employment or commercial relationship with DentalHarbor.com, we use your personal information to develop our contractual relationship, to conduct performance evaluations, and comply with legal obligations, including tax and labor regulations.
- Customers: we use our customers’ information to maintain our commercial relationship, ensure the proper operation of the day-to-day business, comply with tax and other regulations, and administer sales and marketing activities.
- Prospective customers: information from prospective customers are used to respond to their requests for information, products or services, and for marketing activities.
- Vendors and suppliers: if you have a business or professional relationship with DentalHarbor.com, we will use your information to develop and conduct our business relationship with you, and to comply with tax and other regulations.
- Website and social media users: we collect personal information from visitors and users of our website and social media pages. We use the information to manage your account registration, store your preferences and settings, provide interest-based advertising, conduct statistics, and analyze how you use our website and online services. DentalHarbor.com will use personal information for purposes disclosed above. To the extent required by law, DentalHarbor.com will inform the individual if their personal information will be used for an additional purpose, and this disclosure will occur prior to the data being so used, and the individual will be given a mechanism to provide their consent. As permitted by applicable law, we do not treat de-identified data or aggregate customer information as personal information and we reserve the right to convert or permit others to convert, your personal information into de-identified data or aggregate consumer information. We have no obligation to re-identify such information to respond to your requests.
Our customers may engage service providers or subcontractors to enable them to perform services on our behalf. This sub-processing is, for purposes of clarity, an additional business purpose for which we are providing you notice.
In addition, we may collect, use and disclose your personal information as required or permitted by applicable law.
IV. Sharing and Disclosures to Third Parties At times, DentalHarbor.com engages third-party contractors, service providers, and other vendors to help us accomplish our business objectives. When DentalHarbor.com discloses personal information for a business purpose, we enter a contract that describes the purpose and requires the recipient to both keep that personal information confidential and not use it for any purpose except performing the contract. There are other circumstances where we are required by law to disclose personal information to third parties such as public authorities.
Disclosures for Business Purposes:
In the preceding twelve (12) months, DentalHarbor.com may have disclosed the following categories of personal information for a business purpose:
A. Personal Identifiers;
B. Personal Information Records;
C. Protected Classifications;
D. Commercial Information;
E. Internet Usage Information;
F. Professional or Employment Information; and
G. Inferences from Personal Information Collected. Notwithstanding anything to the contrary in our other privacy notices, we restrict use of your personal information shared with our vendors to business purposes.
Sale:
In the preceding twelve (12) months, we have not sold your personal information (as the term “sold” is defined by the California Consumer Protection Act).
We may disclose your personal information for a business purpose to the following categories of third parties:
- Our subsidiaries and affiliates
- Third parties to whom you authorize us to disclose your personal information in connection with products or services we provide to you
- B2B Customers
- Business Partners
- Customer Service Representatives
- External Agencies
- External Auditors
- Finance/Accounting Teams
- Internal Auditors
- Internal Employees on the need to know basis
- Legal, Compliance and Regulatory-Quality Teams
- Operations/Maintenance Teams
- Public Authorities/ Government Bodies
- Sales/Marketing Teams, representatives or agents
- Service Providers and Vendors, such as for advertising or marketing purposes, internet service providers, data analytic providers, operating systems and platforms, and social networks
In the preceding twelve (12) months, DentalHarbor.com may have disclosed personal information for the following business purposes:
- Processing Interactions and Transactions
- Managing Interactions and Transactions
- Performing Services
- Research and Development
- Fulfilling regulatory requirements and Quality Assurance
- Security
- Debugging
We engage with third-party contractors, service providers, and other vendors for certain services. If the engagement involves the transmission of personal information, DentalHarbor.com directs the service provider to treat that data consistent with legal requirements. A contract to protect personal information should be executed before any data is disclosed.
In certain circumstances, DentalHarbor.com may be required to disclose personal information when required by law, when required to protect our legal rights, or in an emergency situation where the health or security of an individual is endangered. We may also disclose personal information in the context of any sale or transaction involving all or a portion of the business.
V. Our Policy Towards Children Our online services are not directed to children. If a parent or guardian becomes aware that his or her child has provided us with personal information without their consent, please contact us. If we become aware that a child has registered for a service and has provided us with personal information, we will delete such information from our files.
VI. Security DentalHarbor.com is committed to the security, confidentiality, and integrity of personal information in accordance with legal requirements. We take commercially reasonable precautions to keep personal information secure against unauthorized access and use and we periodically review our security measures. We are committed to processing your data in a secure manner and have put in place specific technical and organizational measures to prevent the personal information we hold from being accidentally or deliberately compromised.
DentalHarbor.com uses Let’s Encrypt certificates issued by R3 for its sites’ security certificates. Please be aware that these protection tools do not protect information that is not collected through our Web site, such as information provided to us by e-mail. We also conduct information risk assessments, train our staff to understand the importance of protecting personal information, and we are responsibly managing access rights within the company. We include both physical security and IT security in our overall data security approach. We are diligent in selecting vendors that process personal information on our behalf so that they also ensure appropriate technical and organizational measures to protect the data.
DentalHarbor.com makes reasonable efforts to notify individuals and regulatory authorities, as required by law if we reasonably believe that personal information has been stolen, disclosed, altered, or infringed by an unauthorized person.
We also endorse the concept of privacy by design which is an approach to projects that promotes privacy and data protection compliance from the outset. This means considering the privacy and security implications for any new project or process throughout its lifecycle.
VII. Your data protection rights and choices If you reside or otherwise find yourself in jurisdictions with data protection laws, DentalHarbor.com is committed to supporting your rights granted by such applicable data protection laws. Otherwise, you can contact us at any time to discuss your privacy concerns.
Under certain circumstances, you may have the privacy rights described in this section. Any request you submit to us is subject to an identification and verification process. We will not fulfill your request unless you have provided sufficient information for us to reasonably verify you are the individual about whom we collected personal information.
We will make commercially reasonable efforts to identify personal information that we collect, process, store, disclose, and otherwise use and to respond to your applicable privacy rights requests. In some cases, we may suggest that you receive the most recent or a summary of your personal information and give you the opportunity to select whether you want the rest. We will typically not charge a fee to fully respond to your requests; provided, however, that we may charge a reasonable fee, or refuse to act upon a request, if your request is excessive, repetitive, unfounded or overly burdensome. If we determine that the request warrants a fee, or that we may refuse it, we will give you notice explaining why we made that decision. You will be provided a cost estimate and the opportunity to accept such fees before we will charge you for responding to your request.
Pursuant to applicable data protection laws, your privacy rights may include the following:
- Information Rights:
You may have the right to send us a request, no more than twice in a twelve-month period, for any of the following for the period that is 12 months prior to the requested date: - The categories of personal information we have collected about you.
- The categories of sources from which we collected your personal information.
- The business or commercial purposes for our collecting your personal information.
- The categories of third parties to whom we have shared your personal information.
- The specific pieces of personal information we have collected about you.
- A list of the categories of personal information disclosed for a business purpose in the prior 12 months, or that no disclosure occurred.
- A list of the categories of personal information sold about you in the prior 12 months, or that no sale occurred. If we sold your personal information, we will explain:
- The categories of your personal information we have sold.
- The categories of third parties to which we sold personal information, by categories of personal information sold for each third party.
Obtaining Copies of Personal Information:
Do Not Sell:
We do not sell personal information.
Delete:
We will not discriminate against you in a manner prohibited by applicable law because you exercise your privacy rights. You may have the right to exercise these rights via an authorized agent who meets the agency requirements of the applicable law.
Mailings, Calls, Faxes: FTC/European Regulatory Authorities:
DentalHarbor.com will cooperate with inquiries made by the Federal Trade Commission or European regulatory authorities.
We reserve the right to modify this Privacy Statement and related business practices at any time. We will duly inform you of any changes.
If you have any privacy concerns or questions about how your personal information is used, please feel free to contact us.