GDPR Terms and Conditions

These GDPR Terms and Conditions outline how Udenz Lab complies with the General Data Protection Regulation (GDPR) and governs the collection, processing, and protection of personal data on our platform. By accessing or using Udenz Lab, you agree to comply with these terms. If you do not agree with any part of these terms, please refrain from using our platform.

1. Definitions

1.1. "Personal Data" refers to any information relating to an identified or identifiable natural person.

1.2. "Data Controller" means the entity that determines the purposes and means of processing personal data.

1.3. "Data Processor" means the entity that processes personal data on behalf of the Data Controller.

2. Lawfulness of Processing

2.1. Udenz Lab acts as a Data Processor for the personal data processed on behalf of dental professionals and dental laboratories, who act as Data Controllers.

2.2. Personal data is processed based on the lawful grounds provided by the GDPR, including the necessity for the performance of a contract, compliance with legal obligations, consent, and legitimate interests pursued by the Data Controller.

3. Collection and Use of Personal Data

3.1. Udenz Lab collects and processes personal data as instructed by the Data Controller. The types of personal data collected may include, but are not limited to, names, contact information, dental records, and treatment plans.

3.2. Personal data is collected for the purpose of facilitating communication, collaboration, and the provision of dental services between dental professionals and dental laboratories.

3.3. Udenz Lab does not use personal data for any other purpose than what is specified by the Data Controller or required by law.

4. Data Security and Protection

4.1. Udenz Lab implements technical and organizational measures to ensure the security and protection of personal data against unauthorized access, loss, or alteration.

4.2. Udenz Lab restricts access to personal data to authorized personnel who have a legitimate need to access it and are bound by confidentiality obligations.

4.3. Udenz Lab maintains a data breach response plan and promptly notifies the Data Controller in the event of a personal data breach.

5. Data Subject Rights

5.1. Udenz Lab assists the Data Controller in fulfilling data subject rights, including the rights to access, rectification, erasure, restriction of processing, data portability, and objection.

5.2. Udenz Lab promptly informs the Data Controller of any request received from a data subject regarding their personal data.

5.3. Udenz Lab supports the Data Controller in responding to data subject rights requests within the timeframes required by the GDPR.

6. Subprocessing and Data Transfers

6.1. Udenz Lab may engage subprocessors to assist in providing its services. Subprocessors are selected based on their ability to provide adequate data protection measures.

6.2. Udenz Lab ensures that any subprocessor engaged complies with the GDPR and provides sufficient guarantees regarding the security and protection of personal data.

6.3. Udenz Lab may transfer personal data to countries outside the European Economic Area (EEA) if the Data Controller provides appropriate safeguards, such as standard contractual clauses or other lawful mechanisms.

7. Data Retention

7.1. Udenz Lab retains personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by law.

7.2. Upon the instruction of the Data Controller, Udenz Lab will securely delete or anonymize personal data when it is no longer needed.

8. Changes to GDPR Terms and Conditions

8.1. Udenz Lab may update these GDPR Terms and Conditions from time to time without prior notice.

8.2. It is your responsibility to review these terms periodically for any changes.

By accessing or using Udenz Lab, you acknowledge that you have read, understood, and agree to be bound by these GDPR Terms and Conditions. If you have any questions or concerns, please contact us at support@udenz.ae.