
Privacy Policy
Last updated: 2026-01-30
1. Who we are
DentaField Clinic, headquartered at Bulevardul Constantin Brâncoveanu nr. 18, Bucharest, Romania.
Contact: dentafield@gmail.com, +40 744 841 966.
Under GDPR, we are the "data controller" for your personal data.
2. What data we collect
• Identification and contact data: name, email, phone number.
• Data submitted through forms (e.g., message, reason for visit, appointment preferences).
• Technical data: IP address, device identifiers, browser information, pages visited (only if analytics/monitoring modules are enabled).
• Data necessary for displaying Google Maps and reviews (through Google integration).
3. Why we collect data and legal bases
• To respond to inquiries and manage appointments (contract performance / steps at your request).
• To communicate effectively with you (legitimate interest).
• To comply with legal obligations (e.g., accounting/administrative records, where applicable).
• For optional modules (e.g., analytics cookies) – consent, where applicable.
4. Who we share data with
• Hosting and infrastructure providers, strictly as needed.
• IT providers necessary for website operation (e.g., email services, security, monitoring), strictly as needed.
• Google (for maps/reviews), according to their policies.
• We do not sell your data to third parties.
5. Transfers outside the EEA
Some third-party services (e.g., Google) may involve transfers outside the European Economic Area. In such cases, we rely on appropriate safeguards (e.g., standard contractual clauses).
6. How long we keep data
• Form submissions: typically up to 24 months (or longer if necessary for resolution or legal obligations).
• Appointments/correspondence: for the duration of the relationship and according to applicable legal obligations.
• Technical logs: short periods, proportional to security/diagnostic purposes.
7. Your rights
• Access, rectification, erasure, restriction, portability, objection.
• Withdrawal of consent (where processing is based on consent).
• Complaint to the National Authority for the Supervision of Personal Data Processing (ANSPDCP).
8. Data security
We apply reasonable technical and organizational measures (access control, encryption in transit, internal policies).
No method of transmission/storage is 100% secure; we make efforts to protect your data.
9. Minors
Our services are not intended for minors without parental/guardian involvement. If you are a parent/guardian and believe a minor has submitted data to us, please contact us.
10. Policy updates
We may update this policy. The date of the last update is displayed at the top of the page.