Privacy Policy and Data Protection — CMIB
The International Medical Center Bucharest (CMIB) is committed to protecting the privacy and security of your personal data. This policy explains how we collect, use and protect your information when you access our website and our medical services.
1. Categories of Collected Data
We collect and process the following types of data:
- Identification Data:Name, surname, serial number and ID number (where applicable for the contract for the provision of services).
- Contact Information:Phone number, email address.
- Sensitive (Medical) Data:Medical history, symptoms, results of analyzes (e.g. spermograms, genetic tests, ultrasound reports), provided by you through formulations or during consultations.
- Technical Data:IP address, browser type and browsing data collected through cookies.
2. Purpose of Data Processing
We process your data for the following purposes:
- Provision of medical services:Appointments, establishing the diagnosis, conducting investigations and treatments.
- Communication:To confirm your appointments, send you the results of analyzes or respond to your requests.
- Legal Obligations:Preparation of the medical record, reporting to the health authorities and archiving according to the legislation in force.
- Improving services:Analysis of the use of the site to optimize the user experience.
3. Legal Basis of Processing
Data processing is based on:
- Art. 6 GDPR:Execution of a contract (scheduling and provision of the requested service).
- Art. 9 GDPR:Processing of special categories of data for the purpose of establishing a medical diagnosis, providing medical or health care.
- Your consent:In the case of newsletter communications or the use of certain types of cookies.
4. Data Recipients and Privacy
Your data is strictly confidential. They can only be transmitted to:
- CMIB Staff:Doctors, nurses and administrative staff, all subject to the obligation of professional confidentiality.
- Specialized partners:External analysis laboratories or partner clinics (e.g. for PGT-A tests or complex molecular analyses), only when the respective service is requested by you.
- Public Authorities:Only in cases where there is a legal obligation to report.
5. Duration of Data Storage
- Medical data:They are kept for the period stipulated by the sanitary legislation on archiving patient records.
- Contact details:They are retained for the duration necessary to process your requests, unless you become an active patient of the clinic.
6. Your rights (GDPR)
As a data subject, you have the following rights:
- Right of Access:You can request a copy of the data we hold about you.
- Right to Rectification:You can ask for the correction of inaccurate data.
- Right to erasure (“Right to be forgotten”):You can request the deletion of data, except those that we are obliged by medical law to keep.
- Right to Portability:You can request the transfer of data to another healthcare provider.
- Right of Opposition:You can object to the processing of data for marketing purposes.
7. Data Security
CMIB uses advanced security measures to prevent unauthorized access, loss or alteration of your data. The site uses the security protocol SSL (Secure Sockets Layer)to encrypt information submitted through online forms.
8. Contact for Data Protection
For any questions regarding how we process your data or to exercise your GDPR rights, you can contact us at:
- E-mail: office@cmib.ro
- Address: Bd. Dacia 103, Ground Floor, Ap. 1, Sector 2 | Str. Anton Pavlovici Chekhov 6, Sector 1, Bucharest