Privacy policy.

 

Derma 360 Corporation (Derma 360) recognizes the importance for appropriate measures to protect and manage your personal data entrusted to us, thus, we are committed to protect your personal data and sensitive medical information.

Our Privacy Policy ensures, and is consistent with, Republic Act No. 10173 or the Data Privacy Act of 2012 (“DPA”) and its Implementing Rules and Regulations (IRR), other issuances of National Privacy Commission (NPC), as well as other relevant laws of the Philippines. 

Personal data refers to all types of personal information, sensitive personal information and privileged information. Personal information refers to “any information, whether or not recorded in any form, from which the identity of an individual is apparent or can reasonably and/or directly be ascertained by the entity holding the information, or, when put together with other information, would directly and certainly identify an individual”. 

This Privacy Policy pronounces how we may collect, use and disclose your personal data or sensitive information as well as your rights as owners of this personal data. It also provides the steps that you can take should you wish for any change in how we use your personal data, or if you want us to stop using your personal data.

Why do we collect your personal data?

To enable us to comply with our corporate policies in relation to our customers as well as with the requirements under the Data Privacy Act, it is important that we collect, use, store and retain your personal data only as is reasonable and necessary for a declared and specific purpose stated in the pertinent consent forms.

In general, the purposes for which we collect and use your data may be:

  • To perform functions necessary to deliver the services, goods and other products offered by Derma 360:

    • To conduct due diligence (e.g. to check credit risk and vendor accreditation) prior to the execution of a contract, , as well as collect necessary personal information to facilitate the fulfillment of the terms of the contract and/or transaction thereafter;

    • To respond to customer, investor, employment and/or supplier enquiries, complaints and requests;

    • To provide customer care activities, monitor quality and security, and provide services in a timely and efficient manner;

    • To inform (through telephone call, SMS or email) about clinic updates, uproduct launches, as well as complimentary and promotional offerings;

  • To facilitate online transactions and communicate through interactive user platforms for investor/customer/supplier queries (e.g. livechat via Feacebook Messenger, etc.)

  • To conduct research and analysis (through surveys or polls) in order to improve customer experience/satisfaction and generate statistical insights,

  • To comply with legal and regulatory requirements or obligations and perform such other processing or disclosure that may be required under any law or regulation.

What type of personal data do we collect?

The common type of data collected by Derma 360 prior to, and while providing our services, may include, but are not limited to, information which may be used for the following:

  • Basic personal information, such as full name, nickname, home addresses/billing address/shipping address, e-mail address, profession and employment information, telephone, and other personal contact numbers;

  • Sensitive personal information, such as age, date of birth, nationality, marital status, gender, religious affiliation, medical information, medication, medical history, and other information which are relevant for the purpose of your diagnosis and treatment, educational background and government issued identification document when necessary, which includes, but not limited to identity (ID) cards, licenses, Persons with Disability card, and/or Senior Citizen’s card;

  • Employment record, such as educational background, employment history, certifications, trainings attended, resume and income information of your previous jobs; and

  • CCTV footages in common areas of owned and managed properties.

  • Health declaration forms following guidelines imposed by the local and national government, including the Department of Health and Tourism, in detection and prevention of spread of infectious diseases.

You are responsible for ensuring that all data, whether personal information, sensitive personal information or privileged information, you submit to Derma 360 is accurate, complete and up-to-date.

How we collect, acquire or generate your data?

This Data Privacy Policy applies to Personal Information we collect on the digital platforms and point of contact listed below, depending on your transactions with us in any of the following means:

  • Website: www.derma360ph.com

  • SeriousMD's Now Serving App: https://nowserving.seriousmd.com/doctor/derma360

  • Facebook: facebook.com/derma360ph

  • Instagram: instagram.com/derma360ph

  • YouTube: youtube.com/user/derma360ph

  • Viber and Clinic Contact: 0917 530 0360

  • Derma360 PH emails such as info@derma360.com.ph

  • Customer Feedback

We collect data when you:

  • Submit a job application;

  • Submit a proposal and/or business-related documents;

  • Fill-out our forms and submit necessary documents;

  • Submit information through any form on our digital platforms or contact us through any of our social media accounts;

  • Purchase any of our products or avail of services and promos;

  • Respond to surveys, promotions, and other marketing and sales initiatives;

  • Provide personal information in relation to inquiries, requests, and complaints

  • Subscribe to our newsletter by indicating your email address; and,

  • Disclose your personal information through telephone calls, emails, SMS or verbal communication with our authorized representatives.

  • Cameras, including CCTV and thermal scanners.

Purposes of Data Collection

The following are our purpose/s for collecting your personal data:

  • To process transactions such as appointment bookings and pharmacy orders and other incidental request;

  • To contact you about your appointments, orders, and other arrangements;

  • To process your payment, exchange, returns, and/or refund;

  • To customize your Derma 360 experience or provide services based on your requirements;

  • To ensure the safety and security of all the patients, employees and doctors, including investigating security and screening issues;

  • To facilitate your participation in all Derma 360 programs and promotions;

  • To conduct marketing activities including sending out of email and SMS, for our products and services and to conduct market and other research to improve our products, services and marketing activities;

  • To process remediation and other applicable legal remedies (internal and external) inclusive of endorsement of your account to external legal counsel; and

  • To update our records and keep your contact details and billing address up to date to allow us to communicate with you in case of emergencies, sending out advisories and inform you of programs and activities of Derma 360.

Who do we share your personal data with?

As a general rule, we are not allowed to share your data to third party except in limited circumstances as listed below.

By giving your consent, you authorize Derma 360 to disclose your personal data to accredited/affiliated third parties or independent/non-affiliated third parties, whether local or foreign in any of the following circumstances:

  • As necessary for the proper execution of processes related to the purposes declared in this Privacy Policy.

  • The use or disclosure is reasonably necessary, required or authorized by or under law (such as for criminal investigation, as requested by court of law).

This means we might provide your personal data to the following:

  • Our affiliates, subsidiaries, partner companies, organizations, or agencies including their sub-contractors or prospective business partners that act as our service providers and contractors;

  • Law enforcement and government agencies;

  • All third parties, with which we share this personal data are required to use your personal data in a manner that is consistent with this Privacy Policy.

However, these companies may only use such personal data for the purposes disclosed in this Privacy Policy and may not use it for any other purpose. Provided further that any requests for CCTV footage or any certification in connection thereto shall be subject to the presentation of a court order.

What is our Privacy Policy regarding children?

Derma 360 is very sensitive to privacy issues and it is especially careful in its communications with children. Derma 360 would never directly collect personal data from children without the parent’s consent.

Personal data pertaining to children and collected from their parents is used by Derma 360 or other entities that provide technical fulfillment or other services to Derma 360 (for example, services intended to improve our services/websites, and fulfilling requests or administering healthcare procedures). These personal data are not sold.

Meanwhile, we urge parents to regularly monitor and supervise their children’s on-line activities.

How we protect your personal data?

We take reasonable steps to ensure that the personal data we collect, use or disclose are accurate, complete, and up-to-date. We strictly enforce this Privacy Policy within Derma 360 and we have implemented technological, organizational and physical security measures to protect your personal data from loss, misuse, modification, unauthorized or accidental access or disclosure, alteration or destruction. We put in effect safeguards such as the following:

  • We restrict access to personal data only to qualified and authorized personnel who hold your personal data with strict confidentiality.

  • Any personal data that you provide in any of our websites, in spite of being managed by third-party service providers for us, is initially processed and stored by Derma 360. Using a secured connection, only authorized Derma 360 personnel can then access and download your personal data from the system.

  • We reveal only the last four digits of your credit card numbers when confirming an order. However, we transmit the entire credit card number to the appropriate credit card company during order processing.

  • It is important for you to protect against unauthorized access to your password and to your computer. Be sure to sign-off when finished using a shared computer.

Where and how long do we keep your personal data?

All data are preserved in accordance with the following retention standards:

1.         If the data subject has an existing contract and transaction with Derma 360, the information will be retained all throughout the contract period and 10 years after its completion.

2.         If the data subject has no existing contract but has existing transaction with Derma 360, the information will be retained during the transaction and 5 years after its fulfillment.

3.         If the data subject has no existing contract and transaction with Derma 360, the information will be retained for a period of 2 years.

Personal data are stored in our facilities located in the Philippines and are retained in accordance with the above parameters, industry standards, laws and regulations, unless you request that your personal data be deleted from our systems, databases and hardcopies immediately. Once deleted, your personal data will no longer be searchable or included in anonymous searches and will be completely removed from all the storage location. The Data Privacy Officer may, however, choose not to grant access or correct information based on the request following laws and regulations. He/she will give the individual a written notice that sets out the reason for the refusal.

What if there are changes in our Privacy Policy?

Derma 360 may revise this Privacy Policy as the need arises or when dictated by issuances of the National Privacy Commission or any amendment to the Data Privacy Act. Any change to this Privacy Policy shall be duly posted in this website and will take effect immediately. Data subjects are encouraged to periodically check for such updates. Changes shall not be retroactively applied and will not alter how we handle personal data previously collected without obtaining your consent, unless required by law.

How you can access, correct and update the personal data we have about you?

To exercise your rights, including the right to access, modify, erase and object to processing your personal data, within a reasonable time after such request, or should you have any inquiries, feedback on this Privacy Policy, and/or complaints to Derma 360, you may get in touch with us through the Contact Us page of our www.derma360.com.ph website or a written letter or email to admin@derma360.com.ph.

To assist Derma 360 in dealing with a customer complaint, the customer must provide the following information:

  • Full name

  • Contact details

  • A copy of your valid ID

  • Name of officer, employee (and his/her division) who collected your personal data

  • Details of Complaint

  • Time frame over which the suspected wrong doing occurred

  • Documentary evidence in support of the complaint

You may also lodge a complaint before the National Privacy Commission (NPC). For further details, please refer to NPC’s website: https://privacy.gov.ph/mechanics-for-complaints/.

Any action to a request for correction, erasure and/or objection to process your personal data as it appears in our records is subject to applicable laws and/or the DPA, its IRR and other issuances of NPC.