At Boiron India we are firmly committed to the privacy of our customers and the data that is stored on cloud platform.
What information do we collect?
By visiting and/or ordering services on this website, you agree and, where required, consent to the collection, use and transfer of your information as set out in this policy. We may collect various information if you seek to place an order for a product to us on the Website like:
Name including first and last name and/or business name
Mobile phone number and contact details
Payment details, Credit card or Debit card details or Bank Account details
Other information as per our registration process.
How we use your information
We will not use your personal and financial information for any purpose other than to complete a transaction with you. We will keep your information for as long as we are either required to by law or as is relevant for the purposes for which it was collected. We will only use your information where it is necessary and will only collect information if it is relevant to our dealings with you. Wherever it is possible, we will indicate which fields are required and which fields are optional.
We retain the personal information we collect from you if we have an ongoing legitimate business need to do so. For example, to provide you with a service you have requested or to comply with applicable legal, tax, or accounting requirements.
If and when we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize it within 1 month after the legitimate business need has ended.
If this is not possible (e.g. because your personal information has been stored in our backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.
How we share your information
Legal basis for processing personal information
Our legal basis for collecting and using the personal information described above will depend on the personal information shared and the specific context in which we collect it.
However, we will normally collect personal information from you only:
when we need the personal information to serve you on your request of our services
in case the processing is in our legitimate interests and not overridden by your rights or
when we have your consent to do so
when we have a legitimate interest in operating our services and communicating with you as necessary to provide these services. For example, when responding to your queries, when asking you how to improve our platform, or for the purposes of detecting or preventing illegal activities.
In some cases, we may also have a legal obligation to collect personal information from you or may otherwise need your personal information to protect your vital interests or those of another person.
If we ask you to provide personal information to comply with a legal requirement or to perform a contract with you, we will make this clear at the relevant time and advise you whether the provision of your personal information is mandatory or not (as well as of the possible consequences, if you do not provide your personal information).
A cookie is a file containing an identifier (a string of letters and numbers) that is sent by a web server to a web browser and is stored by the browser. The identifier is then sent back to the server each time the browser requests a page from the server. This enables the web server to identify and track the web browser.
We use both "session" cookies and "persistent" cookies on the website. Session cookies will be deleted from your computer when you close your browser. Persistent cookies will remain stored on your computer until deleted or until they reach a specified expiration date.
We will use the session cookies to:
keep track of you while you navigate our website
prevent fraud and increase our website security
We will use the persistent cookies to:
enable our website to recognise you when you visit it
keep track of your preferences in relation to your use of our website
keep track of the marketing performance of our services
We may disclose your personal information to our employees, officers, agents, suppliers, or subcontractors insofar as reasonably necessary for the purposes to server you.
In addition, we may disclose your personal information:
to the extent that we are required to do so by law
in connection with any ongoing or prospective legal proceedings
in order to establish, exercise, or defend our legal rights (including providing information to others for the purposes of fraud prevention and reducing credit risk)
to the purchaser (or prospective purchaser) of any business or asset that we are (or are contemplating) selling
to any person who we reasonably believe may apply to a court or other competent authority for disclosure of that personal information where, in our reasonable opinion, such court or authority would be reasonably likely to order disclosure of that personal information
All communications with Boiron India are transmitted over TLS (HTTPS) for all of our services (SSL).
The web platform responds only to secure https requests. Plain http is disabled for user accounts.
We will take reasonable technical and organisational precautions to prevent the loss, misuse, or alteration of your personal information. We will store all the personal information you provide on our secure (password- and firewall-protected) servers.
Passwords are encrypted, and we are not able to recover any password on our own. You can only reset your password, if you have forgotten it. Login attempts per IP are restricted to a certain number.
We monitor the security advisories of the software we use on a regular basis and we perform a penetration test on our application each month. Should any breach of security occur, we are obliged to inform you within 72 hours for all the affected parties.
The website contains links to other websites. We are not responsible for the privacy policies or practices of third-party websites.
Your data protection rights under the General Data Protection Regulation (GDPR)
Data processor and data controller definitions
When using Boiron India, you (the customer) are the “data controller” in the sense that you control the data that comes in and out of our platform.
Boiron India is the “data processor” in the sense that we process the data that you input to our service.
Right to be informed
We are obliged to inform you about how your information is processed by us, about our our sub-processors, and about your rights.
Right of access
You can request at any time any data that we hold for your company by sending us an email at firstname.lastname@example.org.
Your information will be delivered in a secure method and encoded in either XLS or JSON format. Your customers can also request the data that we hold for them. Since we do not directly communicate with your customers, you will need to delegate that request to us.
All Right of Access requests are executed within 7 days.
Right to rectification
You can request updates on the information you have on you on your account at any time.
If you have any problems when editing specific information, please send us an email at email@example.com.
Right to erasure
You can cancel your account and request full removal of your information at any time. We will also delegate that request to our sub-processors, if that is required. For example, in order to remove you from our CRM.
Your customers can also request to be erased from our platform. Should that be the case, please send us an email at firstname.lastname@example.org.
In this email please make sure to mention:
your account details and your company name with registered email address and/or contact number
"Customer removal request" as your email subject
We will proceed to the full removal of your customer’s information within 7 days.
Please note that we are not responsible for removing customer information from payment providers, accounting systems, and in general systems that you as the “data controller” have direct access to.
Right to restrict processing
Boiron India processes information for analysing usage if its software (e.g. how many orders were placed). If you need to restrict our processing information activities, please send us email at email@example.com.
In this email, make sure you mention:
your account details, and
“Restrict usage” as your email subject
Right not to be subject to automated decision-making, including profiling
Currently, Boiron India does not automatically make any decisions.
Right to object
Should at any time you want to object how Boiron India processes data or even propose a better way, please send us an email at firstname.lastname@example.org stating your objection.
We respond to all requests we receive from individuals wishing to exercise their data protection rights in accordance with applicable data protection laws.