Privacy Policy


1.1 INTRODUCTION

DiaX Medical B.V., operating under the name GlucoSensor (“DiaX Medical,” “we,” “us,” or “our”), respects your privacy and is committed to protecting your personal data. This Privacy Policy outlines how we collect, use, disclose, transfer, and store personal data in connection with the use of our website, products, and services.

This Privacy Policy applies to both the GlucoSensor App and the GlucoSensor.com website. By using our website and App, you agree to be bound by this Privacy Policy and the applicable End-User License Agreement (EULA). There are separate EULAs for the App and the Website. The App EULA governs your use of the GlucoSensor mobile application, and the Website EULA governs your use of the GlucoSensor.com website. Please ensure you have read and understood the applicable EULA before using either platform.

By accessing or using our services, you acknowledge that you have read, understood, and agreed to this Privacy Policy, the applicable EULA, and any other related legal documents such as the General Delivery Terms, Returns and Refund Policy, and Sensor Replacement Policy. You also consent to the collection, use, and disclosure of your personal data as outlined in this Privacy Policy. If you do not agree with any part of these documents, you must not use our services.

We adhere to applicable data protection laws, including the General Data Protection Regulation (GDPR), to ensure your privacy is protected and that your data is handled responsibly.

SCOPE
This Privacy Policy governs the collection, use, and management of all personal data collected through the GlucoSensor App and the GlucoSensor.com website, as well as any related services provided by DiaX Medical B.V. While the Privacy Policy applies to both platforms, the type of personal data collected and the methods of processing may vary depending on the platform. For example, the GlucoSensor App may collect device-specific information such as the operating system, device identifiers, and health-related data for glucose monitoring. The GlucoSensor.com website, on the other hand, primarily collects information related to your browsing activity, transactions, and account details. The specific data processing practices applicable to each platform are detailed in this Privacy Policy.


2. PROCESSING OF PERSONAL DATA

2.1 COLLECTION AND PROCESSING OF PERSONAL DATA
DiaX Medical collects personal data that you voluntarily provide when using our website, app, contacting our customer support channels, or placing orders, as detailed in the General Delivery Conditions. This data may include your name, mailing address, email address, telephone number, payment details, date of birth, and other relevant information. We collect and process this personal data to:

  • Enable you to place orders and purchase our products and services;
  • Respond to your requests, questions, and comments;
  • Keep you informed about updates, special offers, product training, and other relevant information regarding GlucoSensor;
  • Enhance your user experience on our website and in our App;
  • Comply with our legal obligations.

Device and log information: We collect device information such as device model, operating system, unique device identifiers, IP address, and log information, including usage data and interaction records. This data helps us verify your identity, ensure the functionality of the app, and optimize our services.

Permissions: We may request access to certain device permissions, such as camera and location services, to provide specific features within the app. You have the option to enable or disable these permissions through your device settings.

We adhere to the principles of data minimization and purpose limitation, ensuring that we only collect data necessary for these purposes.


2.2 USE OF HEALTH INFORMATION
When using the GlucoSensor App and related services, you may provide us with health-related data, such as blood glucose levels, diet information, exercise patterns, and other relevant medical history. DiaX Medical B.V. understands the sensitivity of this data and adheres to the highest standards of data protection, confidentiality, and privacy as required by the General Data Protection Regulation (GDPR).

  • Primary purpose of processing: The health data you provide is processed to generate indicative glucose trends and alerts, which may assist you in better understanding your glucose patterns over time. This information is intended solely for informational purposes and should not be used as the sole basis for making any treatment decisions. Users must consult with healthcare professionals for any changes to treatment plans or in response to unusual glucose readings.
  • Personalized notifications: Based on your health profile and glucose trends, we may send you automated notifications or alerts regarding significant changes or trends in your glucose levels. These notifications are generated using automated data analysis tools and are meant to complement—not replace—traditional glucose monitoring and healthcare advice. Users are advised to independently confirm any critical readings through fingerstick testing or consultation with healthcare providers.
  • Research and development: With your explicit consent, anonymized health data may be used for internal research and development to enhance the safety and effectiveness of our products. All research activities are conducted in line with GDPR and medical device regulations, ensuring that any findings or insights derived from your health data are not used to provide medical advice or diagnostic guidance.
  • Marketing and promotional activities: We may use your health data to send you targeted offers or information about our products or services, provided you have given explicit consent for such use. These activities are strictly limited to product awareness and should not be construed as health management advice. You can withdraw your consent for marketing communications at any time.
  • Data minimization and purpose limitation: We strictly adhere to the principles of data minimization and purpose limitation, ensuring that your health data is collected only when necessary and is used exclusively for the purposes outlined in this Privacy Policy. We do not use your health data for unrelated purposes, and we do not sell your health data to third parties.
  • Safeguarding health data: We employ state-of-the-art technical and organizational measures to ensure the security and confidentiality of your health data. These measures include encryption, access controls, and continuous monitoring of our systems to prevent unauthorized access or breaches. Only authorized personnel with a legitimate need to access your health data are permitted to do so, and all such access is logged and monitored.
  • User control and withdrawal of consent: You have full control over the health data you share with us. You can view, edit, or delete your health data within the app at any time. If you choose to withdraw your consent, we will cease processing your health data for the purposes for which consent was given, and you have the right to request the deletion of your health data from our systems. Any residual data required for legal or compliance purposes will be retained in accordance with applicable laws and regulations.

By ensuring that your health data is handled with the utmost care, DiaX Medical B.V. aims to provide a secure, transparent, and user-centric experience that respects your privacy and upholds your rights under the GDPR.


2.3 LEGAL GROUNDS FOR PROCESSING PERSONAL DATA
DiaX Medical B.V. processes your personal data based on the legal grounds stipulated under the General Data Protection Regulation (GDPR). We ensure that each processing activity is underpinned by a specific legal basis, as outlined below:

  • Performance of a contract: Processing your personal data is necessary for the performance of a contract to which you are a party. This includes processing activities related to your purchase of our products and services, as well as fulfilling our obligations under the applicable End-User License Agreements (EULA). For instance, we require your personal and payment information to process orders, deliver purchased items, and provide customer support.
  • Compliance with legal obligations: We process your data to comply with legal obligations that apply to us, including but not limited to tax regulations, product safety monitoring, and accounting requirements. This legal ground ensures that our processing activities remain aligned with statutory and regulatory obligations, such as maintaining accurate financial records and reporting adverse events.
  • Explicit consent for special categories of data: When processing special categories of data, such as health-related information, we rely on your explicit consent under Article 9(2)(a) of the GDPR. This consent is sought separately and transparently, specifying the exact purposes for which your sensitive data will be processed, such as enhancing the accuracy of glucose monitoring data. You can withdraw your consent at any time, and we will immediately cease processing your data for that purpose, except where continued processing is required by law.
  • Legitimate interests: We may process your personal data based on legitimate interests pursued by DiaX Medical B.V. or third parties, provided these interests do not override your fundamental rights and freedoms. For example, we use your contact details to send you information about our products or relevant services based on your past interactions, unless you have opted out of such communications. Other legitimate interests include ensuring the security of our IT systems, fraud prevention, and conducting market research.
  • Vital interests: In exceptional situations where processing is necessary to protect the vital interests of you or another person, we may process your personal data without consent. An example includes responding to a medical emergency linked to the use of our products.
  • Public interest and health data: Certain processing activities related to health data may also be conducted in the interest of public health or for purposes of scientific or historical research. These activities are conducted in accordance with the applicable laws and ethical standards, and additional safeguards are applied to protect the confidentiality and security of your health data.
  • Legal exceptions to consent: In certain cases, we may process your personal data without consent if required by law, such as in response to a court order, or when it is necessary to protect public safety or to safeguard our legal rights. Examples include:
  • Compliance with legal requests: Sharing data with government agencies or regulatory authorities in response to legal inquiries, investigations, or to enforce our legal rights.
  • Protection of vital interests: Processing personal data to protect the life or safety of an individual in emergency situations, such as providing information to medical personnel during an urgent medical situation involving the use of our product.
  • Public health and safety: Sharing data with public health authorities for purposes such as preventing or controlling disease outbreaks, reporting adverse events, or tracking product safety.

We ensure that any processing under these circumstances is conducted with appropriate safeguards and in accordance with applicable laws and regulations.


2.4 DISCLOSURE OF PERSONAL DATA

2.4.1 Third-party service providers
DiaX Medical B.V. works with third-party service providers to ensure the functionality, efficiency, and optimization of the GlucoSensor website and app. These service providers include, but are not limited to:

  • E-fulfillment companies for order processing and delivery;
  • Customer relationship management (CRM) systems for managing customer data and interactions;
  • Accounting services to handle financial transactions and invoices;
  • Plugins for website functionality, such as WordPress plugins used to manage website performance;
  • Online marketing and analytics platforms, such as Google Analytics and Facebook Pixel, to monitor user activity and provide targeted advertisements.

These third-party service providers only access the personal data necessary to perform their specific roles and are contractually obligated to protect your data and comply with GDPR.

2.4.2 Consent for third-party data sharing
By using our website and app, you provide explicit consent for DiaX Medical B.V. to share your personal data with the aforementioned third-party service providers as necessary for operational purposes. You can withdraw your consent at any time, but doing so may affect the availability of certain features or services.

2.4.3 Potential future third-party integrations
DiaX Medical B.V. may integrate additional third-party services in the future to enhance functionality and user experience. Users will be notified in advance if any new data-sharing arrangements are introduced and will have the option to opt in or out of these new integrations.

2.4.4 Data protection and security
DiaX Medical B.V. ensures that all third-party service providers implement strict security measures to protect your personal data. Users maintain the right to access, correct, or delete their data, as outlined under the GDPR and our Privacy Policy.


2.5 RETENTION PERIOD

We will only retain your personal data for as long as necessary to fulfill the purposes for which it was collected unless a longer retention period is required or permitted by law. After the retention period has expired, we will securely delete or anonymize your personal data.

Additionally, if a user deletes their account through the GlucoSensor App, their personal data associated with the account will be permanently deleted, except for data that must be retained to comply with legal obligations. This deletion process is irreversible and ensures that no residual data remains on our servers.

Criteria for retention: The retention period for your personal data is determined based on the necessity to fulfill the purposes for which it was collected, as well as compliance with legal obligations. Once the retention period has expired or the data is no longer required, we will securely delete or anonymize your personal data.


2.6 DATA STORAGE LOCATIONS

Data storage in the European Union (EU)
All personal data collected by DiaX Medical B.V. through the GlucoSensor App and the GlucoSensor.com website is stored on servers located within the European Union. We ensure that your data is processed and stored in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

Data handled by MicroTech Medical (MM) is stored on servers located within the European Union and adheres to the same security standards and GDPR compliance as data stored by DiaX Medical. This ensures that any data breaches or unauthorized access involving these servers will be managed under the same strict protocols as detailed in Section 4: Protocol for Handling Data Breaches.

By storing data within the EU, we provide a high level of security and privacy protection consistent with European standards.


2.7 THIRD-PARTY DATA PROCESSING

2.7.1 Role of MicroTech Medical
To ensure the ongoing functionality, maintenance, and improvement of the GlucoSensor App, we collaborate with MicroTech Medical (MM), the manufacturer of the GlucoSensor system. MM receives only de-personalized data limited to your email address and blood glucose (BG) data. MM does not process or store any other personal data collected from the GlucoSensor App or any data collected from the GlucoSensor.com website. All data accessed and stored by MM is securely held on servers located within the European Union, ensuring compliance with the General Data Protection Regulation (GDPR).

2.7.2 Data minimization and de-personalization
The data shared with MM is minimized to include only what is necessary for the technical operation, maintenance, and enhancement of the GlucoSensor App. Your BG data is associated with your email address solely for the purpose of providing and improving the services. This data is de-personalized to ensure that it cannot be used to identify you without additional information, which we do not provide to MM.

2.7.3 Data protection measures
MM is contractually obligated to protect your data in compliance with the GDPR and other applicable data protection laws. They implement appropriate technical and organizational measures to safeguard the data against unauthorized access, alteration, disclosure, or destruction. MM cannot use your data for any purpose other than those specified by DiaX Medical B.V.

2.7.4 Legal basis for data processing
The involvement of MM in data processing is based on the legitimate interest of ensuring the continuous and effective operation of the GlucoSensor system. This data processing is necessary for fulfilling the technical requirements of the App, as outlined in the End-User License Agreement (EULA) for the App.

2.7.5 User rights and control
You retain all your rights under the GDPR with respect to the data processed by MM, including the right to access, correct, and delete your data. If you choose to delete your account or withdraw your consent, we will instruct MM to delete any de-personalized data associated with your email address. For any inquiries or to exercise your rights, please contact us at info@diaxmedical.com.

2.7.6 Third-party data processing beyond MicroTech Medical
DiaX Medical B.V. collaborates with several other third-party service providers, as outlined in Section 2.4, to support the operation of the GlucoSensor system and to provide high-quality services. Each third-party provider is required to meet the same stringent data protection and security standards as MM and is bound by the General Data Protection Regulation (GDPR).

2.8 DATA COLLECTION IN RETURNS AND REPLACEMENTS
In the event of a product return, refund, or replacement request, DiaX Medical may collect personal data such as order details, contact information, and the reason for return. This data is processed solely to fulfil the request, ensure product safety, and comply with applicable legal requirements. DiaX Medical retains this data only as long as necessary to complete the request, address any disputes, or meet regulatory obligations. For more information, please refer to the Returns and Refund Policy and Sensor Replacement Policy.

2.9 CONSENT MECHANISMS AND WITHDRAWAL

2.9.1
Obtaining consent
For processing activities that require your consent, such as processing health-related data or sending marketing communications, we will obtain your explicit consent through clear, affirmative action. This may include checking an opt-in box, clicking “I Agree,” or another similar method indicating your consent. We will provide you with information about the specific processing activities and the types of personal data involved at the time we request your consent.

2.9.2 Withdrawing consent
You have the right to withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal. You can withdraw your consent by:

  • Adjusting your settings within the GlucoSensor App or website account settings.
  • Contacting us at info@diaxmedical.com with your request.

Upon receipt of your withdrawal, we will cease processing your personal data for the purposes for which you originally consented, unless we have another legitimate basis for such processing under applicable law.

2.10 AUTOMATED DECISION-MAKING AND PROFILING
We use automated processing, including profiling, to analyse your health-related data (such as blood glucose levels) to provide indicative glucose trends and personalized notifications. This processing helps us enhance your user experience and provide you with relevant information and alerts regarding your glucose patterns.

2.10.1 Your rights regarding automated decision-making
You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you, unless such processing is:

  • Necessary for entering into, or performance of, a contract between you and us.
  • Authorized by Union or Member State law to which we are subject and which also lays down suitable measures to safeguard your rights and freedoms and legitimate interests.
  • Based on your explicit consent.

In cases where we use automated decision-making, we implement suitable measures to safeguard your rights, freedoms, and legitimate interests, including the right to obtain human intervention, express your point of view, and contest the decision. If you have any questions about our use of automated decision-making or wish to object to it, please contact us at info@diaxmedical.com.

2.11 LAWFUL BASIS FOR PROCESSING HEALTH DATA

In addition to obtaining your explicit consent under Article 9(2)(a) of the GDPR, we may also process your health-related data based on other lawful grounds, including:

  • Article 9(2)(h): Processing is necessary for the purposes of preventive or occupational medicine, medical diagnosis, the provision of health or social care or treatment, pursuant to contract with a health professional and subject to professional secrecy obligations.
  • Article 9(2)(i): Processing is necessary for reasons of public interest in the area of public health, such as ensuring high standards of quality and safety of healthcare and of medical devices, based on Union or Member State law.

All processing of health data is carried out with appropriate safeguards to protect your rights and freedoms, and in accordance with applicable laws and regulations.

3. SPECIFIC SECTIONS FOR DATA COLLECTION

3.1 Cookies and tracking technologies
DiaX Medical B.V. uses cookies and other similar tracking technologies on our website and within the GlucoSensor App to enhance your user experience, optimize our services, and provide personalized content and advertisements. The following types of cookies are used:

  • Strictly necessary cookies: These cookies are essential for the operation of our website and app. Without these cookies, certain functionalities cannot be provided. As these cookies are necessary for the operation of the website/app, they do not require your consent.
  • Analytical/performance cookies: These cookies collect anonymous data on how visitors use our website and app, such as the pages visitors go to most often. These cookies help us improve how our website and app work. Your consent is required for these cookies.
  • Functionality cookies: These cookies allow the website/app to remember choices you make (such as your username, language, or the region you are in) and provide enhanced, more personalized features. Your consent is required for these cookies.
  • Targeting/advertising cookies: These cookies are used to deliver ads more relevant to you and your interests. They are also used to limit the number of times you see an advertisement as well as to help measure the effectiveness of an advertising campaign. Your consent is required for these cookies.

Third-party cookies
We use third-party cookies to collect information about your browsing activity on our website and app, and to deliver personalized content and advertisements. This includes:

  • Google Analytics: To understand how our website is used and improve user experience. For more details on Google Analytics’ privacy practices and to opt-out, visit Google Analytics Privacy Policy and Google Opt-Out.
  • Facebook Pixel: To measure the effectiveness of our advertising and to deliver more relevant ads on Facebook and its affiliate sites. For more information, visit Facebook Privacy Policy.

Managing your cookie preferences
You can manage your cookie preferences through our website’s cookie consent tool or by adjusting your browser settings. Additionally, you can withdraw your consent at any time by accessing the cookie settings on our website/app. Note that disabling certain types of cookies may impact your experience on our website/app.

Review and updates
We regularly review our use of cookies and tracking technologies to ensure compliance with EU regulations. Any updates to our cookie practices will be reflected in this Privacy Policy and our cookie consent tool.


3.2 DATA COLLECTION VIA THE GLUCOSENSOR APP
The GlucoSensor App collects various types of data to improve functionality and provide a personalized user experience.

  • Types of collected data:
    • Device data: Information about the device used, such as the operating system, model, hardware version, and unique device identifiers.
    • Location data: With your consent, the app may collect location data to offer location-specific services or advice. This data is only collected when the app is active and with your express consent.
    • Usage data and interactions: Information about how you use the app, including which features you access, frequency of use, and your interactions within the app.
  • Use of collected data: The collected data is used to:
    • Monitor and improve the app’s performance and stability;
    • Develop new features and enhancements based on user feedback;
    • Provide personalized content and recommendations tailored to your preferences and location;
    • Support you with any technical issues or questions.
  • Third-party service providers: We may engage third-party service providers to assist in delivering our services, such as payment processing, analytics, and customer support. These providers are carefully selected and required to comply with our data protection standards. We ensure that these providers only process your personal data as necessary to perform the services we request.
  • Use of SDKs and APIs: Our app may integrate software development kits (SDKs) and application programming interfaces (APIs) from third-party partners to enhance functionality. We conduct security assessments on these tools to ensure compliance with our data protection policies.

3.3 CHILDREN’S PRIVACY

Children under the age of 14

Our products and services are not intended for individuals under the age of 14. We do not knowingly collect or process personal data from children under 14 years old. If you are under 14, you must not use the GlucoSensor CGM system or provide any personal data to us.

Children aged 14 and over

Individuals aged 14 years and older may only use the GlucoSensor CGM system under the supervision of a parent, legal guardian, caregiver, or medical professional. By using our services, you represent and warrant that you are at least 14 years old and are using the services under appropriate supervision.

Parental consent

For users between the ages of 14 and 16, we require verifiable parental or guardian consent before collecting or processing any personal data, in compliance with GDPR Article 8. Parents or guardians are responsible for supervising their child’s use of our services and ensuring that the child’s personal data is handled in accordance with this Privacy Policy.

Removal of children’s data

If we become aware that we have inadvertently collected personal data from a child under the age of 14 without proper consent, we will take immediate steps to delete such information from our records. If you believe that we might have any information from or about a child under 14, please contact us at info@diaxmedical.com.


4. PROTOCOL FOR HANDLING DATA BREACHES

DiaX Medical B.V. places great value on protecting personal information and has established a strict protocol for handling any data breaches. This protocol is designed to comply with the requirements of the General Data Protection Regulation (GDPR) and includes immediate actions for detecting, reporting, and communicating breaches in the security of personal data.

Upon discovering a data breach, our team takes immediate action to assess and limit the damage. In accordance with the GDPR, we will notify relevant supervisory authorities within 72 hours if the breach poses a risk to the rights and freedoms of individuals. Affected individuals will be informed without undue delay, especially if the breach entails a high risk to their personal rights and freedoms.

  • User notification: In the event of a data breach that poses a high risk to your rights and freedoms, DiaX Medical will notify you without undue delay. This notification will include the nature of the breach, potential consequences, and the measures we have taken or plan to take to address it. We will also provide you with advice on steps you can take to mitigate potential harm.

We will provide the affected individuals with all relevant information about the breach, including recommendations to minimize the potential negative consequences. Additionally, we will thoroughly investigate the cause of the breach and take appropriate measures to prevent recurrence in the future.


5. YOUR RIGHTS

You have certain rights regarding your personal data, including the right to access, rectification, deletion, restriction of processing, data portability, and the right to object to processing based on legitimate interests or direct marketing. To exercise these rights, please contact us using the contact details provided in this Privacy Policy. We will respond to your request within one month, as required by GDPR.

If you choose to delete your account via the GlucoSensor App, all personal data associated with your account, including health data processed by MicroTech Medical (MM), will be permanently deleted from our databases and those of our partners. Please note that this deletion is irreversible, and legally required data may still be retained under the conditions mentioned in Clause 2.5: Retention Period.

  • Exercising your rights: To exercise your rights regarding your personal data, you may contact us using the contact details provided in this Privacy Policy. For security reasons, we may verify your identity before processing your request. We aim to respond to all legitimate requests within one month, but this period may be extended depending on the complexity and number of requests.
  • Right to object: You have the right to object to the processing of your personal data when it is based on legitimate interests or for direct marketing purposes. We will stop processing your data unless we have compelling legitimate grounds to continue processing or it is necessary for legal reasons.

6. CHANGES TO THE PRIVACY POLICY

DiaX Medical B.V. recognizes that transparency is essential in our relationship with users and strives to communicate openly and honestly about the ways we collect, use, and protect your personal data at all times. In light of this commitment, and in accordance with the General Data Protection Regulation (GDPR), this clause describes our approach to informing users about changes or updates to our Privacy Policy.

6.1 NOTIFICATION OF CHANGES
We reserve the right to modify or update this Privacy Policy at any time. Such changes may arise from new legal requirements, changes in our business practices, or adjustments in the technology we use to protect your data. These changes will also be communicated in the EULA and Delivery Conditions. Regardless of the reason for a change, we will inform you in advance about significant modifications in the way we handle your personal data.

6.2 COMMUNICATION METHODS
Significant changes to our Privacy Policy will be clearly and timely communicated before they become effective. This communication may take place through various channels, including, but not limited to:

  • A notification on our website;
  • A direct email notification to users who have subscribed to such updates;
  • Other communication means deemed appropriate to effectively reach you.

6.3 IMPACT OF CHANGES ON DATA PROCESSING
If changes to our Privacy Policy significantly affect the way we process your personal data, we will inform you about the specific impacts these changes may have on your data and provide you with options to manage your consent where applicable.

We advise users to regularly review our Privacy Policy to stay informed about any changes. The date of the last update will always be listed at the bottom of the policy, so you can see when it was last revised.

6.4 YOUR ACCEPTANCE OF CHANGES
By continuing to use our website and services after changes to our Privacy Policy are posted, you acknowledge and consent to these changes and agree to the updated terms of the policy as effective at that time.

6.5 QUESTIONS AND CONTACT
Should you have questions about changes to our Privacy Policy or how your personal data is processed, please feel free to contact us using the contact details provided in this Privacy Policy.


7. SUPERVISOR INFORMATION

DiaX Medical B.V. recognizes the importance of your privacy and the protection of your personal data. We strive to handle all personal data we collect and process in accordance with the General Data Protection Regulation (GDPR) and other applicable privacy laws. Should you have questions or concerns about the way we handle your personal data, despite our efforts, we encourage you to contact us directly so we have the opportunity to address any issues.

If you believe that your concerns have not been satisfactorily resolved by us, you have the right to file a complaint with the data protection authority in your country or region within the European Economic Area (EEA).

For complaints in EEA countries, you can contact the local data protection authority in your country. A list of these authorities and their contact details is available on the website of the European Data Protection Board: European Data Protection Board.

We emphasize that filing a complaint with the supervisory authority is your last resort. DiaX Medical B.V. commits to cooperating at all stages of any disputes or complaints and seeks a solution that ensures the protection of your personal data.

7.1 SUPERVISORY AUTHORITY CONTACT

If you believe that our processing of your personal data infringes data protection laws, you have the right to lodge a complaint with a supervisory authority responsible for data protection. As DiaX Medical B.V. is established in the Netherlands, our lead supervisory authority is:

Dutch data protection authority (Autoriteit Persoonsgegevens)

Website: https://autoriteitpersoonsgegevens.nl/en

Postal Address:

Autoriteit Persoonsgegevens

Postbus 93374

2509 AJ DEN HAAG

Netherlands

We encourage you to contact us first at info@diaxmedical.com so we can address your concerns directly.


8. CONTACT DETAILS FOR PRIVACY-RELATED QUESTIONS

DiaX Medical B.V.
Vincent van Goghweg 5
1861 CD Bergen
Netherlands
info@diaxmedical.com

Data protection department contact: If you have any questions regarding your rights under the GDPR or how we process your personal data, you may contact our Data Protection Department directly at: infra@glucosensor.com.

Exercising your rights: For requests related to accessing, rectifying, or deleting your data, or for any other data protection-related inquiries, please contact us at the details provided above. We will respond to your request in accordance with GDPR requirements, typically within one month.


9. TOTAL AGREEMENT

This Privacy Policy constitutes one part of the Total Agreement between you and GlucoSensor. Together with our End-User License Agreement (EULA), Delivery Terms, and Return Policy, this Privacy Policy outlines how we collect, use, disclose, transfer, and store your personal data. By accessing or using our product or service, you acknowledge and agree to be bound by the terms of this Privacy Policy and the entirety of the Total Agreement.

DiaX Medical B.V. is committed to ensuring the privacy and protection of your personal data. We take appropriate measures to ensure the security of your data and comply with applicable privacy legislation, including the GDPR.


V051124