Data Controller: PriorMedical OÜ
Address: Pirita tee 20/2, 12011 Tallinn, Estonia
E-mail: info@priormedical.eu
What Data We Collect
— Contact details: name, e-mail, phone, job title, organization/clinic name, country.
— Order data: selected products, shipping/billing addresses, amounts, order comments.
— Account data (for registered users): login, password hash.
— Communications: messages from contact forms, e-mail/messenger correspondence, reviews.
— Payment data: we do not store card details; payments are processed by payment providers (e.g., Stripe, PayPal).
— Technical and analytics data: IP address, device/browser type, language, visited pages, on-site events, cookies. Analytics (e.g., Google Analytics 4) runs only after your consent via the cookie banner.
Why We Process Data
— Order handling and fulfilment, delivery, invoices, and documentation.
— Responding to inquiries and customer support.
— Record-keeping and legal compliance (accounting, taxes).
— Improving the website and services, analytics (based on consents).
— Marketing communications where subscribed (you can withdraw at any time).
Legal bases (GDPR): performance of a contract, legitimate interests, legal obligation, consent (for analytics/marketing).
Cookies and Similar Technologies
We use necessary cookies for the website to function and, with your consent, analytics/marketing cookies. You can change settings via the cookie banner or your browser. See our Cookie Policy (link on the website) for details.
Who We Share Data With
— Hosting and IT vendors that maintain the site.
— Payment providers (e.g., Stripe, PayPal) — receive payment data directly.
— Delivery and logistics services (e.g., DHL/DPD/Omniva).
— Analytics and e-mail services (e.g., Google Analytics 4, mail services).
— Public authorities where legally required.
We do not sell personal data.
International Transfers
Where data is transferred outside the EEA (e.g., to providers in the USA), we use legally required safeguards (e.g., EU Standard Contractual Clauses).
Retention Periods
— Orders and accounting records: as required by law (generally at least 7 years).
— Contact/support requests: up to 24 months after closure.
— User accounts: until the account is deleted; some security logs may be retained up to 12 months.
— Newsletter subscriptions: until you unsubscribe or withdraw consent.
— Cookies: according to each cookie’s lifetime.
Security
We apply technical and organizational measures (HTTPS, access controls, backups, data minimization). Full security cannot be guaranteed; please inform us of any suspicious activity.
Your Rights (GDPR)
You may request access, rectification, or erasure of your data, restriction of processing, data portability, object to processing based on legitimate interests, and withdraw consent where processing relies on consent. To exercise your rights, write to info@priormedical.eu. You also have the right to lodge a complaint with your national data protection authority.
Children
The site is intended for professional users 18+. We do not knowingly collect children’s data.
Changes to This Policy
We may update this Policy. The current version is published on this page with the date of last update.