Privacy Policy
Privacy Policy of the kosgroup.com website.
This page, concerning the personal data privacy policies of KOS S.p.A., the company that manages the kosgroup.com website, aims to accurately describe the management of the processing of personal data of users of the website.
This is also a statement made pursuant to Articles 13 and 14 of “Regulation (EU) 2016/679 of the European Parliament and of the Council,” hereinafter referred to as GDPR, for users of our website services, which came into force on May 24, 2016, and is applicable from May 25, 2018, and Legislative Decree 101/2018. We provide you with the following information regarding the personal data processed by the Company. Your data will not be disclosed under any circumstances. Once the retention period has expired, your data will be destroyed, deleted, or made anonymous, in accordance with technical deletion and backup procedures.
This policy does not apply to other websites that may be consulted through our links, for which KOS S.p.A. is in no way responsible.
The information provided relates specifically to the collection of personal data on the website, with the aim of identifying the minimum measures that must be implemented with regard to the persons concerned in order to ensure the fairness and lawfulness of such practices (in accordance with Articles 5 and 6 of GDPR 679/2016).
List of companies belonging to the Kos group
Also for the purposes of managing the obligations related to Regulation (EU) 2016/679 (GDPR), Kos is a group of companies operating in the social welfare and private healthcare sector, which includes various entities, organized among themselves to offer healthcare and/or welfare services to the public or to offer support services to the companies of the Group itself. In this configuration, the relationship between the individual companies constitutes joint control of the personal data being processed. In accordance with the joint control agreement on the processing of personal data of data subjects between the companies belonging to the Kos Group and the provisions of the Italian Data Protection Authority, dated 08/04/2009, the members are listed below:
-
KOS Spa
-
KOS CARE Srl
-
Jesilab Srl
-
Abitare il tempo Srl
-
Fidia Srl
-
Sanatrix Gestioni Srl
-
KOS Servizi Società Consortile ar.l.
Data Protection Officer (DPO)
Data Protection Officer (DPO)
The Data Protection Officer can be contacted at the following address:
Via Durini, 9 – 20122 Milan – Italy
or by writing to this email address.
The “controller” of the processing
The “controller” of any personal data processed as a result of using the website and any other data used to provide information related to our services is KOS S.p.A., Via Ciovassino, 1, Milan.
The company is part of the Kos Group, which is a group of companies operating in the social welfare and private healthcare sector.
It comprises various entities, organized to offer healthcare and/or welfare services to the public or to offer support services to the companies of the Group itself.
The relationship of data ownership derives from a joint ownership agreement between the companies belonging to the KOS Group, a list of which, updated periodically, can be viewed on the website itself in the following section: https://kosgroup.com/en/privacy/
Rights of data subjects
The subjects to whom the personal data refer, pursuant to Articles 15722 of GDPR 679/2016, have the right at any time to obtain confirmation of the existence or otherwise of such data and to know its content and origin, verify its accuracy or request its integration, updating, or correction.
The subjects to whom the personal data refer also have the right to request the deletion, transformation into anonymous form, or blocking of data processed in violation of the law, as well as to oppose their processing in any case, for legitimate reasons.
Requests relating to the exercise of the rights provided for may be addressed to KOS S.p.A., Via Ciovassino, 1, 20121 Milan, Italy, or by writing to this email address.
Place and purpose of data processing
The processing operations connected to the web services offered by this site (physically located on servers in the EU, in the Netherlands) are carried out at the headquarters of the company that is the data controller, or by its subsidiaries, and are handled only by employees or collaborators who are responsible for processing and who have been adequately trained.
No data deriving from web services is disclosed.
The personal data provided by users who access the service is used for the sole purpose of performing the service itself or the requested service and is not disclosed to third parties, unless disclosure is required by law or is strictly necessary for the fulfillment of the user's requests.
Type of data processed
Navigation data
The computer systems and software procedures used to operate this website acquire, during their normal operation, some personal data whose transmission is implicit in the use of Internet communication protocols.
This information is not collected to be associated with identified data subjects, but by its very nature could, through processing and association with data held by third parties, allow users to be identified.
This category of data includes IP addresses or domain names of computers used by users connecting to the site, URL (Uniform Resource Locator) addresses of requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response given by the server (= successful, error, etc.) and other parameters relating to the user's operating system and computer environment. etc.) and other parameters relating to the user's operating system and IT environment.
This data is used for the sole purpose of obtaining anonymous statistical information on the use of the site and to check its correct functioning and is deleted immediately after processing.
The data in question could be used to ascertain responsibility in the event of any computer crimes against our site.
Data provided by the user
The data provided when filling out the information request form will be acquired and stored on the server storage media for the time strictly necessary for the purposes in question and will be protected by authentication systems.
The optional, explicit, and voluntary sending of emails to the addresses indicated on this site entails, by its very nature, the subsequent acquisition of the sender's address, which is necessary to respond to requests, as well as any other personal data included in the message.
We invite our users, in their requests for information or questions, not to send names or other personal data of third parties that are not strictly necessary.
Cookies
Methods of processing
Personal data is processed using automated tools for the time necessary to achieve the purposes for which it was collected. Specific security measures are observed to prevent data loss, illicit or incorrect use, and unauthorized access in compliance with the obligations to comply with minimum security measures. No browsing data profiling techniques are used. We inform you that, in order to provide a complete service, our portal contains links to other websites that are not managed by us. We are not responsible for errors, content, cookies, publication of immoral or illegal content, advertising, banners or files that do not comply with current regulations and privacy legislation on websites not managed by us to which reference is made. In order to improve the service offered, we would appreciate immediate notification of malfunctions, abuse, or suggestions to KOS S.p.A., Via Ciovassino, 1, 20121 Milan; or by writing to this email address. Finally, please note that the interested party always has the right to contact the Supervisory Authority, which can be found at the following address: https://www.garanteprivacy.it/