Sumed International (UK) Ltd GDPR and Privacy Policy

Introduction

Sumed International (UK) Ltd (Sumed) are certified to ISO9001:2015, ISO14001:2015 and ISO13485:2016.  Our procedures are regularly audited internally and externally.

Our registered address is

Sumed International (UK) Ltd
Integrity House, Units 1-2 Graphite Way
Hadfield, Glossop, Derbyshire
SK13 1QH

Our registered Company No. is 1961001

We are registered with the ICO under the Data Protection Register, our registration number is: Z3263143 and we act as a Data Controller for personal data.

Scope

This GDPR and Privacy policy notice is to explain how we control, process, handle and protect your personal information collected in connection with Sumed’s business and while you browse or use the website www.sumedinternational.com. If you do not agree to the policy you may wish to cease viewing / using this website, and / or refrain from submitting your personal data to us.

Our privacy policy embodies the following key principles; (a) Lawfulness, fairness and transparency, (b) Purpose limitation, (c) Data minimisation, (d) Accuracy, (e) Storage limitation, (f) Integrity and confidence, (g) Accountability.

Processing and usage of your personal data

You are not required to provide any personal information to access the website sumedinternational.com.

You will be required to submit some personal information to log in to the website in order to place orders for products and browse prices.  This information may include name, address, telephone number and bank details.

We may also process your personal data in the following circumstances:

  • We supply products to you, either purchased or for trial
  • To create an account with Sumed
  • If you request assistance with any of our products or contact one of our Representatives
  • In case we need to contact you due to a product recall or the issue of an Advisory Notice
  • If you ask us to contact you through the website sumedinternational.com or supply your details to us at an exhibition
  • If you apply for employment with Sumed
  • If you are a supplier of goods or services to Sumed

We process your information in the following ways: 

  • If products are ordered from Sumed, we will save names and addresses in our Sage Accounting System and on paper copies of sales orders and invoices. We do not store your bank account details or any other details apart from your name and address.

Personal data submitted through the website will be stored on a secure server.

Personal Information provided to us by means other than through the website www.sumedinternational.com will be stored under controlled conditions at Integrity House, Units 1-2 Graphite Way, Hadfield, Glossop, Derbyshire, SK13 1QH.

Data retention period:

We will continue to process your information for as long as necessary in connection with Sumed’s business, or if you withdraw consent or it is determined your consent no longer exists

We do not share your information with third parties. 

If, as determined by us, the lawful basis upon which we process your personal information changes, we will notify you about the change and any new lawful basis to be used if required. We shall stop processing your personal information if the lawful basis used is no longer relevant.

Your individual rights

Under the GDPR your rights are as follows.

  • ​the right to be informed about our data processing activities
  • ​the right of access to the personal information we hold about you.  To request a copy of this information, you must request this in writing.
  • ​the right to rectification of any inaccurate or incomplete information we hold about you
  • ​the right to erasure of any personal information we hold about you.
  • ​the right to restrict processing of any personal information we hold about you
  • ​the right to data portability
  • ​the right to object; and
  • ​the right not to be subject to automated decision-making including profiling.

You have particular rights in relation to automated decision making and profiling to reduce the risk that a potentially damaging decision is taken without human intervention.  You can object to your personal data being used for profiling, direct marketing or research purposes.

You also have the right to complain to the ICO [https://ico.org.uk/] if you feel there is a problem with the way we are handling your data.

We handle subject access requests in accordance with the GDPR.

Internet cookies

We use cookies on the website www.sumedinternational.com to provide you with a better user experience. We do this by placing a small text file on your device / computer hard drive to track how you use the website, to record or log whether you have seen particular messages that we display, to keep you logged into the website where applicable, to display relevant adverts or content or refer you to a third party website.

Some cookies are required to enjoy and use the full functionality of this website.

We use a cookie control system which allows you to accept the use of cookies, and control which cookies are saved to your device / computer. Some cookies will be saved for specific time periods, where others may last indefinitely. Your web browser should provide you with the controls to manage and delete cookies from your device, please see your web browser options.

Cookies are used to add functionality in several areas of our website, including customer login, checkout, social sharing, saving preferences and usage tracking.

Data security and protection

We ensure the security of any personal information we hold by using secure data storage technologies and precise procedures in how we store, access and manage that information. Our methods meet the GDPR compliance requirement.

Email marketing messages & subscription

Under the GDPR we use the consent lawful basis for anyone subscribing to our newsletter or marketing mailing list. We only collect certain data about you, as detailed in the “Processing and usage of your personal data” above. Any email marketing messages we send are done so through an EMS, email marketing service provider. An EMS is a third party service provider of software / applications that allows marketers to send out email marketing campaigns to a list of users.

Email marketing messages that we send may contain tracking beacons / tracked clickable links or similar server technologies in order to track subscriber activity within email marketing messages. Where used, such marketing messages may record a range of data such as; times, dates, I.P addresses, opens, clicks, forwards, geographic and demographic data. Such data, within its limitations will show the activity each subscriber made for that email campaign.

Any email marketing messages we send are in accordance with the GDPR and the PECR. We provide you with an easy method to withdraw your consent (unsubscribe) or manage your preferences / the information we hold about you at any time. See any marketing messages for instructions on how to unsubscribe or manage your preferences.

Our EMS provider is MailChimp. We hold the following information about you within our EMS system;

  • Email address
  • Name
  • Subscription time & date

If you wish to contact us regarding anything contained in this policy, please write to us at:

Sumed International (UK) Ltd
Integrity House, Units 1-2 Graphite Way
Hadfield, Glossop, Derbyshire
SK13 1QH

Or by e-mail to sales@sumedinternational.com

Or by telephone to 01457 890980

Or use the form on our Contact Us page

This Policy may be amended at any time, to ensure it is up to date or to comply with legal requirements.  A notice will be posted on this website to this effect.