Privacy policy

Privacy policy pursuant to art. 13 EU Reg. 2016/679 – GDPR

Information to be provided where personal data are collected from the data subject


In compliance with the provisions of Reg. EU 2016/679 (European Regulation for the protection of personal data) we provide you with the necessary information regarding the processing of personal data provided while browsing this website. The privacy policy is not to be considered valid for other websites that may be consulted through links on the websites in the domain of the Data Controller, which is not to be considered in any way responsible for the websites of third parties.

What are the personal data processed? What does processing of personal data mean? Who is the data subject?

Personal data: any information regarding a data subject. Labor Medical Srl, through the website, collects different personal data, for example: name, surname, fiscal code, contact details (telephone number, IP, address)

Processing any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, communication by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

Data subject identified or identifiable natural person. For example, the data subject is the user browsing the platform, the customer who buys a training course, the user who sends an information request.


Who is the Data Controller? How to contact him?

The Data Controller, pursuant to articles 4 and 24 GDPR is Labor Medical Srl, Viale Brianza 65 Cantù (CO) in the person of its legal representative pro tempore.

You can contact the Data Controller at the following email:


What are the contact details of the Data Protection Officer?

You can contact the Data Protection Officer (DPO) of Labor Medical Srl at the following email:



Why Labor Medical processing your personal data? What legal basis allows Labor Medical to processed them?

Finalità del trattamento

Base giuridica

a) browsing on this website


Legitimate interest of Data Controller

Art. 6(1) point (f) GDPR

Activities strictly necessary for the functioning of the web site and the provision of the navigation service on the platform

b) registration on the web site to be able to take advantage of the its contents, i.e consultation of clinical cases and insights not visible without prior registration

Labor Medical Srl informs the User that the credentials generated during registration on the portal may also be used to log in to the web site It is understood that once the User decides to access the web site he will be subject to the conditions of use of the aforementioned platform and to the privacy policy and cookie policy that govern the web site itself.


Legitimate interest of Data Controller

Art. 6(1) point (f) GDPR – your registration is intended for consultation of clinicla cases and insights not visible without prior registration. The Data Controller pursues his legitimate interest by creating a direct relationship with the user upon request of the same in order to allow the consultation of specific contents.



c) provide feedback to your request for information received by filling in the "request for information" form.


Legitimate interest of Data Controller

Art. 6(1) point (f) GDPR – it is in the Data Controller's interest to fulfill the requests of the user / customer also on the basis of the expectation of receiving feedback from the user / customer.


d) subscription to the Labor Medical Srl newsletter service by filling in the dedicated "Newsletter Registration" form.

Your data will be included in the company CRM. The Data Controller, to compare and possibly improve the results of communications, uses systems for sending newsletters and promotional communications with reports. Thanks to the reports, the Data Controller will be able to know, for example, the number of readers, openings, unique "clickers" and clicks; the devices and operating systems used to read the communication; the detail on the activity of the single users; the detail of the emails sent, emails delivered or not, of those forwarded. All these data are used for the purpose of comparing, and possibly improving, the results of communications.



Art. 6(1) point (a) GDPR 


e) direct marketing of the Data Controller, newsletters, market research or other sample searches and direct sales to receive - through automated means such as e-mail, SMS or other means, as well as by telephone calls through operator and paper mail, for detection of the degree of satisfaction, promotional, commercial and advertising material or concerning events, initiatives, training courses promoted by the Data Controller.



Art. 6(1) point (a) GDPR 

f) profiling for direct marketing activities, sending commercial communications, advertising or related events and initiatives of specific interest for your professional category.


Art. 6(1) point (a) GDPR


To whom will the personal data collected be communicated?

The personal data provided will be communicated to the employees or collaborators of the Data Controller who will process the data as persons in charge of the processing acting under the authority of the controller (art. 29 EU Reg. 2016/679). Your personal data may be communicated to companies contractually involved with the Data Controller and in particular to third parties belonging to the following categories: - entities that provide services for the management of the information system used by Labor Medical Srl and the telecommunication networks (including e-mail); - firms or companies which provide assistance and counselling; - competent authorities who enforce the law and/or regulations promulgated by public bodies, upon request; - companies that provide services for sending newsletters. The above mentioned subjects will act as Data Processor (art. 28 EU Reg. 2016/679) or may carry out their processing activities as independent Data Controllers.

The list of Data Processors is constantly updated and available at the registered office: Viale Brianza 65 Cantù (CO).


Does Labor Medical transfer personal data outside the EU?

Personal data will be transferred to countries outside the UE, notably in Switzerland, a Country considered safe by the European Commission. The transfer shall be carried out on the basis of the art. 44 and 45 "Transfers on the basis of an adequacy decision" - to third countries/ international organizations for which the European Commission has intervened with an adequacy decision (art. 45 EU Reg. 2016/679).


How long is the personal data stored?

The processing will be carried out in an automated and / or manual form, with methods and tools to ensure security and confidentiality, by persons specifically trained for this purpose.

In compliance with the provisions of art. 5(1) point (e) GDPR the personal data collected will be stored in a form that allows the identification of data subjects for a period of time not exceeding the achievement of the purposes for which the personal data are processed.

Data retention:

- navigation on this website - browsing session;

- registration on the web site - until a user unsubscribe request;

- contact request - maximum 1 year;

- newsletter - until the withdrawal of consent;

- marketing - until the withdrawal of consent;

- user profiling - maximum 12 months.


Is the provision of data mandatory? Or is it necessary? Or is it optional?

The provision of navigation data is mandatory as it is automatically performed to allow you to browse the site.

In the "request for information" area, the provision of personal data marked with * is necessary. Failure to provide this data will make it impossible to complete the sending of information requests and receive feedback from the data controller. In the "newsletter subscription" area the provision of personal data marked with * is necessary. Failure to provide the data will make it impossible to subscribe to the newsletter. In the "registration" area, the provision of data marked with * is necessary to finalize registration. The provision of data not marked with * is free.



What are your rights? How can you exercise them?

You may exercise your rights pursuant to article 15 et seq. of the GDPR, contacting the Data Controller at or contacting the Data Protection Officer at You have the right, at any time, to request the Data Controller to access your personal data and receive the information concerning their processing and to amend or delete your data or limit their processing.

Furthermore, you have the right to object, at any time, to the processing of your personal data (including automated processing, eg profiling), as well as to the portability of your data. In the event that you believe that the processing of personal data violate the provisions of GDPR, you have the right to lodge a complaint to the supervisory authority or to appeal the judge.

In the case of request for data portability, the Data Controller will provide you with a structured format, commonly used and readable, by automatic device, the personal data concerning you, without prejudice to paragraphs 3 and 4 of the art. 20 of the EU Reg. 2016/679.

To stop receiving automated direct marketing communications (e-mail, sms), simply write an e-mail to at any time with the subject "cancellation from automated" or use our cancellation systems automatic provided for e-mail only.

To stop receiving traditional direct marketing communications (calls with an operator), simply write an e-mail to at any time with the subject "cancellation from traditional".

More information

The Data Controller has the right to modify, update, add or remove parts of this privacy policy at its discretion and at any time. In order to facilitate this verification, the privacy policy will contain the update date.


Date of update: 19/09/2019