Privacy Policy
Information on the protection of your personal data in accordance with Swiss data protection law
1. Controller
The controller responsible for data processing on this website is:
SwissCare Züri GmbH
Toblerstrasse 80
8044 Zürich
Switzerland
Phone: +41 44 242 99 00
Email: mail@swisscare-zueri.ch
2. Principles of data processing
We process personal data in accordance with the Swiss Federal Act on Data Protection (FADP) and the General Data Protection Regulation of the European Union (GDPR), where applicable. In doing so, we adhere to the following principles:
- Lawfulness: We process personal data only on a legal basis.
- Good faith: Data processing is carried out in good faith.
- Proportionality: We process only the data that is necessary for the respective purpose.
- Purpose limitation: Personal data is used only for the stated purpose.
- Accuracy: We ensure the accuracy of the processed data.
- Data security: We take appropriate technical and organisational measures to protect your data.
3. Categories of personal data processed
3.1 General personal data
We process the following categories of personal data:
- Identification data (name, first name, address)
- Contact data (phone number, email address)
- Communication data (messages, enquiries)
- Technical data (IP address, browser information)
- Usage data (pages visited, duration of stay)
3.2 Special categories of personal data
In the context of our care services, we may also process special categories of personal data, in particular health data. These are processed only with your explicit consent or on another legal basis pursuant to Art. 34 FADP.
4. Purposes and legal bases of data processing
4.1 Contact form and communication
Purpose: When you use our contact form or contact us otherwise, we process your personal data to handle your enquiry and to communicate with you.
Data processed: First name, last name, email address, phone number (optional), message content, IP address, timestamp of transmission.
Legal basis: Your consent by activating the checkbox in the contact form as well as our legitimate interest in handling enquiries (Art. 31 para. 1 FADP).
Retention period: Your data will be deleted as soon as the processing of your enquiry has been completed and no statutory retention obligations apply, but at the latest after 3 years.
4.2 Care services
Purpose: Provision of care services, care documentation, billing with health insurers and insurance companies.
Legal basis: Contract performance, legal obligations, consent for special categories of personal data.
Retention period: In accordance with statutory retention periods, generally 10 years after the end of treatment.
4.3 Website use and log files
Purpose: Provision and improvement of our website, ensuring IT security, analysis of website use.
Data processed: IP address, browser type and version, operating system, referrer URL, pages visited, date and time of access.
Legal basis: Legitimate interest in the proper provision of our website and IT security.
5. Data disclosure and third-party providers
5.1 Email delivery (Resend)
For sending emails via our contact form we use the Resend service. The following data is transmitted to Resend:
- Email address of sender and recipient
- Message content
- Timestamp of transmission
Legal basis: Your consent and our legitimate interest in reliable email delivery. Resend is a US provider that offers appropriate data protection safeguards.
5.2 Health insurers and insurance companies
In the context of billing care services, we disclose necessary data to health insurers and insurance companies. This is done on the basis of statutory provisions and your consent.
5.3 Processors
We may engage processors for certain services (e.g. IT support, accounting). These are contractually obliged to process your data only on our behalf and according to our instructions.
6. Data transfer abroad
We may transfer your personal data to recipients abroad, in particular:
- To Resend (USA) for email delivery
- To other service providers in countries with an adequate level of data protection
For transfers to countries without an adequate level of data protection, we ensure through appropriate safeguards (e.g. standard contractual clauses) that your data is adequately protected.
7. Data security
We take appropriate technical and organisational measures to protect your personal data:
- SSL/TLS encryption for data transmission
- Secure servers with current security standards
- Access restrictions and authorisation concepts
- Regular security updates and reviews
- Training of our employees in data protection
- Documentation and monitoring of data processing
8. Your rights as a data subject
8.1 Right of access
You have the right to request information about the personal data concerning you that we process (Art. 25 FADP).
8.2 Right to rectification
You have the right to request the rectification of inaccurate personal data (Art. 32 para. 1 FADP).
8.3 Right to erasure
You have the right to request the erasure of your personal data, provided no statutory retention obligations conflict with this (Art. 32 para. 1 FADP).
8.4 Right to data portability
You have the right to request your personal data in a commonly used electronic format (Art. 28 FADP).
8.5 Right to object
You have the right to object to the processing of your personal data if it is based on our legitimate interest (Art. 30 para. 2 lit. b FADP).
8.6 Withdrawal of consent
If processing is based on your consent, you may withdraw it at any time. Withdrawal does not affect the lawfulness of processing carried out until withdrawal.
8.7 Right to lodge a complaint
You have the right to lodge a complaint with the competent supervisory authority (Federal Data Protection and Information Commissioner, FDPIC) if you believe that the processing of your personal data violates data protection law.
9. Cookies and tracking technologies
Our website currently does not use cookies or tracking technologies. Should we use such technologies in the future, we will inform you accordingly and obtain your consent where required.
Your browser may automatically store technically necessary data (session cookies) that are required for the website to function. These are automatically deleted after the browser session ends.
10. Protection of minors
Our website is not specifically aimed at minors under 16 years of age. We do not knowingly process personal data of children under 16 without the consent of legal guardians. If you discover that a minor has transmitted personal data to us without corresponding consent, please contact us immediately.
11. Changes to this privacy policy
We reserve the right to adapt this privacy policy at any time to reflect changed legal situations or changes to our services and data processing. The current privacy policy is available on our website. In the event of material changes, we will inform you via suitable channels.
12. Contact for data protection matters
For questions about data protection or to exercise your rights, contact us at:
13. Applicable law and place of jurisdiction
Swiss law applies to this privacy policy and all data protection matters between you and us. The exclusive place of jurisdiction for all disputes is Zurich, Switzerland, unless mandatory statutory provisions provide for another place of jurisdiction.
Website realised by daalsen.com