Privacy and Cooky Policy

1. Introductory provisions
At MED IN MLEKO Ltd., we prioritize your privacy, and we handle all collected data securely and in compliance with relevant laws.

We understand the importance of privacy and the concerns that may arise regarding the protection of personal data when you visit or use our websites (referred to as "services" or "online services").

Our services, under the protected trademark medinmleko®, include the website https://www.medinmleko.si (referred to as "medinmleko"). This privacy policy outlines how medinmleko processes personal data, which refers to information that can directly or indirectly identify an individual, collected through the use of our website.

The purpose of this privacy policy is to provide you with a clear understanding of the personal data we collect, the legal bases and purposes for processing it, options for managing your privacy settings, and your rights regarding personal data.

Our privacy policy adheres to Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (referred to as the General Data Protection Regulation or GDPR), as well as the legislation of the Republic of Slovenia. It includes the following information:

I.) Contact information for MED IN MLEKO Ltd.
II.) Legal bases and purposes of personal data processing
III.) Types of personal data we collect
IV.) Use of cookies and related technologies
V.) Managing privacy settings
VI.) Transmission of personal data
VII.) Retention periods of personal data
VIII.) Protection of personal data
IX.) Rights of individuals in relation to personal data, including the right to lodge a complaint
X.) Changes to the privacy policy

In this policy, the terms "User," "visitor," "customer," or "you" refer to natural or legal persons visiting the website. The terms "we," "us," or "our" refer to the medinmleko website.
2. About the controller of personal data
MED IN MLEKO Ltd., located at Breznikova ulica 15, SI-1230 Domžale, Slovenia, EU, is the entity responsible for managing your personal data.

If you have any questions regarding this Privacy Policy, the confidentiality of your personal data, the method of processing, or your requests concerning the exercise of your rights in relation to personal data, you can reach out to the responsible person and/or authorized person for data protection at MED IN MLEKO Ltd. You may contact this person using the aforementioned address of MED IN MLEKO Ltd. or via email at info(at)medinmleko.si.
3. Legal basis and purpose of processing
The company MED IN MLEKO Ltd. collects, records, edits, stores, transmits, and processes personal data based on various legal bases and for the purposes outlined in this document.

3.1. Processing based on a contract:
MED IN MLEKO Ltd. processes personal data to fulfill rights and obligations within the context of exercising rights and fulfilling contractual obligations. Personal data is processed for the purpose of identifying individuals.

3.2. Processing based on legal obligations:
MED IN MLEKO Ltd. processes personal data based on legal obligations applicable to the company, such as tax regulations, invoice storage, storage of prize winners' data, etc.

3.3. Processing based on legitimate interests:
MED IN MLEKO Ltd. may process personal data based on legitimate interests pursued by the company, except when such interests are overridden by the interests or fundamental rights and freedoms of the individuals to whom the personal data relates, requiring the protection of personal data. When further processing data collected about an individual, MED IN MLEKO Ltd. performs an assessment in accordance with the General Data Protection Regulation. This includes pseudonymized or aggregated (combined) use of data for marketing and other business or technical analyses. In some cases, certain data may be deleted as an additional measure in the further processing of traffic data. Based on legitimate interests, MED IN MLEKO Ltd. processes personal data to the extent necessary and proportionate to ensure the operation of online services, prevent unauthorized access to user accounts, prevent fraud or misuse of the website, and protect intellectual property rights in connection with online services. MED IN MLEKO Ltd. may also process personal data based on legitimate interests for purposes such as direct marketing (for customers), abuse prevention, enforcement of claims, or defense against claims in administrative and judicial proceedings.

3.4. Processing based on consent:
MED IN MLEKO Ltd. processes personal data based on consent provided by individuals for the following purposes:

I.) Direct marketing - receiving notifications containing current offers, benefits, invitations to events, prize games, competitions, lifestyle advice, news, and reminders.
II.) Marketing analysis, customer segmentation, and customized product and service offers.
III.) Participation in prize games.
IV.) Other purposes within the company's operations.

Based on the personal data provided, notifications and personalized offers may be sent via email, SMS, MMS to the provided mobile phone number, or in printed form to the provided address.

Consent can be revoked or modified at any time by clicking the unsubscribe button in the email footer, adjusting settings in the user account, or by sending a request to revoke consent for a specific purpose to the address info@medinmleko.si.

If consent includes direct marketing based on an individual's profile, MED IN MLEKO Ltd. may classify individuals into segments based on website usage for customized service and product offers.
4. What personal data we collect
The company MED IN MLEKO Ltd. collects various data about you, including personal data that can directly or indirectly identify you, to the extent that you or others decide to share this data with MED IN MLEKO Ltd. We receive data through various means, such as signing up for e-notifications (direct marketing), registering a user account on our online store at https://www.medinmleko.shop, or visiting the MED IN MLEKO Ltd. website. Additionally, we collect information about your use of our services.

The personal data we collect includes:

I.) Basic personal data, such as first and last name, date of birth, email address, residential address (street, street number, postal code, city, country), delivery address (street, street number, postal code, city, country), phone number, and password to ensure the security and use of our services.
II.) Data related to purchases and payment methods. Please note that in the case of credit card payments on our online store, we do not store the content of the card data in our databases.
III.) MED IN MLEKO Ltd. allows you to register using user accounts created with third-party platforms such as Facebook or Google. By registering through such accounts, you provide us with information such as your email address or your Facebook account details (if you register via Facebook, we only collect data listed in your public profile, such as first and last name, email, user account ID, and profile picture). Additionally, with your consent ("checkbox" option), we may import your contacts from third-party services (e.g., your email or Facebook account). Please note that this data and information are managed by the respective third-party providers, who provide it to us based on their privacy policy. You can manage the data and information obtained from third parties (e.g., social networks) by using the privacy settings in your user account settings with those third parties.
IV.) The data we collect may also include (1) location data obtained through GPS (although we do not store this data), and you have the option to disable the collection of geolocation data, which may affect certain functionalities on our website or online stores that rely on this data (e.g., sharing location data); (2) data about the device you use to access our website or online store, including device type, operating system; (3) IP address; and (4) information about your usage of the website or online store.
V.) We collect technical information from your browser, computer, or mobile device when you access the services of MED IN MLEKO Ltd.

We handle your personal data in accordance with relevant privacy laws and regulations, ensuring its security and appropriate processing.
5. Transmission of personal data
5.1. Data Processors
MED IN MLEKO Ltd. may share your personal data with third-party contract processors, with whom we have agreements for the processing of personal data. These processors are responsible for providing support, analysis, and continuous improvement of our services, as well as for payment processing or order delivery. Contract processors only have access to the personal data necessary to perform their specific tasks on our behalf and are not permitted to use the data for any other purpose. We require contract processors to protect your personal data, and we enter into special contracts with them regarding the processing of personal data. Currently, MED IN MLEKO Ltd. does not utilize external contract processors. In certain cases, we may collaborate with processors who handle statistical data on our behalf to analyze how you use our services for advertising purposes or to provide information that may be of interest to you. These processors only work with anonymized data.

5.2. Publicly Available Information
Some information about you may be publicly available, such as information you provide or share online (e.g., events, pictures, comments) or comments you make on websites or social networks.

5.3. Third-Party Websites and Applications
With your consent, we may share your personal information with third-party applications when you choose to access our services through such applications (e.g., Facebook, Google account). MED IN MLEKO Ltd. is not responsible for how third parties handle your data, so it is important to ensure that you trust the application and that it has appropriate privacy policies in place. Our websites may contain links to third-party websites that are not under the control of MED IN MLEKO Ltd. By visiting these websites, you may provide your information to third parties with whom we do not have a contract for the processing of personal data. These websites have their own privacy policies that govern the processing of your personal data. Please read their privacy policies to understand how your personal data is processed on the third-party websites you visit.

5.4. Joint Controllers
In certain cases, we may share your personal data with contractual partners with whom we act as joint controllers. These partners process your personal data in accordance with this privacy policy, such as in the case of a prize draw conducted in collaboration with suppliers. We will inform you about such cases in the specific terms and conditions of the prize draw.

5.5. Universal Legal Succession
In the event of a merger, acquisition, business division, or transfer of our activities to a third party, we may transfer your data to the third party involved in the transaction.

5.6. Public Authorities
In addition to the retention periods specified in the Privacy Policy, we may retain your personal data for a longer period and disclose it to third parties such as the police, prosecutor's office, court, and other competent government authorities within or outside the Republic of Slovenia if we deem it necessary and required by law, including for the purposes of preventing, investigating, detecting, or prosecuting criminal activities. Your personal data may also be disclosed to government authorities when necessary for the enforcement, implementation, or defense of legal claims in court proceedings or in administrative or out-of-court proceedings.

5.7. Transfer of Data to Non-EU or Non-EEA Countries
When using our online services outside of EU member states, your data may be transferred, stored, or processed in third countries where data protection legislation may impose different standards than those in the EU or EEA. By using the services in countries outside the EU, you consent to the transfer or forwarding of personal data to entities located in third countries.

MED IN MLEKO Ltd. generally does not export your personal data to countries located outside the EU or EEA.
6. Personal data retention periods
We retain personal data for the duration necessary to provide our services or for longer periods if required by legal obligations.

Personal data associated with your user account is stored until the account is closed. However, data related to purchases made in the online store will be retained. You have the option to close your user account through the account settings or request us to delete it. The closure of your user account and the deletion of your personal data may take up to 15 working days to complete upon receiving the request. Please note that we may retain certain information from closed accounts in accordance with the law to prevent fraud, collect outstanding debts, resolve disputes, assist in investigations by competent authorities, enforce our terms of service, and undertake other actions permitted by law. The information we retain will be treated in accordance with this privacy policy.

Data pertaining to payment for online store purchases and contact information of individuals may be retained to fulfill contractual obligations until full payment for the services is received or until the expiration of the statute of limitations for any potential individual claims, which can be up to 5 years as stipulated by law. In accordance with tax regulations, issued invoices will be retained for 10 years from the end of the year in which the invoice was issued.

Personal data obtained based on consent will be retained until the consent is revoked, but for a maximum of 5 years.

Data that is no longer necessary for the purposes for which it was collected or processed may be anonymized and aggregated with other non-identifiable data to generate statistical information that is commercially useful for MED IN MLEKO Ltd. This anonymized data does not reveal any identifiable individuals.
7. Protection of personal data
MED IN MLEKO Ltd. implements several technical and organizational measures to ensure the security of personal data during collection, transmission and storage. The company MED IN MLEKO Ltd. strives to adequately protect your personal information, but we do not guarantee the complete security of the personal information you provide to us, and we are not responsible for the theft, destruction, loss, intentional or accidental disclosure of your personal information or information about you. The company MED IN MLEKO Ltd. adheres to generally accepted standards for the protection of received information both during transmission and after its receipt, but no method of electronic transmission or storage is 100% secure, so we cannot guarantee complete security. The company MED IN MLEKO Ltd. uses SSL (Secure Sockets Layer) technology, which ensures encryption of personal and credit card information. The company MED IN MLEKO Ltd. ensures the security of our services and your personal data. Servers of MED IN MLEKO Ltd. are further protected by the use of firewalls and other technologies to ensure data security.

The user himself is also responsible for data protection by adequately ensuring the security of his mobile device or computer, as well as by protecting the user name, password and appropriate software (anti-virus) protection of your electronic device. To ensure the effectiveness of these measures in preventing unauthorized access to your personal data, you should be aware of the security features available to you through your browser. Use a browser that allows you to set security features before transmitting your personal or credit card information over the Internet. Please note that if you are using a browser that does not support the use of SSL technology, such transfer of personal data may be risky.

Most browsers provide notification if you are on a website that does not provide a secure connection, or if you are sending data via an unsecured connection. The company MED IN MLEKO Ltd. recommends that you enable these functions of your browser to help protect your personal data. You can also track the address you are on (URL). Secure web addresses start with https:// instead of http://, along with the secure connection symbol used by your browser (usually such a symbol is a lock at the beginning of the web address). Such a symbol indicates the use of secure communication with the server. Please also check the details (validity) of the security certificate of the website where you are located.

Limitation of liability. The company MED IN MLEKO Ltd. is committed to protecting personal data and information about you, but no connection via the Internet can be 100% secure and cannot guarantee the complete security of the data you provide to us. You provide us with your personal data at your own risk.
8. Rights of individuals
MED IN MLEKO Ltd. is committed to ensuring the exercise of individuals' rights regarding their personal data. Requests regarding the exercise of these rights can be sent to the email address info(at)medinmleko.si or by mail to the following address: MED IN MLEKO Ltd., Breznikova ulica 15, SI-1230 Domžale. The individual is required to provide proof of identity and/or address with the request if it is not submitted from the registered user's email address. MED IN MLEKO Ltd. will respond to the request in accordance with applicable regulations.

Individuals have the following rights concerning their personal data:

8.1. Right to access data
At any time, individuals can request confirmation from MED IN MLEKO Ltd. as to whether their personal data is being processed. If so, they can request access to their personal data and obtain information regarding the processing of their personal data (such as the purpose of processing, types of personal data, recipients or categories of recipients to whom personal data has been or will be disclosed, expected retention period, technical and organizational measures for data protection, etc.).

8.2. Right to rectification
At any time, individuals can request MED IN MLEKO Ltd. to rectify inaccurate personal data concerning them and complete any incomplete personal data.

8.3. Right to erasure
Under the conditions specified by applicable regulations, individuals can request at any time that MED IN MLEKO Ltd. enables the erasure of their personal data (commonly known as the right to be forgotten).

8.4. Right to restriction of processing
Under the conditions specified by applicable regulations, individuals can request at any time that MED IN MLEKO Ltd. enables the restriction of processing their personal data. Registered users of online services can do this through their user account settings. Please note that certain services may not be fully available if the processing of specific personal data is restricted.

8.5. Right to data portability
At any time, individuals can request that MED IN MLEKO Ltd. provides their personal data in a structured, commonly used, and machine-readable format, or, if technically feasible, transfer the data directly to another data controller of their choice, as specified in more detail by applicable regulations.

8.6. Right to object
In cases where MED IN MLEKO Ltd. processes personal data based on its legitimate interests, as outlined above, individuals may object to such processing under certain circumstances. MED IN MLEKO Ltd. will cease processing the personal data unless there are legitimate and compelling reasons to continue the processing or if the processing is necessary for legal reasons. Individuals can also object to the processing of personal data for direct marketing purposes by revoking their consent. They can do this by clicking on the unsubscribe button located at the bottom of the email or by following the instructions provided in each notification.

8.7. Revocation of consent
Individuals can revoke their consent at any time, especially when the consent was given for a specific purpose of processing personal data. Registered users can withdraw their consent by contacting info(at)medinmleko.si. Revoking consent does not affect the lawfulness of any processing carried out prior to the withdrawal.

8.8. Right to lodge a complaint with a supervisory authority
Individuals have the right to lodge a complaint with the Information Commissioner of the Republic of Slovenia if they believe that their personal data is being processed in violation of the applicable regulations on personal data protection. The complaint procedure with the supervisory authority is available on the supervisory authority's website.
9. Cookie Policy

The Cookie Policy is an essential component of the Terms of Use. When you utilize our online services, cookies are placed on your computer. Generally, cookies and related technologies function by assigning a distinctive number to the browser or device, which is only relevant within the scope of MED IN MLEKO Ltd.

MED IN MLEKO Ltd. employs these technologies to personalize your experience and assist in delivering content tailored to your usage.

9.1. Here is a list of cookies utilized by the website:
You can use the settings in your browser or mobile device to manage the collection of information through cookies or related technologies.

The company MED IN MLEKO Ltd. is committed to allowing you to manage your privacy and sharing, but is not responsible for missed "Do Not Track" signals through your web browser. Rejecting cookies may result in some features of the offered services not being available to you.

9.2. How we use cookies
We use cookies for several reasons, which are described above. Unfortunately, in most cases, there are no industry standards for options to disable cookies without completely disabling the functionality and features we add to this site. We recommend that you accept all cookies if you are not sure whether you need them or not if they are used to provide the service you are using.

9.3. Disabling cookies
In general, you can accept or prevent (prevent) the use of cookies through a feature built into your web browser. You do this by adjusting the settings in your browser.

Be aware that disabling cookies affects the functionality of this and many other websites you visit. Disabling cookies will usually result in disabling some features and functions of this site. We therefore recommend that you do not disable cookies.

9.4. Third party cookies
When you use this website, you may receive cookies set by third parties. Third-party cookies are used to track and measure the use of this site. We also use various social media buttons and plugins on this website to allow you to connect with your social network in various ways. For these to work on the following social media sites including LinkedIn, Facebook, Google+, Instagram etc. These sites will set cookies through our website that may be used to improve your profile on their website or contribute to the data they hold for various purposes described in their privacy policies.

MED IN MLEKO Ltd. also uses Google Analytics to analyze the use of the website. Google Analytics generates statistical and other information about the use of the website with the help of cookies that are stored on users' computers. Information obtained in connection with our website is used to produce reports on website usage. These cookies can track things like how long you spend on the site and the pages you visit so that we can continue to create interesting content. Google will store and use this information. To learn more about Google's privacy policy, you can read it here: https://www.google.com/privacypolicy.html More information about Google Analytics cookies can be found on the official Google Analytics website.

We also occasionally test new features and make subtle changes to the way the site is delivered. As we continue to test new features, these cookies may be used to provide a consistent experience while on the site, while ensuring we understand which optimizations our users value most. It is important that we understand the statistics of how many visitors to our website actually make a purchase, so this is the type of data these cookies will track. This is also important to you, as it means we can produce accurate business forecasts that allow us to monitor our advertising and product costs to ensure the best possible price. By using our site, you agree that we may use cookies for the above purposes.

If you want more information about this, you can contact us via e-mail at: info(at)medinmleko.si
10. Change of privacy policy and cookie policy
The company MED IN MLEKO Ltd. reserves the right to modify the privacy policy and cookie policy in accordance with the evolving situation and applicable legislation concerning personal data protection. We recommend that you regularly review these policies to stay informed about any updates. We will provide advance notice of any changes related to the processing of your personal data and/or revisions to the privacy policy or cookie policy. Changes to the privacy policy will also be promptly published on our website. If you do not agree with the privacy policy, we kindly ask you to discontinue using our online services, close your user account, or revoke any previously provided consents.
Last update / June, 2023
We believed that it is possible to build a world-class beauty salon that you can leave not only well groomed and stylish, but above all relaxed. It was with this vision in mind that the magic of medinmleko’s beauty was founded.
Domzale
Ljubljana
Koper
© 2024 MED IN MLEKO Ltd. All rights reserved.

Our website uses cookies to provide a better user experience. If you continue viewing, it will mean that you agree to our privacy policy.