PRIVACY POLICY

PRIVACY POLICY OF adlerortho.com

Collection of Personal Data

This Website collects certain Personal Data from its Users (hereinafter also referred to as “Data”).

This privacy notice is provided pursuant to Article 13 of Regulation (EU) 2016/679 (“GDPR”) and concerns exclusively the processing of Personal Data collected through this Website.

How to Print this Notice

This document may be printed using the print function available in the settings of your browser

Owner and Data Controller

ADLER ORTHO® SPA
Via Dell’Innovazione, 9 – 20032 Cormano (Mi)
P.IVA e Codice Fiscale 02348611209

Owner contact email: privacy@adlerortho.com

Types of Data Collected

Personal Data refers to any information that relates to an identified or identifiable natural person.

Among the types of Personal Data collected by this Website, either directly or through third parties, are: Usage Data; cookies and tracking technologies; phone number; company name; and email address.

This Website does not process special categories of data as defined in Article 9 of the GDPR.

Full details regarding each type of Personal Data collected are provided in the dedicated sections of this Privacy Policy or through specific explanatory texts displayed prior to the Data collection.

Personal Data may be freely provided by the User, or, in the case of Usage Data, collected automatically when using this Website.

Unless otherwise specified, all Data requested by this Website is mandatory. Failure to provide such Data may make it impossible for this Website to provide its services. In cases where this Website specifically states that certain Data is not mandatory, Users are free to withhold such information without affecting the availability or functioning of the Service.

Users who are unsure as to which Personal Data are mandatory are encouraged to contact the Data Controller at the email address provided above.

Regarding the use of Cookies—or other tracking tools—by this Website or by third-party service providers used herein, Users are invited to consult our Cookie Policy, available on the homepage of this Website.

Users are responsible for any third-party Personal Data obtained, published, or shared through this Website.

Data Breach

Our company adopts appropriate technical and organizational measures to protect personal data from unauthorized access, loss, or accidental disclosure. In the unlikely event of a personal data breach, we will promptly assess the incident and, if necessary, notify the Data Protection Authority within the timeframes established by applicable law. Furthermore, we will inform the data subjects if the breach is likely to result in a high risk to their rights and freedoms. Our priority is to mitigate any negative effects and prevent further damage through swift and effective actions.

Methods and location of Data processing

The Data Controller adopts appropriate security measures to prevent unauthorized access, disclosure, modification, or unauthorized destruction of the Data.

We apply the principles of privacy by design and privacy by default, limiting access and pseudonymizing data whenever possible.

Data processing is carried out using both electronic and manual tools, following procedures and implementing technical and organizational measures designed to ensure the confidentiality, integrity, and availability of the data.

Besides the Data Controller, Data may sometimes be accessible to individuals authorized and trained to operate the Website (administration, sales, marketing, legal department, system administration) or to external parties (such as technical service providers, couriers, hosting providers, IT companies, communication agencies), who may be appointed, if necessary, as Data Processors pursuant to Article 28 of the GDPR by the Data Controller. An updated list of such parties can be requested from the Data Controller at any time.

Personal data are primarily processed at the operational premises of the Data Controller and at any other locations where the parties involved in the processing are situated, including IT service providers that ensure the functionality and security of this Website.
Depending on the User’s residence or location, the processing of their data may involve the transfer of personal data to countries other than their country of origin. In such cases, the Data Controller ensures that these transfers are carried out in full compliance with applicable data protection laws, adopting the necessary measures to guarantee an adequate level of protection

Purpose of Processing

The User’s Data are collected by the Website to allow the Data Controller to:

a) provide the services requested by the User through the contact form;
b) comply with legal obligations and respond to requests from authorities;
c) protect its rights and interests (or those of Users or third parties), and detect harmful or fraudulent activities;
d) for the purpose of displaying content from external platforms.

Categories of Data

In relation to the processing of User Data collected through the contact form, the User authorizes the Data Controller to use the information submitted by the User to respond to requests for information, quotes, or other types of requests indicated in the header of the form.

Personal Data processed: company name; email address; phone number; content of the message sent by the User.

 

Personal data may be communicated to various categories of recipients, including but not limited to:

  • Internal personnel authorized to process data, operating under the direct responsibility of the Data Controller;
  • Service providers and consultants performing instrumental activities for the operation of the website or for managing the relationship with the User, such as hosting companies, IT support providers, legal, tax, and technical consultants;
  • Public authorities or entities in cases required by law or in compliance with regulatory obligations;
  • Business partners and other third parties involved, only when necessary and within the purposes of the processing.

Data will never be disclosed or communicated to unauthorized parties or used for purposes other than those specified.

Legal Basis for Processing

The Data Controller processes the Personal Data of the Website Users for the purposes outlined above based on the following legal grounds:

a) For the purpose of responding to the Data Subject’s requests via the contact form: based on the consent of the Data Subject pursuant to Article 6(1)(a) of the GDPR;

b) For purposes related to compliance with legal obligations or responding to requests from authorities, processing is based on Article 6(1)(c) of the GDPR;

c) For the purpose of protecting the Data Controller’s rights and interests (or those of Users or third parties) or detecting harmful or fraudulent activities: based on the legitimate interest of the Data Controller pursuant to Article 6(1)(f) of the GDPR;

d) For the purposes of displaying content from external platforms: based on the User’s consent pursuant to Article 6(1)(a) of the GDPR, through the selection of cookies. Users are invited to consult our Cookie Policy.

Data Retention Period

Personal Data is retained for the time necessary to fulfill the purposes for which it was collected and may be kept longer only based on legal obligations or with the consent of the Users.

Specifically:
a) Data collected for the purpose of responding to the Data Subject’s requests via the contact form are retained for the time necessary to respond to the Data Subject and for an additional two years, unless the Data Subject requests deletion earlier, as provided by Article 17 of the GDPR;
b) Data collected for purposes related to compliance with legal obligations and responding to requests from authorities are retained until the expiration of the applicable statutory limitation period;
c) Data collected for the purpose of protecting its rights and interests (or those of Users or third parties) or detecting harmful or fraudulent activities are retained for the time necessary to achieve the purpose for which they were collected and processed;
d) Data collected for the purposes of displaying content from external platforms are retained for the periods indicated in our Cookie Policy, which we invite you to consult.

The Data Controller may be required to retain Data for longer periods due to legal obligations or orders from Authorities.

Upon expiry of the retention period, Personal Data will be securely deleted. Therefore, rights of access, deletion, correction, or portability cannot be exercised after that expiration

The rights of Users

Users may exercise the following rights, established by Articles 15 to 23 of the GDPR, within the limits provided by law:

  • withdraw consent at any time;
  • object to the processing of their Data if based on a legal basis other than consent;
  • access their Data, along with all information required by law, and obtain a copy;
  • verify the accuracy of their Data and request its update or rectification;
  • restrict the processing of their Data (in which case the Data Controller will only retain the Data);
  • obtain the deletion or removal of their Data;
  • receive their Data in a structured, commonly used, and machine-readable format, and, if technically feasible, transfer it to another Data Controller without hindrance;
  • lodge a complaint with the competent supervisory authority;
  • be informed about the legal basis adopted for any transfers of Data abroad, including the security measures taken.
 

Details on the Right to Object (Article 21 GDPR)

If Data is processed for public interest, the exercise of official authority, or legitimate interests, the User may object by specifying reasons related to their particular situation.
If processing concerns direct marketing purposes, the User may object at any time, free of charge and without the need to provide reasons, and the Data will no longer be used for such purposes.

How to Exercise Rights

The rights listed above may be exercised by the Data Subjects by sending their requests to the Data Controller using the contact details provided in this privacy notice. Responses will be provided free of charge and promptly within one month, unless an extension applies.

Information Not Contained in This Notice

Further information about the collection or processing of personal data may be requested from the Data Controller at any time (see contact information at the beginning of this document).

Changes to This Privacy Notice

The Data Controller reserves the right to make changes to this privacy notice at any time, notifying Users on this page and, where technically and legally possible, sending a communication via the contact details it holds. Users are advised to frequently review this page, referring to the date of the last update indicated at the bottom.

If the changes affect processing activities based on the user’s consent, a new consent will be required where necessary.

Contacts

It is also the right of the Data Subject to lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali) at the website www.garanteprivacy.it. Complaints may be submitted through any of the following methods:

  • Registered mail with return receipt addressed to:
    Garante per la protezione dei dati personali,
    Piazza di Monte Citorio, 121, 00186 Rome, Italy
  • Email to: garante@gpdp.it or protocollo@pec.gpdp.it
  • Fax to: +39 06 696773785

Definitions and Legal References

Last update: October 9, 2025

Privacy policy sito web in italiano

(in conformità agli articoli 13 e 14 GDPR

tenuto conto delle basi giuridiche di cui agli articoli 6 e 9 GDPR)

Benvenuti sul sito di Adler Ortho®

Adler Ortho® è un’azienda italiana specializzata nella progettazione, produzione e commercializzazione di protesi articolari e altri dispositivi chirurgici ortopedici.

Sei un professionista della sanità

Welcome to Adler Ortho® website

Adler Ortho® is an Italian company specialized in design, production and commercialization of joint prostheses and other orthopaedic surgical devices.

Are You a healthcare professional