Skip to content Skip to footer

1. Data Controller

Clinic Name: Dental Aesthetic
Location: Durres, Albania
Email: klodianakaragjozi@gmail.com
Phone: +355 69 484 5323

Dental Aesthetic acts as the Data Controller for personal data collected.

2. Information We Collect

A. Identification Data

  • Full name

  • Date of birth

  • Gender

  • Address

  • Phone number

  • Email address

B. Health & Medical Data (Special Category Data)

  • Medical and dental history

  • Treatment plans and clinical notes

  • X-rays, CBCT scans, digital impressions

  • Intraoral and extraoral photographs

  • Allergies, medications, and relevant health conditions

C. Payment Information

We operate on a private-pay basis only (no insurance processing).
We may collect:

  • Billing details

  • Transaction records

We do not store full card details.

D. Online & Technical Data

When using our website or online booking:

  • IP address

  • Device and browser type

  • Booking details

  • Cookies and website usage information

3. Purpose of Data Processing

We process personal data for:

  • Providing dental and aesthetic treatments

  • Clinical diagnosis and treatment planning

  • Maintaining medical records

  • Managing appointments and online bookings

  • Communicating about treatment or follow-ups

  • Legal and regulatory compliance

  • Internal administrative purposes

We do not send marketing emails or SMS campaigns.

4. Legal Basis for Processing

We process data under:

  • Healthcare necessity – provision of medical treatment

  • Explicit consent – use of clinical photographs for marketing

  • Legal obligations – medical record retention requirements

  • Legitimate interests – clinic operations and quality control

Health data is processed under medical confidentiality and professional secrecy obligations.

5. Clinical Photography & Marketing Use

We take photographs and images for:

  • Clinical documentation

  • Treatment planning

Because you have indicated marketing use:

  • Before/after photos may be used for promotional purposes (website, social media, educational materials)

  • This use occurs only after written patient consent

  • Patients may withdraw consent at any time without affecting their care

6. Online Booking & Remote Communication

We offer online booking. Information submitted through online forms is used solely to manage appointments and patient communication.

We do not provide full telemedicine diagnosis without in-person assessment.

7. Children’s Data

We provide treatment to children. Personal data of minors is processed only with parental or legal guardian consent and solely for medical care purposes.

8. Data Sharing

We do not sell or rent personal data. We may share data with:

  • Dental laboratories and technicians involved in your treatment

  • Regulatory or health authorities if legally required

  • Professional advisers (legal/accounting) under confidentiality

Since you do not use cloud dental software, patient records are maintained within secure local systems.

9. Data Security Measures

We implement appropriate security measures, including:

  • Password-protected digital systems

  • Restricted staff access to records

  • Locked storage for physical documents

  • Staff confidentiality obligations

  • Secure handling of radiographs and imaging files

10. Data Retention

Medical records are retained in accordance with healthcare obligations:

  • Adult patient records: typically at least 10 years

  • Children’s records: until adulthood + statutory period

After the retention period, data is securely deleted or anonymized.

11. Your Rights

Under applicable data protection laws, you may:

  • Request access to your data

  • Request correction of inaccurate data

  • Request deletion (where legally permissible)

  • Restrict or object to processing

  • Withdraw consent (for photo marketing)

  • File a complaint with the Albanian Information and Data Protection Commissioner

Requests can be made via the contact details above.

12. Cookies

Our website may use cookies to improve performance and manage bookings. You may control cookies via browser settings.

13. International Data Transfers

We do not routinely transfer data outside Albania/EU-equivalent jurisdictions unless required for secure service operation, in which case safeguards are applied.

14. Changes to This Policy

We may update this Privacy Policy periodically. The current version will always be available at the clinic or on our website.