1. Data Controller
Clinic Name: Dental Aesthetic
Location: Durres, Albania
Email: klodianakaragjozi@gmail.com
Phone: +355 69 484 5323
Dental Aesthetic acts as the Data Controller for personal data collected.
2. Information We Collect
A. Identification Data
Full name
Date of birth
Gender
Address
Phone number
Email address
B. Health & Medical Data (Special Category Data)
Medical and dental history
Treatment plans and clinical notes
X-rays, CBCT scans, digital impressions
Intraoral and extraoral photographs
Allergies, medications, and relevant health conditions
C. Payment Information
We operate on a private-pay basis only (no insurance processing).
We may collect:
Billing details
Transaction records
We do not store full card details.
D. Online & Technical Data
When using our website or online booking:
IP address
Device and browser type
Booking details
Cookies and website usage information
3. Purpose of Data Processing
We process personal data for:
Providing dental and aesthetic treatments
Clinical diagnosis and treatment planning
Maintaining medical records
Managing appointments and online bookings
Communicating about treatment or follow-ups
Legal and regulatory compliance
Internal administrative purposes
We do not send marketing emails or SMS campaigns.
4. Legal Basis for Processing
We process data under:
Healthcare necessity – provision of medical treatment
Explicit consent – use of clinical photographs for marketing
Legal obligations – medical record retention requirements
Legitimate interests – clinic operations and quality control
Health data is processed under medical confidentiality and professional secrecy obligations.
5. Clinical Photography & Marketing Use
We take photographs and images for:
Clinical documentation
Treatment planning
Because you have indicated marketing use:
Before/after photos may be used for promotional purposes (website, social media, educational materials)
This use occurs only after written patient consent
Patients may withdraw consent at any time without affecting their care
6. Online Booking & Remote Communication
We offer online booking. Information submitted through online forms is used solely to manage appointments and patient communication.
We do not provide full telemedicine diagnosis without in-person assessment.
7. Children’s Data
We provide treatment to children. Personal data of minors is processed only with parental or legal guardian consent and solely for medical care purposes.
8. Data Sharing
We do not sell or rent personal data. We may share data with:
Dental laboratories and technicians involved in your treatment
Regulatory or health authorities if legally required
Professional advisers (legal/accounting) under confidentiality
Since you do not use cloud dental software, patient records are maintained within secure local systems.
9. Data Security Measures
We implement appropriate security measures, including:
Password-protected digital systems
Restricted staff access to records
Locked storage for physical documents
Staff confidentiality obligations
Secure handling of radiographs and imaging files
10. Data Retention
Medical records are retained in accordance with healthcare obligations:
Adult patient records: typically at least 10 years
Children’s records: until adulthood + statutory period
After the retention period, data is securely deleted or anonymized.
11. Your Rights
Under applicable data protection laws, you may:
Request access to your data
Request correction of inaccurate data
Request deletion (where legally permissible)
Restrict or object to processing
Withdraw consent (for photo marketing)
File a complaint with the Albanian Information and Data Protection Commissioner
Requests can be made via the contact details above.
12. Cookies
Our website may use cookies to improve performance and manage bookings. You may control cookies via browser settings.
13. International Data Transfers
We do not routinely transfer data outside Albania/EU-equivalent jurisdictions unless required for secure service operation, in which case safeguards are applied.
14. Changes to This Policy
We may update this Privacy Policy periodically. The current version will always be available at the clinic or on our website.

