Privacy Policy

Effective Date: 18/03/2025
Last Updated: 02/04/2025

1. Introduction This Privacy Policy explains how Dimot Ma S.r.l. ("Dimot", "we", "our", "us") collects, uses, stores, and protects the personal data of users ("User", "you") who access our website or use our services. We are committed to processing your personal data in accordance with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and relevant Italian data protection laws.

2. Data Controller The data controller is Dimot Ma S.r.l. Registered office at  Lungotevere De’ Cenci 10, 00186, Rome (RM), Italy, VAT No. 17609241009.
Email: dimotma@legalmail.it

3. Categories of Personal Data Collected We may collect and process the following categories of personal data:- Identification data: name, surname, email, professional role.
- Account data: username, encrypted password, user preferences.
- Usage data: activity on the platform, interactions with content and features.
- Authentication data: verification codes, login timestamps.
- Communications: messages sent to our support team or through contact forms.
- Data collected via cookies: browsing information, preferences, sessions (see "Cookies" section).
Dimot MA does not process any personal health information or special categories of personal data. Users are strictly prohibited from uploading sensitive information such as health records, biometric data, or religious or political beliefs.

4. Purpose and Legal Basis for Processing We process your personal data for the following purposes and under the corresponding legal bases under GDPR:
- Providing access to our services and managing user accounts (Art. 6.1.b – performance of a contract).
- Ensuring security and preventing unauthorized access (Art. 6.1.f – legitimate interest).
- Improving user experience and monitoring service usage (Art. 6.1.f – legitimate interest).
- Communicating important updates or contractual changes (Art. 6.1.c – legal obligation).
- Responding to requests and providing support (Art. 6.1.b – performance of a contract).
- Complying with legal or regulatory obligations (Art. 6.1.c – legal obligation).
- Performing aggregated statistical analysis (Art. 6.1.f – legitimate interest).

5. Methods of Processing Personal data is processed lawfully, fairly, and transparently, using manual and automated tools. We implement appropriate technical and organizational measures to ensure the security, integrity, and confidentiality of personal data and to prevent unauthorized access, loss, or destruction.
Our Platform integrates with third-party providers for authentication, cloud hosting, and database services. These services are contractually bound to uphold confidentiality and data protection standards.

6. Data Retention We retain personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Account data: for the duration of service use and up to 60 days after account closure.
- Communication data: up to 12 months from receipt.
- Billing and accounting data: up to 10 years in accordance with tax regulations.
After these retention periods, data is deleted or anonymized.

7. Data Recipients Data may be shared only with authorized personnel and third-party processors acting on behalf of Dimot, bound by appropriate contractual agreements. We do not sell or transfer your personal data to third parties for commercial purposes.

8. Data Sharing and Access Control Data is shared strictly under controlled conditions:

- Internally: With authorized Dimot MA personnel for support, billing, and system administration
- Externally: With cloud, database, and  other secure service providers under contract
- Within Client organizations: Based on the assigned user roles
- Public authorities: Only when legally required

9. Your Rights As a data subject, you may exercise the following rights under Articles 15–22 of GDPR:
- Right to access your personal data.
- Right to rectify inaccurate or incomplete data.
- Right to erase data ("right to be forgotten").
- Right to restrict processing.
- Right to data portability.
- Right to object to processing.
- Right to withdraw consent, where applicable.
To exercise your rights, contact us at: dimotma@legalmail.it. You also have the right to lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it).

10. Data Security We apply appropriate measures to protect personal data from unauthorized access, alteration, disclosure, or destruction. These measures include access controls, encryption, activity monitoring, and internal data handling policies.
All content uploaded to the Platform, including pharmaceutical and regional activity data, remains the property of the Client. Dimot MA acts solely as a data processor under the Client’s instructions and does not claim ownership of any content.

11. Cookies and Similar Technologies We use technical, analytical, and (with consent) profiling cookies. Cookies help us improve your experience and enhance our services. You can manage cookie preferences via the site banner or browser settings. For more information, see our Cookie Policy.

12. Children Our services are not intended for individuals under the age of 18. We do not knowingly collect personal data from minors. If we discover that we have collected data from a minor without parental or legal guardian consent, we will delete it immediately.

13. Changes to this Privacy Policy We reserve the right to update this Privacy Policy at any time. Any changes will be posted on this page with an updated revision date. We encourage users to review the policy periodically to stay informed about how we protect your data.

14. Contact For any questions regarding this Privacy Policy or to exercise your rights, please contact Dimot Ma S.r.l.Lungotevere De’ Cenci 10, 00186 Rome (RM), Italy. Email: dimotma@legalmail.it