Privacy Policy

PRIVACY POLICY

HEMA Biologics respects your privacy and values the confidence of its customers. We recognize the need to balance legitimate business interests in collecting and using information received from and about you with your reasonable expectations of privacy. This Privacy Policy describes the types of personal information that HEMA Biologics may collect about you; how we use that information; how we protect it; and the choices you may make with respect to your personal information. Please review it carefully. When we refer to ourselves as "we" or "HEMA Biologics" or "our", we mean HEMA Biologics as well as the affiliates within our family of companies, e.g., a subsidiary and our authorized agents.

Information We Collect

The types of information we collect depends on the nature of your relationship with HEMA Biologics as well as applicable laws. HEMA Biologics may collect personally identifiable information, such as names, addresses, and email addresses. We may also collect certain limited information that you voluntarily provide regarding your health condition. We may collect this information through registrations, applications and surveys, and because of your inquiries. For example, you may choose to provide personally identifiable and/or financial information relating to a promotion, a patient assistance or support program, or a clinical trial. From time to time, we may use or augment the personal information we have about you with information obtained from third parties. If you apply for employment with us through our online portal, we collect only the information needed to complete your request. Applicant information will be processed in the same manner outlined in this Privacy Policy.

Use of Cookies

In addition, we may gather information about you automatically through your use of our website. Specifically, HEMA Biologics’ website may deposit certain bits of information called "cookies" in a visitor’s computer. Cookies can tell us how and when pages in a website are visited and by how many people. This technology does not collect an individual visitor’s identifying information. Rather, this information is in an aggregate form. The purpose of this technology and the information it provides to us helps us to improve our websites. For our website Terms of Use, please visit https://hemabio.com/terms-of-use/.

We may use third party web analytics services on our sites, such as those of Google Analytics. These services may help us analyze how users use our sites. The information collected for this purpose (including IP address and other information collected by automated means) will be disclosed to or collected directly by these service providers. To learn more about Google Analytics and how to opt out, please visit https://policies.google.com/privacy/partners.

You can manage cookies through your web browser. Most web browsers will tell you how to stop accepting new browser cookies, how to be notified when you receive a new browser cookie and how to disable existing cookies. You can find out how to do this for your particular browser by visiting www.allaboutcookies.org. In addition, your mobile device settings may allow you to restrict your device from sharing certain information obtained by automated means with mobile app developers and operators such as us. Please note, however, that without cookies and similar technologies we use, you may not be able to take full advantage of the features of our Sites. For more information on deleting or controlling cookies, visit www.allaboutcookies.org.

Our sites do not respond to "Do Not Track" signals or similar mechanisms or signals received from browsers as no standard mechanism has yet emerged to become universally accepted.

Use of Personal Information

We may use or disclose your personal information as described in this Privacy Policy. We may also use and disclose information about you in other ways, with your consent. Personally identifiable information that we collect or receive about you will not be sold, rented, or exchanged with any other organization or entity unless you are first notified and expressly agree to it. Information may be shared with third-parties providing services under contract with HEMA Biologics (“authorized agents”), however, such Authorized Agents will be required to adhere to this policy. We may also aggregate and/or de-identify data. Aggregate data is created by pooling information about individuals and describing the data in the aggregate, e.g., 20% of customers who sought information on the X promotion participated in the promotion.

Examples of ways we may use or disclose your information include:

  • To contact you with information about our products or programs and to respond to your inquiries and provide the products and services you request. For example, when you respond to a promotion or service offering, we will provide the specific materials and/or services you request and may provide communications about related products, brands, health topics and disease states to deliver the content and services we believe you will find the most relevant. To market or advertise products, patient services, special offers, or other opportunities that may be of interest to you. HEMA Biologics may also combine the information you provide with information from third parties or information gathered when you visit our website to better match these offers with your interests. For information on collection, use, and disclosure of information via our website, please visit https://hemabio.com/terms-of-use/.
  • We may also use your information to deliver services that you specifically request relating to a specific consent and authorization form that you signed with us. In the case of a specific consent and authorization, your information will be used for the purposes set forth within such consent and authorization.
  • To conduct consumer-based market research studies and patient advisory boards about our products or the health conditions they treat.
  • For our business purposes, such as data analysis, audits, developing new products, enhancing our website, improving our products and services, identifying usage trends, personalizing your experience by presenting products and offers tailored to you, and determining the effectiveness of our promotional campaigns.
  • To our affiliates for the purposes described in this Privacy Policy, to our third-party partners with whom we offer a co-branded or co-marketed promotion, and to our Authorized Agents who provide services such as data analysis, payment processing, order fulfillment, infrastructure provision, IT services, customer service, e-mail and direct mail delivery services, credit card processing, auditing services, and other services, in order to enable them to provide services.
  • To a third party in the event of any reorganization, merger, sale, joint venture, assignment, transfer, or other disposition of all or any portion of our business, assets, or stock (including relating to any bankruptcy or similar proceeding).

 

In addition, we may use and disclose information about you as we believe to be necessary or appropriate: (a) as permitted by applicable law, including laws outside your country of residence; (b) to comply with legal process; (c) to respond to requests from public and government authorities, including public and government authorities outside your country of residence; (d) to enforce the terms of our site or any agreement we have with you; (e) to protect our operations or those of any of our affiliates; (f) to protect our rights, privacy, safety, or property, and/or that of our affiliates, you, or others; and (g) to allow us to pursue available remedies or limit the damages that we may sustain. HEMA Biologics does not and will not utilize the information collected to make automated decisions.

Specific Consent for Handling Special Categories of Data

  • In certain circumstances, you may enter into a special agreement with HEMA Biologics to share sensitive data. Sensitive data may include information related to racial or ethnic origin, political opinions, religion or other beliefs, health, criminal background or trade union membership.  Sharing of these special categories of data require your specific consent.  This will be obtained via a specific agreement between you and HEMA Biologics prior to the exchange of this information.
  • Unless HEMA Biologics and you enter into a separate signed arrangement and or signed agreement whereby certain sensitive is imperative to such an arrangement or agreement, we will not request, and we ask that you not send or disclose, any sensitive personal information to us. We will attain your full consent before requesting and receiving any such sensitive information.
  • You may withdraw consent at any time where we are relying on consent to process your personal data. However, this will not affect the lawfulness of any processing carried out before you withdraw your consent. If you withdraw your consent, we may not be able to provide certain products or services to you. We will advise you if this is the case at the time you withdraw your consent.
  • You may withdraw your consent at any time by contacting the HEMA Biologics Privacy Officer at:
    Privacy Officer
    HEMA Biologics, LLC
    4441 Springdale Rd
    Louisville, Kentucky 40241, USA
    [email protected]
    +1 502.815.8190

Implementation of the General Data Protection Regulation (GDPR)

If applicable, and if you are an individual located in the European Economic Area (EEA), then you will be deemed the “controller” as defined under the GDPR. If you or your organization are required under the GDPR to enter into a contract, or other binding legal act under EU or Member State law with your data processors, then please contact HEMA Biologics promptly to discuss with our appropriate representatives to determine if a data processing agreement is necessary and/or applicable.

If you are located in EEA, all processing of your personal data is performed in accordance with privacy rights and regulations following the GDPR, and our data processing will take place in accordance with the GDPR.

Under certain circumstances, you have rights under data protection laws in relation to your personal data. If you wish to exercise any of the rights set out below, please contact us as set forth the Filing a Request section below.

You have the right to:

  • Request access to your personal data. This enables you to receive a copy of the personal data we hold about you and to check that we are lawfully processing it;
  • Request correction of the personal data that we hold about you. This enables you to have any incomplete or inaccurate data we hold about you corrected, though we may need to verify the accuracy of the new data you provide to us;
  • Request erasure of your personal data. This enables you to ask us to delete or remove personal data where there is no good reason for us continuing to process it, or where you may have withdrawal consent for us to process it.
  • You also have the right to ask us to delete or remove your personal data where you have successfully exercised your right to object to processing, where we may have processed your information unlawfully or where we are required to erase your personal data to comply with local law. Note, however, that we may not always be able to comply with your request of erasure for specific legal reasons which will be notified to you, if applicable, at the time of your request;
  • Object to processing of your personal data where we are relying on a legitimate interest (or those of a third party) and there is something about your particular situation which makes you want to object to processing on this ground as you feel it impacts on your fundamental rights and freedoms. You also have the right to object where we are processing your personal data for direct marketing purposes. In some cases, we may demonstrate that we have compelling legitimate grounds to process your information which override your rights and freedoms;
  • Request restriction of processing of your personal data. This enables you to ask us to suspend the processing of your personal data in the following scenarios:
    • If you want us to establish the data’s accuracy;
    • Where our use of the data is unlawful, but you do not want us to erase it;
    • Where you need us to hold the data even if we no longer require it as you need it to establish, exercise or defend legal claims; or
    • You have objected to our use of your data, but we need to verify whether we have overriding legitimate grounds to use it;
  • Request the transfer of your personal data to you or to a third party. We will provide to you, or a third party you have chosen, your personal data in a structured, commonly used, machine-readable format. Note that this right only applies to automated information which you initially provided consent for us to use or where we used the information to perform a contract with you; and
  • Right to judicial review: if HEMA Biologics refuses your request under rights of access, we will provide you with a reason as to why. You have the right to complain as outlined in the process below.
  • You may also request to understand how and when your personal data is being processed:
    • What personal information pertaining to you is being processed;
    • Why this information is being processed;
    • Who has access to this personal information about you; and
    • What processes are using your information.

Filing a Subject Access Request (SAR)

All requests must be filed with HEMA Biologics' Privacy Officer at [email protected] or by mail at:

Privacy Officer
HEMA Biologics, LLC
4441 Springdale Rd
Louisville, Kentucky 40241, USA
[email protected]
+1 502.815.8190

HEMA Biologics will use its best efforts to respond to a properly submitted SAR within 30 days.

Filing a Complaint

You have a right to file a complaint if you have concerns with how we respond to your request to exercise your rights, or if you have a concern as to how we process your data.  If you are not satisfied with our response, you can complain to the Data Supervisory Authority for the country in which you reside.

Protection of Personal Information

We use reasonable organizational, technical, and administrative measures to protect personal information under our control. Unfortunately, no data transmission or data storage system can be guaranteed to be 100% secure. If you have reason to believe that your interaction with us is no longer secure (for example, if you feel that your personal information has been compromised), please immediately notify us of the problem by contacting us in accordance with the “Contact Us” section below.

Choices Regarding Your Personal Information

We give you choices regarding our use and disclosure of your personal information. You may opt-out of any use or disclosure of your personal information, including those to which you previously agreed, by clicking the unsubscribe link within any e-mail you receive, or by contacting us using one of the methods in the “Contact Us” section below.

In your response to us, please provide your name and details of your request. For example:

  • If you no longer wish to receive marketing communications from us, please identify the form(s) of marketing communications that you no longer wish to receive and include the address(es) to which it/they are sent (e.g., e-mail or postal address).
  • If you prefer that we not share your personal information on a going-forward basis with our affiliates, third-party partners, or Authorized Agents for their marketing purposes, please state that we should no longer share your personal information with our affiliates and/or third-party partners for their marketing purposes and include your name and e-mail address.

 

We will seek to comply with your request(s) as soon as reasonably practicable.

Retention Period

We retain your personal information for the period necessary to fulfill the purposes outlined in this Privacy Policy unless a longer retention period is required or allowed by law or to otherwise fulfill a legal obligation.

Updates to This Privacy Policy

From time to time, we may update and timely post revisions to this Privacy Policy. Any changes will be effective immediately upon the posting of the revised Privacy Policy. If the Privacy Policy changes in a way that significantly affects how we handle personal information, we will not use the personal information we previously gathered in the manner described in the new policy without providing notice and/or obtaining your consent, as appropriate. Minor changes to this Privacy Policy may occur that will not significantly affect our use of personal information without notice or consent. We encourage you to periodically review this page for the latest information on our privacy practices. This Privacy Policy was updated as of the effective date listed above.

Contact Us - Privacy Officer

HEMA Biologics is headquartered in Louisville, Kentucky, in the United States. We have appointed an internal Privacy Officer for you to contact if you have any questions or concerns about our personal data policies or practices. Or, if you would like to access, modify or delete your personal information or if you have questions about the use, amendment, or deletion of personal information, please contact the HEMA Biologics Privacy Officer as follows:

Privacy Officer
HEMA Biologics, LLC
4441 Springdale Rd
Louisville, Kentucky 40241, USA
[email protected]
+1 502.815.8190