Legal
Privacy Policy
SKIN.nl BV — Last updated: January 2025
1. Who we are
SKIN.nl BV (also trading as BRTO CRYO BV), hereinafter referred to as "SKIN", is responsible for the processing of personal data as described in this privacy policy. SKIN operates skin clinics in Amsterdam and a webshop at www.skin.nl.
Contact: info@skin.nl
2. What data we collect
We collect and process the following categories of personal data:
- Contact details: name, email address, telephone number, postal address.
- Appointment data: booking information, treatment history, notes from consultations.
- Payment data: order information (payment details are processed by our payment provider Mollie and not stored by us).
- Website data: IP address, browser type, pages visited, via cookies and analytics tools.
3. Why we collect your data
We use your personal data for:
- Processing and managing your appointments and orders.
- Sending booking confirmations and appointment reminders.
- Customer service and handling complaints.
- Sending our newsletter (only with your consent).
- Improving our website and services via analytics.
- Complying with our legal obligations.
4. Legal basis for processing
We process your data on the basis of:
- Contract performance: for processing your appointments and orders.
- Legitimate interest: for analytics and security.
- Consent: for newsletters and marketing communications.
- Legal obligation: for tax and accounting records.
5. Data retention
We retain your data for as long as necessary for the purpose for which it was collected, or as required by law. Client files are retained for 7 years (tax requirement) after the last visit. Newsletter consent records are retained until withdrawal of consent.
6. Third parties
We share your data with third parties only when necessary for the execution of our services. These include:
- Salonized: our booking system, for appointment management.
- Mollie: our payment provider, for secure payment processing.
- Shopify: our e-commerce platform, for webshop orders.
- Google Analytics: for anonymised website analytics.
All third parties are bound by confidentiality and, where applicable, a data processing agreement.
7. Cookies
Our website uses functional cookies (necessary for the website to work) and analytical cookies (to improve our website). We ask your consent before placing non-essential cookies. You can manage your cookie preferences at any time via the cookie settings on our website.
8. Your rights
Under GDPR you have the right to:
- Access your personal data.
- Correct inaccurate data.
- Request deletion of your data ("right to be forgotten").
- Restrict or object to processing.
- Data portability.
- Withdraw consent at any time (where processing is based on consent).
To exercise these rights, contact us at info@skin.nl. We will respond within 30 days.
9. Security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss or misuse. Our website uses SSL encryption (HTTPS).
10. Complaints
If you are not satisfied with how we handle your personal data, you have the right to file a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) at autoriteitpersoonsgegevens.nl.
Questions? Contact us at info@skin.nl or view the Dutch version.