Privacy Policy
Below we provide all information necessary to ensure transparent data processing and to enable you to exercise your rights in relation to data protection.
1. Name and contact details of the controller and its representatives
good healthcare Pharma GmbH
represented by the Managing Directors: Kathleen Rieser and Christopher Hähner
Branch office: Lütticher Straße 132, 40547 Düsseldorf, Germany
Phone: +49 211 909 893 30
Email: info@goodhealthcare-pharma.com
2. Contact details of the data protection team:
Data protection officer of good healthcare Pharma GmbH
Name: will be announced shortly
Email: datenschutz@goodhealthcare-pharma.com
External data protection officer:
will be announced shortly
Email: datenschutz@goodhealthcare-pharma.com
3. How is data processed on this website?
3.1 For which purposes and on which legal basis does good healthcare Pharma GmbH process personal data?
When you visit our website, we may collect personal data about you. On our website we process personal data in particular for the purposes described below and on the following legal bases:
3.2.1 Usage data
When you use the website for informational purposes only, meaning you do not register or otherwise transmit information to us (e.g. via a contact form), we collect the following technical information (log file data):
- the operating system of the device used to access the website
- the browser used (type, version and language settings)
- the amount of data retrieved
- the current IP address of the device used to access the website
- date and time of access
- the URL of the previously visited website (referrer)
- the URL of the page accessed on our website
- the internet service provider of the accessing system
The collection of this data is technically necessary in order to display our website and to ensure stability and security.
As a rule, neither we nor our service provider know who is behind an IP address. We do not combine this data with other data sources.
The legal basis for this processing is Art. 6(1)(f) GDPR. Since the collection of data for the provision of the website and the storage of log files is essential for the operation of the website and to protect against misuse, our legitimate interest in data processing prevails.
3.2.2 Contact
You have the option to contact us via email, contact forms on our website, or by telephone. The personal data transmitted to us in this context will be used exclusively for the purpose for which you provided it when contacting us. Information required for use is marked with an asterisk (*) as a mandatory field. All other information is voluntary. The legal basis is Art. 6(1)(f) GDPR. Our legitimate interest lies in establishing and maintaining a customer relationship.
3.2.3 Mailings to existing customers
If you have concluded a contract with us, you may receive our newsletter without explicit consent unless you have exercised your right to object. The legal basis is our legitimate interest pursuant to Art. 6(1)(f) GDPR.
You may object to the processing of your data at any time, free of charge and with effect for the future. An email to the contact details listed under section 1 is sufficient.
3.2.4 Career
If you use our application portal via our careers page (https://job.goodhealthcare.com/), we process your data for the purpose of conducting the application process in accordance with Section 26(1) German Federal Data Protection Act (BDSG).
We only collect information in mandatory fields that is essential for the application process. Additional information may be provided voluntarily via free text fields. We therefore store only the data that you yourself have entered into the form.
By submitting the form, you confirm that your information is accurate. If we wish to include you in our applicant pool after completion of the application process, we will obtain your explicit consent. For the organization and execution of the application process, it may be necessary for us to share your data with affiliated companies within the good healthcare group as part of commissioned data processing.
Your data is hosted on behalf of us in accordance with Art. 28 GDPR by: rexx systems GmbH, Süderstraße 75–79, 20097 Hamburg, Germany. Both we and rexx systems GmbH use technical and organizational security measures to protect your data against accidental or intentional manipulation, loss, destruction, or unauthorized access. Our security measures are continuously improved in line with technological developments. After entering and transmitting your data, it is transferred directly via an encrypted connection to the server of rexx systems GmbH. All data is encrypted using the TLS procedure.
If you submit your application via WhatsApp and wish to conduct the application process through WhatsApp, you consent to participation in messenger communication and the use of the WhatsApp service pursuant to Art. 6(1)(a) GDPR by clicking the button “Apply with WhatsApp”. Please note that the good healthcare group has no influence on how WhatsApp processes user data.
Details on data processing by WhatsApp can be found in WhatsApp’s privacy policy: https://www.whatsapp.com/legal?eea=0#privacy-policy.
Applications should be submitted exclusively via the application portal. If you nevertheless submit an application via email, please note that sending unencrypted emails or email attachments is not secure.
Your information will be used for processing your application and deciding on the establishment of an employment relationship. Personal data may also be processed where necessary to defend against legal claims arising from the application process. The legal basis in this case is Art. 6(1)(f) GDPR.
If an employment relationship is established, we may process the personal data already provided for purposes of the employment relationship in accordance with Section 26(1) BDSG. Your personal data will be deleted no later than six months after completion of the application process unless deletion conflicts with other legitimate interests or you have consented to longer storage.
Such legitimate interest may include obligations to provide evidence in proceedings under the German General Equal Treatment Act (AGG).
3.2.5 Cookies
We use so-called cookies on our website in order to make the website more user-friendly, effective and secure. Cookies are data records that are sent from the web server to the user’s browser and stored there for later retrieval.
When accessing the website, users are informed about the use of cookies and consent to the processing of the personal data used in this context is obtained. In most cases these are so-called “session cookies”. Session cookies are characterized by the fact that they are automatically deleted from your hard drive after the end of the browser session.
Other cookies remain on your computer system and allow us to recognize your computer system during your next visit (so-called persistent cookies).
An overview of all cookies used can be found here:
Non-essential cookies are set only with the user’s consent in accordance with Art. 6(1)(a) GDPR. You can of course reject cookies at any time if your browser allows this. Please note that certain functions of this website may not or may only be used to a limited extent if your browser is configured not to accept cookies.
3.2.6 Web analysis using Matomo
This website uses Matomo, software for website operators. Matomo uses so-called “cookies”, which are text files stored on your computer that enable analysis of your use of the website. The information generated by the respective cookie about your use of this website is transmitted to the server of the website operator in Germany and stored there. The IP address is anonymized immediately after processing and before it is stored.
The website operator will use this information to evaluate your visitor behavior and to compile reports on website activities.
The website operator will not transfer this data to third parties unless this is required by law. Cookies are only installed after you have given your explicit consent pursuant to Art. 6(1)(a) GDPR. You can prevent the installation of cookies by selecting the appropriate settings in your browser software; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. If you have given your consent, you may revoke it at any time.
If your browser supports the “Do Not Track” technology and you have activated it, your visit will automatically be ignored. You can deactivate data collection by Matomo here.
3.2.7 Google reCaptcha
We use reCaptcha v3 on our website. reCaptcha is a service provided by Google (Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland) and is used to prevent abusive automated entries into web forms and thus to protect the technical systems of the hosting provider. The protection of our systems constitutes our legitimate interest pursuant to Art. 6(1)(f) GDPR.
When you access one of our websites in which reCaptcha is integrated, a connection to Google’s servers is established. reCaptcha sets cookies in the process. Your IP address is transmitted to Google.
In addition, reCaptcha collects the following data by means of “fingerprinting”:
- browser plugins used
- cookies set by Google within the last six months
- number of mouse clicks and touches you have made on this screen
- CSS information for the accessed page
- JavaScript objects
- the date
- the browser language
You can prevent the storage of cookies and fingerprinting by selecting the appropriate technical settings in your browser software; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent.
Google’s privacy policy and terms of use can be found here:
https://www.google.com/policies/privacy/
https://policies.google.com/terms.
3.2.8 Adobe Typekit
This website uses Adobe Typekit. This is a service provided by Adobe Systems Software Ireland Limited (“Adobe”), located at 4–6 Riverwalk, Citywest Business Campus Dublin 24, Republic of Ireland.
When accessing the page, the necessary web fonts are loaded into your browser cache. This ensures that texts and fonts are displayed correctly. To achieve this purpose, the browser you are using must connect to the servers of Adobe Typekit. As a result, Adobe receives the information that this website was accessed via your IP address.
3.2.9 Social media presence
good healthcare Pharma GmbH maintains a social media presence on LinkedIn in order to provide information about the company. All data processing operations in this context are not carried out by us but by the social media provider. For the purpose and scope of data collection by the social media provider as well as the further processing and use of your data and your rights and settings options for protecting your privacy, we refer you to the privacy policies of the respective provider. We have no influence on this.
LinkedIn privacy policy: www.linkedin.com/legal/privacy-policy
3.2.10 Integration of third-party services and content
It may happen that within this online offering content from third parties is integrated, such as videos from YouTube and Vimeo, map material from Google Maps, RSS feeds or graphics from other websites. This always requires that the providers of this content (hereinafter referred to as “third-party providers”) perceive the IP address of the users. Without the IP address, they would not be able to send the content to the respective user’s browser. The IP address is therefore required for the display of this content. We endeavor to use only such content whose respective providers use the IP address solely for delivering the content. However, we have no influence if the third-party provider stores the IP address, for example for statistical purposes. Where this is known to us, we inform users accordingly.
3.2.11 Vimeo
This website uses plugins of the video portal Vimeo. The provider is Vimeo Inc., 555 West 18th Street, New York, New York 10011, USA.
If you visit one of our pages equipped with a Vimeo video, a connection to the Vimeo servers is established. The Vimeo server is informed which of our pages you have visited. In addition, Vimeo receives your IP address. This also applies if you are not logged in to Vimeo or do not have a Vimeo account. The information collected by Vimeo is transmitted to the Vimeo server in the USA.
If you are logged into your Vimeo account, you enable Vimeo to assign your browsing behavior directly to your personal profile. You can prevent this by logging out of your Vimeo account. Vimeo uses cookies or comparable recognition technologies (e.g. device fingerprinting) to recognize website visitors. The legal basis is our legitimate interest. Processing is carried out on the basis of Art. 6(1)(f) GDPR.
Further information on the handling of user data can be found in Vimeo’s privacy policy at: https://vimeo.com/privacy.
4. Customers, prospective clients and business partners
For the purpose of initiating and performing contracts, we also process personal data pursuant to Art. 6(1)(b) and (f) GDPR. We use the data to contact you, for payment processing and for further contractual purposes.
5. Are data transferred to third parties?
In order for good healthcare Pharma GmbH to process your data for the purposes mentioned above, it may be necessary for other recipients (companies of the good healthcare group, service providers or authorities) to view and process your data.
5.1. Recipients within the good healthcare group
good healthcare Pharma GmbH is a member of the good healthcare group. The good healthcare group is a network of affiliated companies that creates synergies. In certain cases it may be necessary to process your data across companies within the group. Data processing within the good healthcare group only takes place if we have a legal authorization to do so, for example in the context of commissioned processing.
5.2 External service providers (processors)
Your data will be passed on to service partners if they act on our behalf and support good healthcare Pharma GmbH in providing services. Processing of your personal data by commissioned service providers takes place within the framework of commissioned processing pursuant to Art. 28 GDPR.
These service providers receive access only to such personal information as is necessary for the fulfillment of the respective task. These service providers are prohibited from passing on your personal information or using it for other purposes, in particular for their own advertising purposes. Where external service providers come into contact with your personal data, we have ensured through legal, technical and organizational measures as well as through regular checks that they also comply with the applicable data protection regulations. Your personal data will not be passed on to other companies for commercial purposes.
5.3 Other service providers, partners or third parties
good healthcare Pharma GmbH may cooperate with other partners if this is necessary for the provision of our services or if we are legally obliged to disclose the data.
6. Are data processed outside the EU or the EEA and how is data protection ensured?
In some cases we also work with service providers outside the EU or the EEA, for example Salesforce. In such cases we have concluded EU Standard Contractual Clauses with the service providers in order to establish an adequate level of data protection.
7. How long are data stored?
The personal data of the data subject are deleted or blocked as soon as the purpose of storage ceases to apply. Storage may also take place if this has been provided for by European or national legislation in Union regulations, laws or other provisions to which the controller is subject. The data will also be blocked or deleted if a storage period prescribed by the aforementioned regulations expires, unless there is a necessity for further storage of the data for the conclusion or performance of a contract.
For the use of data on our website, the following storage conditions apply, among others:
- Applicant data are deleted after six months unless consent for longer storage has been given; in such a case deletion takes place after a maximum of one year.
- Contact inquiries are deleted after processing unless statutory retention obligations apply or consent for further storage has been given.
8. What rights do you have?
- Consent to the processing of personal data may be revoked at any time with effect for the future. The lawfulness of the data processing carried out on the basis of the consent until revocation remains unaffected. Revocation may be made informally by telephone, email or letter to the controller (contact details see section 1).
- If your personal data are processed, you have the right to obtain information from the controller about the personal data stored about you (Art. 15 GDPR).
- If incorrect personal data are processed, you have the right to rectification from the controller (Art. 16 GDPR).
- If the legal requirements are met, you may request erasure or restriction of processing and object to the processing (Art. 17, 18, 21 GDPR).
- If you have consented to data processing or a contract for data processing exists and the data processing is carried out by automated means, you may have the right to data portability (Art. 20 GDPR).
If you make use of the aforementioned rights, the controller will check whether the legal requirements are met.
- Without prejudice to any other administrative or judicial remedy, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, your place of work or the place of the alleged infringement, if you consider that the processing of personal data relating to you infringes this Regulation (Art. 77 GDPR).
You may exercise your rights at any time by telephone, by post or by email. Please address your request to: +49 211 909 893 30, good healthcare Pharma GmbH, Lütticher Straße 132, 40547 Düsseldorf, Germany, info@goodhealthcare-pharma.com.
You need to load content from reCAPTCHA to submit the form. Please note that doing so will share data with third-party providers.
More InformationYou are currently viewing a placeholder content from Turnstile. To access the actual content, click the button below. Please note that doing so will share data with third-party providers.
More InformationYou are currently viewing a placeholder content from Facebook. To access the actual content, click the button below. Please note that doing so will share data with third-party providers.
More InformationYou are currently viewing a placeholder content from Instagram. To access the actual content, click the button below. Please note that doing so will share data with third-party providers.
More InformationYou need to load content from hCaptcha to submit the form. Please note that doing so will share data with third-party providers.
More InformationYou need to load content from reCAPTCHA to submit the form. Please note that doing so will share data with third-party providers.
More InformationYou are currently viewing a placeholder content from Turnstile. To access the actual content, click the button below. Please note that doing so will share data with third-party providers.
More InformationYou are currently viewing a placeholder content from X. To access the actual content, click the button below. Please note that doing so will share data with third-party providers.
More Information