Privacy policy

(ReplicaDent OÜ Privacy Policy)

ReplicaDent OÜ (hereinafter - the “Company”), registered in Estonia, respects the privacy of its users and processes personal data in accordance with the EU General Data Protection Regulation (GDPR), the Estonian Personal Data Protection Act (Isikuandmete kaitse seadus), the UAE Personal Data Protection Law (PDPL), and other applicable requirements.

1. Collection of Personal Data

The Company may collect the following categories of personal data:

  • Full name

  • Company name

  • Contact person

  • Phone number

  • Email address

  • Delivery address

  • Order history

  • Access logs (IP address, visit time, technical parameters)

Data is collected through website forms, during registration, order placement, or when contacting customer support.

2. Purposes and Legal Bases of Processing

Personal data is processed for the following purposes:

  • Processing and delivering orders

  • Providing customer support and communication

  • Improving the product range and user experience

  • Complying with accounting and tax obligations

  • Marketing communications (with user consent and an option to unsubscribe)

Legal bases under GDPR:

  • Article 6(1)(a) - Consent

  • Article 6(1)(b) - Performance of a contract

  • Article 6(1)(c) -Legal obligations

  • Article 6(1)(f) - Legitimate interests (e.g., analytics, fraud prevention)

3. Data Retention

  • Order data - 5 years (as required by accounting regulations)

  • Account data - until deleted by the user

  • Customer support inquiries - 3 years

After the retention period, data is deleted or anonymized.

4. Disclosure to Third Parties

Personal data may be shared only where necessary:

  • Logistics partners for order delivery

  • Payment providers for transaction processing

  • Analytics and marketing platforms (e.g., Google Analytics)

  • Regulatory authorities if required by law

All partners are required to comply with GDPR and ensure adequate protection.

5. International Data Transfers

Where data is transferred outside the EU/EEA (e.g., to the UAE), the Company ensures appropriate safeguards are in place, such as:

  • Adequacy decision (Art. 45 GDPR)

  • Standard Contractual Clauses (Art. 46 GDPR)

In such cases, we ensure that appropriate contractual and technical safeguards are applied to protect personal data.

6. Cookies

Cookies are used for:

  • Saving items in the shopping cart

  • User authentication

  • Analyzing website behavior to improve services

Users may disable cookies in their browser, but this may affect website functionality.

7. Data Subject Rights

Under GDPR, users have the right to:

  • Access their data

  • Rectify inaccuracies

  • Request deletion (“right to be forgotten”)

  • Restrict processing

  • Data portability

  • Object to processing (including direct marketing)

  • Withdraw consent at any time

Requests are processed within 30 days. To exercise your rights, please contact us at info@replicadent.com. We may request additional information to verify your identity.

8. Data Deletion

Personal data is deleted once the processing purpose has been achieved or upon the user’s request. Technical measures ensure irrecoverable deletion.

9. Contact Information

Data Controller:
ReplicaDent OÜ
Roosivälja tee 1, Soodevahe
75322 Raevald
Estonia
Email: info@replicadent.com

10. Supervisory Authority

If you believe your data protection rights have been violated, you may contact:

Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon)

Tatari 39, 10134 Tallinn, Estonia
Email: info@aki.ee
Website: https://www.aki.ee

You may also contact the data protection authority in your country of residence or the European Data Protection Board (EDPB)

11. Updates to the Policy

This Privacy Policy does not apply to third-party websites linked from our site. We are not responsible for their privacy practices. The Company reserves the right to update this Privacy Policy. The latest version will always be available on the ReplicaDent OÜ website.