Privacy Policy

Registered Customer

Every customer of Metesa Oy is a data subject as defined in the General Data Protection Regulation (GDPR).

By using the Metesa Oy website and its online services, you automatically accept the terms of this Privacy Policy.
In addition to using the website, the services refer to ordering maintenance services, fault repairs, and spare parts for laboratory and medical devices provided by Metesa Oy via electronic forms on the website, as well as the handling of related inquiries and other contacts.

Personal Data Collected via the Website

The following data is collected from the registered customer:
First and last name, workplace address, email address, phone number, and details of the device requiring maintenance or spare parts.

The following data is also collected:

  • Location data used for website visitor statistics

  • Data derived through analytics

  • General website usage and browsing data

  • Identifiers of the data subject’s terminal device

The data collected via the website is divided into the following categories:

  • Data provided by the data subject in the online service

  • Observations generated from the use of the online service

  • Online service analytics

Use of Collected Data

The collected data is used for:

  • Processing, delivery, and archiving of device maintenance and spare parts orders

  • Development of customer service and maintenance of customer relationships

  • Measuring customer satisfaction

  • Development of the online service and the device maintenance service itself

  • Statistical purposes

Legal Basis for Processing Personal Data

The processing of personal data is based on:

  • The consent given by the data subject to Metesa Oy

  • The customer relationship between the data subject and Metesa Oy

  • The use of the Metesa Oy website by the data subject

Processing and Protection of Personal Data

Metesa Oy follows good data protection practices in the processing of personal data and complies with the requirements of the EU General Data Protection Regulation that entered into force on 25 May 2018.
The servers of Metesa Oy and those of the website service provider are protected in accordance with current industry standards.

The personal data of the data subject is protected against:

  • Unauthorized access

  • Disclosure of data

  • Alteration of data

  • Any other unlawful processing of data

Retention Period of Personal Data

The personal data of the registered customer (first and last name, phone number, email address, and workplace contact details) is stored in Metesa’s register for as long as necessary to enable Metesa Oy to provide services to the registered customer and to ensure the quality and reliability of the services.

At the request of the registered customer, identifiable personal data (first and last name, phone number, and email address) may be removed from Metesa Oy’s systems. After deletion, the data will no longer be used for the purposes stated in this Privacy Policy or for any other purposes.

However, it should be noted that Finnish legislation requires certain data to be retained for longer periods.

This applies, for example, to the following purposes:

  • The Accounting Act defines longer retention periods for data regardless of whether the material contains personal data

  • System log data is collected and retained as required by law to provide lawful and secure services to customers

  • Creating sufficient backups of server databases and systems to secure data, correct error situations, and ensure data security and continuity

Rights of the Data Subject

The registered customer has the right to:

  • Obtain a copy of their personal data

  • Request rectification or deletion of their personal data

  • Under certain conditions, request restriction of processing or object to the processing of personal data

If the processing of personal data is based on separate consent, the data subject has the right to withdraw consent at any time. This does not affect the lawfulness of processing carried out before the withdrawal of consent.

The request submitted by the registered customer must be sufficiently specific so that Metesa Oy’s customer service can verify the identity of the data subject. There are also situations in which it is not possible to delete all personal data of the registered customer. This applies in cases where Metesa Oy has a statutory obligation or right to retain the data. In such cases, we will notify the customer with written justification.

Requesting Personal Data

A registered customer may request information about their personal data stored in Metesa Oy’s information systems or request deletion of such data by contacting our customer service:
toimisto.fi@metesa.com

As stated above, there are cases where it is not possible to delete all personal data of the registered customer, for example due to legislative requirements.

Disclosure of Personal Data to Third Parties

To enable customer service and maintenance services, we may in special cases disclose a customer’s name or other contact details to a third party. This applies, for example, in situations where a device under warranty has malfunctioned and the manufacturer’s warranty requires disclosure of data to the device manufacturer.

Website analytics data may be shared with third parties, for example when examining visitor numbers on different pages of the website and for marketing purposes, in order to offer services that interest our customers. If necessary, data may also be disclosed at the request of authorities. We will always inform the customer of such data requests where permitted by law. Otherwise, data is not disclosed to third parties or external parties.

Use of Cookies on the Metesa Oy Website

The Metesa Oy website uses cookies. A cookie is a completely harmless text file that is copied to the visitor’s terminal device. Cookies do not damage the visitor’s device in any way.
The cookies used on the Metesa Oy website do not collect personal data.

Cookies are used primarily for anonymous analytics and to improve the usability of the website. The Metesa Oy website uses third-party tools that utilize cookies, such as Google Analytics, which collect and analyze non-personal data related to website visits.

Third-party services are subject to the privacy policies and terms of use applied by those companies. Metesa Oy is not responsible for the data collection or processing carried out by third parties. For more information, please refer to the terms of use and privacy policies of the relevant third-party service providers on their own websites.

Metesa Oy may use data collected from the website for user analysis, segmentation, and for targeting and limiting marketing also through third-party services.

Changes to the Privacy Policy

Due to the continuous development of the services provided by Metesa Oy and changes in legislation, we reserve the right to amend this Privacy Policy.

Processors of Personal Data

Access to customer data is restricted and monitored and granted only to Metesa Oy employees and personnel based on their job responsibilities, and only to the extent necessary and essential for providing the company’s services.
Metesa Oy employees and personnel are trained to handle customer data securely and in accordance with good practice.

Further Information on Metesa Oy’s Privacy Policy

For more information about data protection and the processing of personal data, please contact Metesa Oy.

Data Controller
Metesa Oy
Koivulehdontie 16 b
01510 VANTAA
Finland
Business ID: 0918246-1

Customer Service: toimisto.fi@metesa.com