Privacy Policy regarding the protection of personal data for Citizens (Patients)
Introductory Information
Vidavo S.A. will activate your access to «Vida24» only through your doctor or another healthcare provider (hereafter “the provider”), meaning that your doctor or provider will first transmit your email address to us (not your name or any other personal information). After we verify your email, we will create a user account so that you can log in to «Vida24». Any personal data subsequently entered into the application (name, weight, age, test results, etc.) are processed for the purpose of providing medical services exclusively by your doctor or provider, who are the sole “data controllers” of these data.
Data Controller – Data Processed
In view of the above, Vidavo S.A. is the “data controller” only for the following data:
- a) The email provided by your doctor or provider to certify you as a user of «Vida24».
- b) The user account we create for you to access and use «Vida24»
- c) Date, time, subject, and recipient of email, specifically when you choose the email notification functionality within «Vida24».
- d)
Technical information collected by all applications globally and always recorded in “data logs,”
specifically:
- IP address
- Date and time of the request
- Time zone difference relative to Greenwich Mean Time (GMT)
- Content of the request (specific page)
- Access status/HTTP status code
- Amount of data transferred
- Website from which the request originated
- Browser
- Operating system
- Language and version of browser software
Please note that while using «Vida24», the system records anonymous usage statistics exclusively to improve user experience through the development of new features and functionalities. These data are anonymous and therefore not considered “personal data,” since they cannot identify you in any way.
- e) Cookies
Since you access «Vida24» through the website vida24.com, cookies (small text files stored on your device) are also used. Detailed information can be found in the Cookies Policy.
Purposes and Legal Basis of Processing
Processing of the data under (a), (b), and (c) is based on our agreement that Vidavo S.A. provides you with access to the «Vida24» application, and you use it according to the Terms of Use, pursuant to Article 6(1)(b) GDPR (“processing is necessary for the performance of a contract to which the data subject is a party, or in order to take steps at the data subject’s request prior to entering into a contract”). The purpose of processing the technical data under (d) is the proper functioning of the platform, in particular addressing potential technical issues and protecting against malicious or unlawful use (e.g., via IP address records). The legal basis for this is our legitimate interest in ensuring the security and integrity of our systems (Article 6(1)(f) GDPR).
Data Retention
Your data is stored on our servers as follows:
- a) Your email and user account are stored for as long as you use «Vida24».
- b) Technical data (IP address, device type, etc.) are stored in data logs for three months from the last account activity.
After these periods, the above data are fully anonymized and no longer constitute personal data.
Exceptionally, your data may be retained in identifiable form for longer if required by the Ministry of
Health or its supervised entities in the exercise of their statutory powers, or in the event of claims,
until final resolution or expiration.
Recipients
Vidavo S.A. discloses your personal data only to:
- Competent services of the Ministry of Health and its supervised entities, in the exercise of their statutory powers.
- The German company Hetzner Online GmbH, acting as a “processor” on behalf of Vidavo S.A., exclusively for cloud hosting within the European Union (Germany and Finland).
How We Safeguard Your Data
Only you and any person you may authorize (e.g., your doctor, your relatives) can view the data you enter. Authentication is performed using your username and password, which grant secure access to authorized information. You may change your password as often as you wish, upon successful login. The only person who has access to your data is you, via the above credentials, and you are solely responsible for keeping them confidential from third parties. If you do not remember your password, you can initiate the ‘Forgot Password’ process either through the app or through the cloud (web portal), which is the same as the account activation process. Vidavo does not use your entered data in any way but merely stores and protects them so that they remain available whenever you access «Vida24». Storage is performed within the EU, with encryption to prevent direct association with you. The Platform provides the necessary functionalities for the remote monitoring and support of patients, ensuring the security, protection, integrity, and confidentiality of data, as well as all other aspects related to its smooth operation, and is fully compliant with European security protocols and standards. It is noted that the doctor is solely responsible for initiating and terminating teleconferences, as well as for appropriate communication and provision of medical services to the patient, in accordance with medical science principles, to ensure adequate assessment of the patient, and in compliance with the diagnostic and therapeutic protocols and guidelines of the Ministry of Health. For further information on the security measures implemented by Vidavo, or for any questions or clarifications, please contact us at dpo@vidavo.eu.
Your Rights and How to Exercise Them
The General Data Protection Regulation (GDPR) and Greek legislation grant you the following rights:
- To be informed whether your email is being used in «Vida24» (“right of information and access”).
- To request the correction and/or completion of inaccurate or incomplete data (“right to rectification”).
- To request the deletion of your data (“right to be forgotten”).
- To request the restriction of processing: (a)for as long as the above request for rectification or deletion of your data is pending, and (b)in cases where we are obliged to delete your data but you prefer that we retain it solely on your behalf, e.g. for you to exercise a legal right such as defending yourself or raising legal claims (“right to restriction of processing”).
- To receive your data in a readable electronic format and/or to have it transmitted directly to third parties designated by you (“right to data portability”).
- To object to specific processing activities (“right to object”).
To exercise your rights or for any questions regarding your personal data, please contact Vidavo S.A. (10th km Thessaloniki–Nea Moudania, Balkan Center, Building D, 57001, tel. +30 2310 474762) or via email at dpo@vidavo.eu. If you believe your data are infringed, you may lodge a complaint with the Hellenic Data Protection Authority (1-3 Kifisias Ave., 11523 Athens, tel. +30 210 6475600, contact@dpa.gr).
Revisions
Vidavo makes every effort to continually evolve «Vida24» so that it remains at the cutting edge of technology and in full compliance with data protection legislation, as well as the specific legal framework governing telemedicine applications.
If technological or legal changes affect personal data processing, this notice will be revised accordingly. Please review it regularly.
Τελευταία αναθεώρηση 30.09.2025