Privacy Policy
I. Privacy and Data Protection Policy
BOHEMIA MALLORCA S.L.U. Correduría de Seguros (hereinafter also referred to as the Website) undertakes to adopt the necessary technical and organisational measures commensurate with the risk of the data collected, in accordance with the legislation in force.
Legislation incorporated into this privacy policy
This Privacy Policy is adapted to the current Spanish and European legislation on the protection of personal data on the Internet. Specifically, it complies with the following regulations:
- Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data (GDPR).
- Organic Law 3/2018 of 5 December on the protection of personal data and the guarantee of digital rights (LOPD-GDD).
- Royal Decree 1720/2007 of 21 December adopting the Regulation implementing Organic Law 15/1999 of 13 December on the Protection of Personal Data (RDLOPD).
- Law 34/2002 of 11 July on Information Society Services and Electronic Commerce (LSSI-CE).
Identity of the person responsible for the processing of personal data
The data controller of the personal data collected by BOHEMIA MALLORCA S.L.U. Correduría de Seguros is: BOHEMIA MALLORCA S.L.U., registered in the Mercantile Register of Mallorca c/ Alfons El Magnanim, 2 4 and 5 PI 07004 Palma in Volume 2945, folio 144, section 1, page number PM-93618, entry in the Special Administrative Register of the DGSFP J4078 – RC Professional CGPA EUROPE UNDERWRITING, ES-CS2022-901020. Its representative: Cristina Ferrari (hereinafter: data controller). Her contact details are as follows:
Company Address: 07609 Llucmajor
Contact telephone: +34 644 119 287
E-mail contact: [email protected]
Registration of personal data
In accordance with the provisions of the RGPD and the LOPD-GDD, we inform you that the personal data collected by BOHEMIA MALLORCA S.L.U. Correduría de Seguros through the forms provided on its pages will be included in our file and processed in order to facilitate the fulfilment of the contracts concluded between BOHEMIA MALLORCA S. L.U. Correduría de Seguros and the user, or to maintain the relationship established in the forms completed by the user, or to respond to an enquiry or request made by the user. Likewise, in accordance with the provisions of the RGPD and the LOPD-GDD, unless the derogation provided for in Article 30.5 of the RGPD applies, a register of processing activities will be kept, indicating, depending on the purpose, the processing activities carried out and the other circumstances established in the RGPD.
Principles applicable to the processing of personal data
The processing of the user’s personal data is subject to the following principles, which are laid down in Article 5 of the GDPR and in Article 4 et seq. of Organic Law 3/2018 of 5 December on the protection of personal data and the guarantee of digital rights:
- Principle of lawfulness, fairness and transparency: user consent is required at all times after full and transparent information about the purposes for which the personal data are collected.
- Purpose limitation principle: personal data is collected for specified, explicit and legitimate purposes.
- Data minimisation principle: Only personal data strictly necessary for the purposes for which they are processed shall be collected.
- Principle of accuracy: Personal data must be accurate and kept up to date.
- Principle of limitation of storage period: personal data shall only be stored in a form which permits identification of the user for the period necessary for the purposes for which they are processed.
- Principle of integrity and confidentiality: Personal data shall be processed in such a way as to ensure its security and confidentiality.
- Principle of proactive accountability: the controller is responsible for ensuring that the above principles are complied with.
Categories of personal data
The categories of data processed by BOHEMIA MALLORCA S.L.U. Correduría de Seguros are both identifying data and special categories of personal data within the meaning of Article 9 of the GDPR.
Special categories of personal data include data revealing racial or ethnic origin, political opinions, religious or philosophical beliefs or trade union membership, as well as the processing of genetic data, biometric data uniquely identifying a natural person, health data or data concerning a natural person’s sex life or sexual orientation.
In any case, the processing of special categories of personal data requires the explicit consent of the user for one or more specific purposes.
Legal basis for the processing of personal data
The legal basis for the processing of personal data is consent. BOHEMIA MALLORCA S.L.U. Correduría de Seguros undertakes to obtain the user’s express and verifiable consent to the processing of their personal data for one or more specific purposes.
The user has the right to withdraw their consent at any time. It will be as easy to withdraw consent as to give it. Withdrawal of consent will not normally be a condition of use of the website.
In those cases in which the user must or may provide his/her data through forms in order to make requests, request information or for reasons related to the content of the website, he/she will be informed when the completion of one of these forms is obligatory, as it is essential for the correct processing of the operation carried out.
Purpose of the processing of personal data
For what purpose will we process your personal data?
At Bohemia Mallorca SLU, we will process your personal data collected through the website: www.bohemia-mallorca.com, for the following purposes:
To comply with the commercial, labour, corporate and accounting obligations of the company.
To provide the information requested by the user through the contact form.
We remind you that you may oppose the sending of commercial communications by any means and at any time by sending an e-mail to the address indicated above.
The fields in these registers must be filled in, and it will be impossible to carry out the purposes expressed if these data are not provided.
How long will the personal data collected be kept?
The personal data provided will be kept for as long as the commercial relationship is maintained or you do not request its deletion and for the period of time for which legal responsibilities may arise from the services provided.
Legitimation
The processing of your data is carried out on the following legal bases that legitimise the same:
The request for information and/or the contracting of the services of Bohemia Mallorca SLU, the terms and conditions of which will be made available to you in any case, prior to any eventual contracting.
Free, specific, informed and unequivocal consent, insofar as we inform you by making this privacy policy available to you, which after reading it, if you agree, you can accept by means of a declaration or a clear affirmative action, such as ticking a box provided for this purpose.
In the event that you do not provide us with your details or you do so incorrectly or incompletely, we will not be able to deal with your request, making it completely impossible to provide you with the information requested or to carry out the contracting of services.
Recipients
The data will not be communicated to any third party outside Bohemia Mallorca SLU, unless legally obliged to do so.
As data processors, we have contracted the following service providers, who have undertaken to comply with the applicable data protection regulations at the time of contracting:
- E2K Global Business Solutions (E2K), with CIF A02313450 registered office at: , C.P. 02002 – ALBACETE, provides services of: manages and technological platform (ERP) for connectivity, management of business processes between insurance entities and insurance brokers.
- CORREDURÍA DE LOS NUEVOS CORREDORES Y CORREDURÍAS DE SEGUROS S.L., with CIF B-88330667, registered in the Special Register of the Directorate General for Insurance and Pension Funds (Dirección General de Seguros y Fondos de Pensiones), with the Nr. J-3697, domiciled for these purposes in Las Rozas de Madrid, C/ Londres, 38 1ª planta, Postleitzahl 28232, provides services of: Collaborator
- Camila Balemi, with CIF/NIF nº X8160720K, registered office at: Calle Valldonzella 50 3º Planta, C.P. 08001 Barcelona, provides services of: Design and Web Applications
Personal data of minors
In accordance with the provisions of Article 8 of the RGPD and 7 of Organic Law 3/2018, of 5 December, on the Protection of Personal Data and the Guarantee of Digital Rights, only persons over the age of 14 may give their consent to the lawful processing of their personal data by BOHEMIA MALLORCA S.L.U. Correduría de Seguros. In the case of minors under the age of 14, the consent of their parents or guardians is required for processing, which will only be considered lawful if they have authorised the processing.
Confidentiality and security of personal data
BOHEMIA MALLORCA S.L.U. Correduría de Seguros undertakes to adopt the necessary technical and organisational measures commensurate with the risk of the data collected, in order to guarantee the security of personal data and prevent the accidental or unlawful destruction, loss or alteration of personal data transmitted, stored or otherwise processed, as well as the unauthorised disclosure of or access to such data.
The website has an SSL (Secure Socket Layer) certificate, which ensures the secure and confidential transmission of personal data, as the data transmission between the server and the user is fully encrypted or encoded.
However, since BOHEMIA MALLORCA S.L.U. Correduría de Seguros cannot guarantee the invulnerability of the Internet, nor the total absence of hackers or other persons who fraudulently gain access to personal data, the data controller undertakes to notify the user immediately if a breach of security of personal data occurs that may entail a high risk to the rights and freedoms of natural persons. According to Article 4 of the General Data Protection Regulation, a personal data breach is any breach of security leading to the accidental or unlawful destruction or loss of, or alteration to, personal data transmitted, stored or otherwise processed, or to unauthorised disclosure of or access to such data.
The controller shall treat the personal data as confidential and undertakes to inform its employees, partners and any other persons to whom it discloses the information and to ensure, through a legal or contractual obligation, that such confidentiality is maintained.
Rights arising from the processing of personal data
The user has the following rights with respect to BOHEMIA MALLORCA S.L.U. Correduría de Seguros, as recognised in the RGPD and Organic Law 3/2018, of 5 December, on the protection of personal data and the guarantee of digital rights with respect to the data controller:
- Right of access: the user has the right to obtain confirmation as to whether or not BOHEMIA MALLORCA S.L.U. Correduría de Seguros is processing their personal data and, if this is the case, information about their specific personal data and the processing carried out or envisaged by BOHEMIA MALLORCA S.L.U. Correduría de Seguros, as well as the information available about the origin of this data and the recipients of the communications carried out or envisaged for this data, among other things.
- Right to rectification: This is the user’s right to have their personal data amended if it proves to be inaccurate or incomplete, taking into account the purposes of the processing.
- Right to erasure (“right to be forgotten”): This is the user’s right, unless otherwise provided by law, to request the erasure of his or her personal data if they are no longer necessary for the purposes for which they were collected or processed, the user has withdrawn his or her consent to the processing and the processing has no other legal basis; the user objects to the processing and there is no other legitimate reason to continue the processing; the personal data has been processed unlawfully; the personal data must be erased due to a legal obligation; or the personal data was obtained as a result of a direct offer of information society services to a person under 14 years of age. In addition to erasure, the controller shall take reasonable steps, taking into account the available technology and the cost of their implementation, to inform the controllers processing the personal data of the data subject’s request for erasure of all links to that personal data.
- Right to restrict processing: This is the user’s right to restrict the processing of their personal data. The user has the right to obtain the restriction of processing if the user contests the accuracy of his/her personal data, the processing is unlawful, the controller no longer needs the personal data but the user needs it to assert claims, and if the user has objected to the processing.
- Right to data portability: in the case of automated processing, the user has the right to obtain from the controller his/her personal data in a structured, commonly used and machine-readable format and to transmit it to another controller. Where technically feasible, the controller shall transfer the data directly to the other controller.
Right to object: the user has the right to object to or terminate the processing of his/her personal data by BOHEMIA MALLORCA S.L.U. Correduría de Seguros. - Right not to be subject to a decision based solely on automated processing, including profiling:This is the user’s right not to be subjected to an individualised decision based solely on automated processing of his/her personal data, including profiling, unless otherwise provided for by the applicable legislation.
Therefore, the user may exercise his/her rights by sending a written communication to the data controller, marked “RGPD-bohemia-mallorca.com”, stating the following:
- User’s name, surname(s) and copy of identity card. In cases where representation is permitted, the person representing the user must be indicated in the same manner, as well as the document confirming the representation. The photocopy of the DNI may be replaced by any other legally valid means confirming identity.
- Request stating the specific reasons for the request or the information to which access is sought.
- Address for notification purposes.
- Date and signature of the applicant.
- Any document authenticating the application made.
This application and any attached documents may be sent to the following address and/or email address:
Postal address: 07609 Llucmajor
E-mail: [email protected]
Links to third party websites
The website may contain hyperlinks or links that provide access to third party websites that do not belong to BOHEMIA MALLORCA S.L.U. Correduría de Seguros and are therefore not operated by BOHEMIA MALLORCA S.L.U. Correduría de Seguros. The owners of these websites have their own privacy policies and are in any case responsible for their own files and their own privacy practices.
Complaints to the supervisory authority
If the user considers that the processing of their personal data poses a problem or is in breach of the applicable regulations, they have the right to effective judicial protection and the right to lodge a complaint with a supervisory authority, in particular in the state where they have their habitual residence, their place of work or the place of the alleged breach. n the case of Spain, the supervisory authority is the Spanish Data Protection Authority (https://www.aepd.es/).
II. Acceptance and amendments to this Privacy Policy
It is necessary that the user has read and agrees to the terms and conditions for the protection of personal data contained in this Privacy Policy and that he/she accepts the processing of his/her personal data in order for the data controller to proceed in the manner, during the periods and for the purposes indicated. Use of the website implies acceptance of the privacy policy.
BOHEMIA MALLORCA S.L.U. Correduría de Seguros reserves the right to modify its privacy policy according to its own criteria or due to a change in legislation, case law or the doctrine of the Spanish Data Protection Agency. Any changes or updates to this privacy policy will not be expressly communicated to the user. The user is advised to consult this page regularly to keep abreast of the latest changes or updates.
This Privacy Policy has been updated to align it with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data (GDPR) and with Organic Law 3/2018 of 5 December on the protection of personal data and the guarantee of digital rights.
This website privacy document was created using the online privacy template generator on 18/06/2022.