The Company operates a pharmacy with a compounding laboratory (part of Eva Mitsaki Pharmacy) and applies enhanced data protection standards, particularly when processing health-related data.
Data Controller
The Data Controller responsible for the processing of personal data is:
PHARMACIES MITSAKI E.–CHONDROS CH. & CO G.P.
Registered Address: Paraliakos Stalidas–Malia, 700 07, Crete, Greece
Email: info@cocoonlab.gr
Phone: +30 28970 32132
Tax Identification Number (VAT): 802340410
Categories of Data Subjects
The Company processes personal data relating to the following categories of individuals:
Processing is carried out only to the extent necessary for each specific purpose and in accordance with the principle of data minimization.
Types of Data That May Be Collected
If You Are a Patient
We collect and process personal data primarily for the purpose of executing medical prescriptions issued by your physician and provided to us.
For the registration, archiving, and execution of prescriptions, as well as for the delivery of the corresponding formulations, the Laboratory may process the following personal data:
Where the prescription concerns a child, we may require the child’s age and body weight.
Where the prescription concerns an animal, we record the species of the animal.
If You Are a Healthcare Professional
For the purpose of executing prescriptions you issue or provide to us, we may process personal data such as:
When You Visit Our Website (www.cocoonlab.gr)
Each time you visit our website, cookies are used to ensure proper functionality, continuous improvement, and optimal user experience.
When you use the contact form or communicate with us via email, we collect the data you provide in the required fields, as well as any files you may attach.
If you subscribe to our newsletter, we will collect your full name and email address to send updates about Cocoon Lab services and news.
Purposes of Processing
Personal data is processed for the following purposes:
Legal Basis for Processing
Processing is based on the following legal grounds:
Processing of health data is carried out in accordance with Article 9(2) GDPR, within the framework of providing healthcare services by professionals bound by confidentiality obligations.
Health Data – Special Considerations
Health-related data:
Submission of such data through the website is the responsibility of the user and does not replace medical examination or diagnosis.
Cookies
The website uses cookies for:
Users may manage or disable cookies through their browser settings.
Data Retention
Personal data is retained only for as long as necessary to fulfill the purposes of processing or as required by applicable law.
After this period, data is securely deleted or anonymized.
Data Sharing with Third Parties
Personal data is not sold or shared for commercial purposes.
Data may be disclosed only:
All partners are bound by confidentiality obligations.
Data Security
The Company implements appropriate technical and organizational measures to protect personal data from loss, alteration, or unauthorized access, in accordance with applicable security standards.
Data Subject Rights
Each data subject has the right to:
Without prejudice to any other rights, you may contact the Hellenic Data Protection Authority.
Policy Updates
This Privacy Policy may be updated. The current version is published on the website and becomes effective upon publication.