Important dates

  • 26th - 29th June 2024

    56th EPC meeting of the European Pancreatic Club

  • Registration Opens

    From January 2nd to June 26th 2024

  • Early Bird Registration Deadline

    May 6th 2024

Data Protection Policy

Introduction

This Privacy Policy has been developed taking into account the provisions of Regulation 2016/679 of the European Parliament and of the Council of April 27, 2016 regarding the protection of natural persons with regard to the processing of personal data and the circulation of these data, hereinafter the GDPR.
The purpose of this Privacy Policy is to inform the owners of the personal data, regarding which information is being collected, the specific aspects related to the treatment of their data, among other things, the purposes of the treatments, the contact information to exercise the rights that assist you, the terms of conservation of the information and the security measures among other things.

Responsible for the Treatment   

In terms of data protection Data Events Services, S.L. must be considered Responsible for the Treatment, in relation to the files/treatments that it manages.
The identification data of the owner of this website are indicated below:

Headquarters

Postal address: C/ Ferrol, 2. Urb. La Barcia – 15897 Santiago de Compostela, Coruña.
Email address: info@cyex.es
Telephone: +34 981 555 720

Data processing

The personal data requested, where appropriate, will consist only of those strictly essential to identify and meet the request made by the owner thereof, hereinafter the interested party. Said information will be treated fairly, lawfully and transparently in relation to the interested party. On the other hand, personal data will be collected for certain explicit and legitimate purposes, and will not be further processed in a way that is incompatible with said purposes.
The data collected from each interested party will be adequate, pertinent and not excessive in relation to the corresponding purposes for each case, and will be updated whenever necessary.
The owner of the data will be informed, prior to the collection of their data, of the general points regulated in this policy so that they can give their express, precise and unequivocal consent for the processing of their data, in accordance with the following aspects.

Purposes of the treatment   

The explicit purposes for which each of the treatments are carried out are included in the informative clauses incorporated in each of the data collection channels (web forms, paper forms, locutions or posters and informative notes).
In general, the data provided by the interested party will be processed, in each case in relation to the following purposes:
Manage the presentations, events or congresses promoted by the entity.
Send information about activities and events promoted by the entity.
Manage the transfers, travel and accommodation of those attending the congress or event.
Manage accreditations, attendance certificates or suggestions linked to the event.
Respond to inquiries, claims, suggestions or any other request processed through the corresponding section on the website.
However, the personal data of the interested party will be processed with the sole purpose of providing them with an effective response and meeting the requests made by the user, specified together with the option, service, form or data collection system that the owner uses.

Legitimation

As a general rule, prior to the processing of personal data, Data Events Services, S.L. obtains the express and unequivocal consent of the owner thereof, through the incorporation of informed consent clauses in the different information collection systems.
However, in the event that the consent of the interested party is not required, the legitimizing basis of the treatment in which Data Events Services, S.L. is the existence of a specific law or regulation that authorizes or requires the processing of the data of the interested party.

Recipients

As a general rule, Data Events Services, S.L. does not proceed to the transfer or communication of data to third parties, except those legally required, however, if necessary, said transfers or data communications are informed to the interested party through the informed consent clauses contained in the different ways of collecting personal data, such as the case of the communication of the data to the entities in charge of the accommodation and transfers of the attendees.

Origin 

As a general rule, personal data is always collected directly from the interested party, however, in certain exceptions, the data may be collected through third parties, entities or services other than the interested party. In this sense, this point will be transferred to the interested party through the informed consent clauses contained in the different ways of collecting information and within a reasonable period of time, once the data is obtained, and at the latest within one month.

Conservation periods 

The information collected from the interested party will be kept as long as it is necessary to fulfill the purpose for which the personal data was collected, so that, once the purpose is fulfilled, the data will be canceled. Said cancellation will lead to the blocking of the data, keeping it only at the disposal of the Public Administrations, Judges and Courts, to attend to the possible responsibilities arising from the treatment, during the limitation period of these, once the aforementioned period has elapsed, the information will be destroyed.

Navigation data 

In relation to the browsing data that can be processed through the website, in the event that data subject to the regulations is collected, it is recommended to consult the Cookies Policy published on our website.

Rights of the interested parties 

The regulations on data protection grant a series of rights to the interested parties or owners of the data, users of the website or users of the profiles of the social networks of Data Events Services, S.L. .
These rights that assist interested persons are the following:
Right of access: right to obtain information about whether your own data is being processed, the purpose of the treatment being carried out, the categories of data in question, the recipients or categories of recipients, the conservation period and the origin of said data.
Right of rectification: right to obtain the rectification of inaccurate or incomplete personal data.
Right of deletion: right to obtain the deletion of the data in the following cases:
When the data is no longer necessary for the purpose for which it was collected
When the owner of the same withdraws the consent
When the interested party opposes the treatment
When they must be deleted in compliance with a legal obligation
When the data has been obtained by virtue of an information society service based on the provisions of art. 8 sec. 1 of the European Regulation on Data Protection.
Right of opposition: right to oppose a certain treatment based on the consent of the interested party.
Right of limitation: right to obtain the limitation of data processing when any of the following cases occurs:
When the interested party challenges the accuracy of the personal data, during a period that allows the company to verify their accuracy.
When the treatment is illegal and the interested party opposes the deletion of the data.
When the company no longer needs the data for the purposes for which they were collected, but the interested party needs them for the formulation, exercise or defense of claims.
When the interested party has opposed the treatment while it is verified if the legitimate reasons of the company prevail over those of the interested party.
Interested parties may exercise the indicated rights, by contacting Data Events Services, S.L. , by writing, sent to the following address: info@cyex.es indicating in the subject line the right you wish to exercise.
In this sense, Data Events Services, S.L. will respond to your request as soon as possible and taking into account the deadlines established in the regulations on data protection.
On the other hand, it should be taken into account that the interested party or owner of the data may at any time file a claim with the competent control authority.

Security

The security measures adopted by Data Events Services, S.L. are those required, in accordance with the provisions of article 32 of the GDPR. In this sense, Data Events Services, S.L. , taking into account the state of the art, the costs of application and the nature, scope, context and purposes of the treatment, as well as the risks of variable probability and severity for the rights and freedoms of natural persons, has The appropriate technical and organizational measures have been established to guarantee the level of security appropriate to the existing risk.
In any case, Data Events Services, S.L. has implemented sufficient mechanisms to:
Guarantee the confidentiality, integrity, availability and permanent resilience of treatment systems and services.
Restore availability and access to personal data quickly, in the event of a physical or technical incident.
Verify, evaluate and assess, on a regular basis, the effectiveness of the technical and organizational measures implemented to guarantee the safety of the treatment.
Pseudonymize and encrypt personal data, if applicable.