Privacy Policy

Polyclinic BookingMED d.o.o., OIB: 17041059699, headquartered at Međimurska Street 17, Zagreb, Croatia, acts as the data controller for the processing of your personal data.
This Privacy Policy explains how we collect, use, and protect your data across our website https://facelab.hr and related digital platforms, in accordance with the General Data Protection Regulation (GDPR) and the Croatian Act on the Implementation of the GDPR (NN 42/2018).


1. What Personal Data We Collect

We may collect your personal data:

  • via contact and booking forms,

  • via newsletter subscriptions (Brevo service),

  • through social media campaigns, giveaways, and contests,

  • via Meta Instant Forms (lead ads) and other online ad interactions,

  • automatically via cookies and analytics tools (Google Analytics 4, Tag Manager, Meta Pixel),

  • when you communicate with us by email, phone, or social networks.

If you are under 16, please do not provide personal data without parental consent.


2. Purposes and Legal Basis

Purpose Example of Data Legal Basis
Responding to inquiries and bookings name, email, phone, message performance of a contract
Newsletter and updates email, name consent
Analytics and optimization (GA4, Tag Manager) technical identifiers, IP (anonymized) consent
Marketing and remarketing (Meta Pixel, Google Ads, TikTok Ads) browser data, engagement info consent
Social media campaigns and contests name, profile, contact info consent / contract
Website security and improvement log data, IP legitimate interest
Legal obligations (accounting, audits) legal identification data legal obligation

3. Use of Social Media

We manage official profiles on Meta (Facebook, Instagram), TikTok, and LinkedIn.
When you interact with us on these platforms (e.g. messages, comments, giveaways, or instant forms), your data are processed according to each platform’s privacy policy:


4. Cookies and Analytics

We use cookies and related technologies for:

  • basic website functionality (necessary cookies),

  • traffic analysis (Google Analytics 4),

  • tag management (Google Tag Manager),

  • ad personalization and remarketing (Meta Pixel, Google Ads, TikTok).

Your cookie preferences can be managed or changed anytime on our Cookie Policy page.
We use Real Cookie Banner for consent management.


5. Data Sharing and Transfers

Your data may be shared with:

  • authorized employees and service partners,

  • IT, hosting, and marketing service providers,

  • third-party platforms such as Google, Meta, Brevo, TikTok, devowl.io,

  • competent authorities when required by law.

No data are transferred outside the EU unless adequate safeguards (e.g., Standard Contractual Clauses) are in place.


6. Data Security and Retention

We apply technical and organizational measures to protect your data, including:

  • restricted access based on necessity,

  • encryption (HTTPS/SSL),

  • secure EU-based servers,

  • system monitoring and updates.

Personal data are stored only as long as necessary for their purpose or until consent is withdrawn.


7. Your Rights

You have the right to:

  • access your personal data,

  • correct or delete data,

  • withdraw consent at any time,

  • restrict or object to processing,

  • request data portability.

To exercise your rights, contact info@facelab.hr.
You may also contact the Croatian Personal Data Protection Agency (AZOP), Martićeva 14, 10000 Zagreb, Croatia,
azop@azop.hr | www.azop.hr


8. Policy Updates

This Privacy Policy may be updated periodically.
All updates will be published on https://facelab.hr.

Last updated: October 2025