Privacy Policy

Privacy Policy

At EQUASHIELD Our Mission is to provide superior and innovative solutions for the protectiong of healthcare workers worldwide. Our state of the art devices are elegantly designed, easy to use, and reduce the risk of hazardous drug exposure.

Our CSTD is the Most Closed System on the Market

At EQUASHIELD Our Mission is to provide superior and innovative solutions for the protectiong of healthcare workers worldwide. Our state of the art devices are elegantly designed, easy to use, and reduce the risk of hazardous drug exposure.

Equashield Privacy and Data Protection Policy and Notice


EquashieldMedical Ltd. and its subsidiaries (“Equashield”, “we”, “our”or the “Company”, and their cognates) respects the privacy of itscustomers, and is committed to protecting the personal informationyou may share with us. (these and any others with respect to whom wecollect personal data, shall collectively be referred to as“Customers” or “you” or “Data Subjects”).



Equashieldis a medical device company providing a state-of-the-art ClosedSystem Transfer Device (CSTD) for the safe handling of hazardousdrugs, designed to protect healthcare workers from the risksassociated with exposure to hazardous drugs and vapors (the“Services”).



Thispolicy and notice (the “Privacy Policy”) explains the types ofinformation we may collect from you, that we may receive about you orthat you may provide in the course of your interest in our Services,business transactions, conferences and webinars. We are transparentabout our practices regarding the information we may collect, use,maintain and process and describe our practices in this policy andnotice. Please read the following carefully to understand ourpractices regarding your personal data and how we will treat it.



Forthe purposes of EU General Data Protection Regulation (the “GDPR”),CCPA and other applicable privacy laws:



Equashieldis a data controller (the “Controller”) in relation to thePersonal Data of our Customers and prospective customers



1.WHICH INFORMATION MAY WE COLLECT?

Summary:we collect various categories of personal data in order to meet ourcontractual obligations, and also to meet various legitimateinterests, such as fraud prevention and marketing.



Wemay collect data about you in connection with your transactions withus, or in processing data for our Customers. One type of data isnon-identifiable and anonymous information (“non-personal data”).We also collect several categories of personal data (“PersonalData”).



Datawe collect about you from your transactions with us:



PersonalData which is being gathered consists of any details which arepersonally identifiable provided consciously and voluntarily by you,or by an organization you represent or are associated with or throughyour use of our websites (as described below). This may include yourname (first and last), email address, phone number, postal address,position and organization name and other information you may chooseto provide to Equashield. Additionally, we may obtain location datarelated to the geographic location of your laptop, mobile device orother digital device on which the Equashield websites are used.



Youdo not have any legal obligation to provide any information toEquashield, however, we require certain information in order toperform contracts, or to provide any services. If you choose not toprovide us with certain information, then we may not be able toprovide you or your organization with some or all of the services.



Bysubmitting requests for support or information via the websites,Equashield will collect details, including also your name, facilityname, phone number and personal or company email you provided,country and other such information. Equashield may use thisinformation to offer Equashield’s services and support.



Equashieldalso collects Personal Data through the use of CCTV cameras. This mayconsist of video images of you in the public spaces at Equashieldsites, as well as records of your entrances and exits of theEquashield sites, buildings and office floors. Equashield may not beaware of the nature of the information collected through our services(for example, through our CCTV systems), and such information mayinclude sensitive or special categories of Personal Data, but we donot knowingly collect such data about our Customers, employees, sitevisitors etc.



2.HOW DO WE COLLECT PERSONAL DATA OF YOURS ON EQUASHIELD FACILITIES ANDSERVICES?

Summary:we collect personal data when you or your organization send it to us,or when a vendor sends it to us so; we collect personal data throughour websites and services.



Wecollect Personal Data required to provide Services when you registerinterest, or when you provide us such information by entering itmanually or automatically, or through your use of our websites,facilities and Services, or in connection with site visits, in thecourse of preparing a contract, or otherwise in engaging with us. Wealso may collect Personal Data when you call us for support, in whichcase we collect the information you provide us. We also collectPersonal Data through our CCTV recordings which automatically collectinformation about your presence in the Equashield facilities.



Wealso collect Personal Data through your use of our websites. In otherwords, when you are using the websites, we are aware of it and maygather, collect and record the information relating to such usage,either independently or through the help of third-party services asdetailed below. This may include technical information and behavioralinformation such as the user’s Internet protocol (IP) address usedto connect your computer to the Internet, your uniform resourcelocators (URL), operating system, type of browser, browser plug-intypes and versions, screen resolution, Flash version, time zonesetting, the user’s ‘clickstream’ on the websites, the periodof time the user visited the websites, methods used to browse awayfrom a page, and any phone number used to call our customer servicenumber. We likewise may place cookies on your browsing devices (seesection 'Cookies' below).



3.WHAT ARE THE PURPOSES OF PERSONAL DATA WE COLLECT?

Summary:we process personal data to meet our obligations, protect our rights,and manage our business.



Wewill use Personal Data to provide and improve our services to ourCustomers and others and meet our contractual, ethical and legalobligations. All Personal Data will remain accurate complete andrelevant for the stated purposes for which it was processed,including for example:



Processingwhich is necessary for the performance of a contract to which you area party or in order to take steps at your request prior to enteringinto a contract:

notifyingyou about changes to our service and products;

contactingyou for the purpose of providing you with technical assistance andother related information about the products;

replyingto your queries, troubleshooting problems, detecting and protectingagainst error, fraud or other criminal activity;

contactingyou to give you commercial and marketing information about events orpromotions or additional services and products offered by Equashield,including in other locations;

solicitingfeedback in connection with your use of the services;

trackinguse of Equashield facilities and services to enable us to optimizethem;

contactingyou to inform you of additional services which may be of interest toyou;

Processingwhich is necessary for the purposes of the legitimate interestspursued by Equashield or by a third party of providing an efficientand wide-ranging service to customers:

notifyingyou about changes to our service and products;

contactingyou for the purpose of providing you with technical assistance andother related information about the products;

replyingto your queries, troubleshooting problems, detecting and protectingagainst error, fraud or other criminal activity;

contactingyou to give you commercial and marketing information about events orpromotions or additional services and products offered by Equashield,including in other locations;

solicitingfeedback in connection with your use of the services;

trackinguse of Equashield facilities and services to enable us to optimizethem;

contactingyou to inform you of additional services which may be of interest toyou;

Processingwhich is necessary for compliance with a legal obligation to whichEquashield is subject:

complianceand audit purposes, such as meeting our reporting obligations in ourvarious jurisdictions, and for crime prevention and prosecution in sofar as it relates to our staff, Customers, facilities etc;

ifnecessary, we will use personal data to enforce our terms, policiesand legal agreements, to comply with court orders and warrants andassist law enforcement agencies as required by law, to collect debts,to prevent fraud, infringements, identity thefts and any otherservice misuse, and to take any action in any legal dispute andproceeding;

forsecurity purposes and to identify and authenticate your access to theparts of the facilities;

wemay collect personal data of our Customers’ personnel, which willbe used for the purposes set out above.



4.SHARING DATA WITH THIRD PARTIES

Summary:we share personal data with our service providers, partners, andgroup companies, and authorities where required.



Wemay transfer Personal Data to:



Membersof our Group: This includes any member of our group, which meanssubsidiaries – whether wholly or partially owned by Equashield, andco-owned companies.



ThirdParties. We transfer Personal Data to third parties in a variety ofcircumstances. We endeavor to ensure that these third parties useyour information only to the extent necessary to perform theirfunctions, and to have a contract in place with them to govern theirprocessing on our behalf. These third parties may include businesspartners, suppliers, affiliates, agents and/or sub-contractors forthe performance of any contract we enter into with you. They mayassist us in providing the services we offer, processingtransactions, fulfilling requests for information, receiving andsending communications, analyzing data, providing IT and othersupport services or in other tasks, from time to time. These thirdparties may also include analytics and search engine providers thatassist us in the improvement and optimization of our websites, andour marketing.



Weperiodically add and remove third party providers. At present ourthird-party providers to whom we may transfer personal data includealso the following:

Websiteanalytics (such as Google Analytics);

Documentmanagement and sharing services (such as Microsoft);

Customerticketing and support (such as Salesforce CRM);

On-siteand cloud-based database services (such as SAP Cloud)

Vendorand customer Interface (such as Shopify);

CRMsoftware (such as Salesforce);

ERPsoftware (such as SAP);

Datasecurity, data backup, and data access control systems;

ProjectManagement system;

Callcenter systems;

Customerservice providers for Equashield products;

Ourlawyers, accountants, and other standard business software andpartners.



Inaddition, we may disclose your personal data to third parties if someor all of our companies or assets are acquired by a third partyincluding by way of a merger, share acquisition, asset purchase orany similar transaction, in which case personal data may be one ofthe transferred assets. Likewise, we may transfer personal data tothird parties if we are under a duty to disclose or share yourpersonal data in order to comply with any legal or audit orcompliance obligation, in the course of any legal or regulatoryproceeding or investigation, or in order to enforce or apply ourterms and other agreements with you or with a third party; or toassert or protect the rights, property, or safety of Equashield, ourCustomers, or others. This includes exchanging information with othercompanies and organizations for the purposes of fraud protection andcredit risk reduction and to prevent cybercrime.



Foravoidance of doubt, Equashield may transfer and disclose non-personaldata to third parties at its own discretion.



5.WHERE DO WE STORE YOUR DATA?

Summary:we store your personal data across multiple locations globally



Westore your Personal Data in servers owned or controlled byEquashield, or processed by third parties on behalf of Equashield, byreputable cloud-service providers in the US (see the followingsection regarding international transfers).



6.INTERNATIONAL DATA TRANSFERS

Summary:we transfer personal data within and to the EEA, UK, USA, Israel andelsewhere, with appropriate safeguards in place.



EUPersonal Data may be transferred to, and stored and used at, adestination outside the European Economic Area (EEA) that may not besubject to equivalent Data protection laws to those of the EU. Whereyour Data is transferred outside of the EEA, we will take all stepsreasonably necessary to ensure that your Data is subject toappropriate safeguards, and that it is treated securely and inaccordance with this privacy policy. Equashield transfers data toother jurisdictions as follows:



Tothe United States of America. Equashield’s subsidiary is located inthe US, and data transfers to it are subject to Standard ContractualClauses. Additionally, Equashield stores Personal Data on serverslocated in the US, and all transfers of EU data to them, as well asto other third-party vendors located within the US, are subject tothe EU Standard Contractual Clauses.

Tothe state of Israel, subject to GDPR adequacy decision.

Wemay transfer your personal data outside of the EEA, in order to:



storeor backup the information;

enableus to provide you with the services and products and fulfil ourcontract with you;

fulfillany legal, audit, ethical or compliance obligations which require usto make that transfer;

facilitatethe operation of our group businesses, where it is in our legitimateinterests and we have concluded these are not overridden by yourrights;

toserve our Customers across multiple jurisdictions; and

tooperate our parent company, subsidiaries and affiliates in anefficient and optimal manner.



7.DATA RETENTION

Summary:we retain personal data according to our data retention policy, asrequired to meet our obligations, protect our rights, and manage ourbusiness.



Equashieldwill retain personal data it processes only for as long as requiredin our view, to provide the services and as necessary to comply withour legal and other obligations, to resolve disputes and to enforceagreements. We will also retain personal data to meet any audit,compliance and business best-practices.



Datathat is no longer retained may be anonymized or deleted. Likewise,some metadata and statistical information concerning the use of ourservices are not subject to the deletion procedures in this policyand may be retained by Equashield. We will not be able to identifyyou from this data. Some data may also be retained on our third-partyservice providers’ servers until deleted in accordance with theirprivacy policy and their retention policy.



8.SERVICES AND WEBSITES DATA COLLECTION AND COOKIES

Summary:with your consent, we place cookies on your device. You control ouruse of cookies through a cookie management tool on our websites, orthrough your device and browser.



Whenyou access or use our Services or websites, Equashield may useindustry standard technologies such as cookies, pixels and similartechnologies, which store certain information on your computer orbrowsing device and which will allow us to identify the computer ordevice and in some cases to identify them with the user, and toenable automatic activation of certain features, and make your userexperience more convenient and effortless. We use different types ofcookies: some cookies are strictly necessary, they are required forthe operation of our websites and Services under our terms with you;We also use analytical and performance monitoring cookies, whichallow us to recognize and count the number of visitors and to see howvisitors move around our websites and services when they are usingit. Finally, we use functionality cookies which are used to recognizeyou when you return to our Site. This enables us to personalizecontent to your preferences, including for example, your choice oflanguage or region.



Differentcookies are kept for different periods. Session cookies are used tokeep track of your activities online in a given browsing session;these cookies generally expire when the browser is closed but may beretained for a period on your device. Permanent cookies remain inoperation even when you have closed the browser; they are used toremember your login details and password. Third-party cookies areinstalled by third parties with the aim of collecting certaininformation to research behaviour, demographics. Third party cookieson our site include, for example, Google Analytics. Likewise, pixelsfrom Facebook and others enable integration of third party serviceproviders (eg Twitter, Youtube, Pintrest, Instagram) may be embeddedon our site. Third party cookies will be retained according to theterms of those third parties, and you can control those cookies inyour browser settings.



Weuse cookies and other technologies on the basis that they arenecessary for the performance of a contract with you, or becauseusing them is in our legitimate interests of improving, optimizingand personalizing our services, and these are not overridden by yourrights.



Mostbrowsers will allow you to erase cookies from your computer’s harddrive, block acceptance of cookies, or receive a warning before acookie is stored. However, if you block or erase cookies your onlineexperience on our websites and services will be limited.



Howto disable cookies: the effect of disabling cookies depends on whichcookies you disable but, in general, the websites and some servicesdelivered through them may not operate properly, may not recognizeyour device, may not remember your preferences and so on, if cookiesare disabled or removed. However, allowing or disabling cookies isyour choice and in your control. If you want to disable cookies onour site, you need to change your browser settings to reject cookies.How you can do this will depend on the browser you use. Furtherdetails on how to disable cookies can be found here: Microsoft Edge,Google Chrome, Firefox, Safari.



Ourservices and websites may, from time to time, contain links toexternal sites. We are not responsible for the operation, privacypolicies and practices or the content of such sites.



9.SECURITY AND STORAGE OF INFORMATION

Summary:we take data security very seriously, invest in security systems, andtrain our staff. In the event of a breach, we will notify the rightpeople as required by law.



Wetake great care in implementing, enforcing and maintaining thesecurity of the personal data we process. Equashield implements,enforces and maintains security measures, technologies and policiesto prevent the unauthorized or accidental access to or destruction,loss, modification, use or disclosure of personal data. We likewisetake steps to monitor compliance of such policies on an ongoingbasis. Where we deem it necessary in light of the nature of the datain question and the risks to data subjects, we may encrypt data.Likewise, we take industry standard steps to ensure our websites andservices are safe.



Notehowever, that no data security measures are perfect or impenetrable,and we cannot guarantee that unauthorized access, leaks, viruses andother data security breaches will never occur.



WithinEquashield, we endeavor to limit access to personal data to those ofour personnel who: (i) require access in order for Equashield tofulfil its obligations, including also under its agreements, and asdescribed in this Privacy Policy, and (ii) have been appropriatelyand periodically trained with respect to the requirements applicableto the processing, care and handling of the Personal Data, and (iii)are under confidentiality obligations as may be required underapplicable law.



Equashieldshall act in accordance with its policies and with applicable law topromptly notify the relevant authorities and data subjects in theevent that any personal data processed by Equashield is lost, stolen,or where there has been any unauthorized access to it, all inaccordance with applicable law and on the instructions of qualifiedauthority. Equashield shall promptly take reasonable remedialmeasures.



10.EU DATA SUBJECT RIGHTS

Summary:depending on the law that applies to your personal data, you may havevarious data subject rights, such as rights to access, erase, andcorrect personal data, and information rights. We will respect anylawful request to exercise those rights.



Datasubjects with respect to whose data Californian law applies, pleasesee section 11 below.



Datasubjects with respect to whose data GDPR applies, have rights underGDPR and local laws, including, in different circumstances, rights todata portability, rights to access data, rectify data, object toprocessing, and erase data. It is clarified for the removal of doubt,that where personal data is provided by a customer being the datasubject's employer, such data subject rights will have to be effectedthrough that customer. In addition, data subject rights cannot beexercised in a manner inconsistent with the rights of Equashieldemployees and staff, with Equashield proprietary rights, andthird-party rights. As such, job references, reviews, internal notesand assessments, documents and notes including proprietaryinformation or forms of intellectual property, cannot be accessed orerased or rectified by data subjects. In addition, these rights maynot be exercisable where they relate to data that is not in astructured form, for example emails, or where other exemptions apply.If processing occurs based on consent, data subjects generally have aright to withdraw their consent.



Adata subject who wishes to modify, delete or retrieve their PersonalData, may do so by contacting Equashield (privacy@equashield.com).Note that Equashield may have to undertake a process to identify adata subject exercising their rights. Equashield may keep details ofsuch rights exercised for its own compliance and audit requirements.Please note that Personal Data may be either deleted or retained inan aggregated manner without being linked to any identifiers orPersonal Data, depending on technical commercial capability. Suchinformation may continue to be used by Equashield.



Datasubjects in the EU have the right to lodge a complaint, with a dataprotection supervisory authority in the place of their habitualresidence. If the supervisory authority fails to deal with acomplaint, you may have the right to an effective judicial remedy.



11.CALIFORNIA RESIDENTS

YourRights and Choices



TheCCPA provides consumers (California residents) with specific rightsregarding their personal information. This section describes yourCCPA rights and explains how to exercise those rights.



Accessto Specific Information and Data Portability Rights



Youhave the right to request that Equashield disclose certaininformation to you about our collection and use of your personalinformation over the past 12 months. Once we receive and confirm yourverifiable consumer request (see Exercising Access, Data Portability,and Deletion Rights), we will disclose to you:

Thecategories of personal information we collected about you.

Thecategories of sources for the personal information we collected aboutyou.

Ourbusiness or commercial purpose for collecting or selling thatpersonal information.

Thecategories of third parties with whom we share that personalinformation.

Thespecific pieces of personal information we collected about you (alsocalled a data portability request).

Ifwe sold or disclosed your personal information for a businesspurpose, two separate lists disclosing:

sales,identifying the personal information categories that each category ofrecipient purchased; and

disclosuresfor a business purpose, identifying the personal informationcategories that each category of recipient obtained.



DeletionRequest Rights You have the right to request that Equashield deleteany of your personal information that we collected from you andretained, subject to certain exceptions. Once we receive and confirmyour verifiable consumer request (see Exercising Access, DataPortability, and Deletion Rights), we will delete (and direct ourservice providers to delete) your personal information from ourrecords, unless an exception applies.



Wemay deny your deletion request if retaining the information isnecessary for us or our service provider(s) to:

Completethe transaction for which we collected the personal information,provide a good or service that you requested, take actions reasonablyanticipated within the context of our ongoing business relationshipwith you, or otherwise perform our contract with you.

Detectsecurity incidents, protect against malicious, deceptive, fraudulent,or illegal activity, or prosecute those responsible for suchactivities.

Debugproducts to identify and repair errors that impair existing intendedfunctionality.

Exercisefree speech, ensure the right of another consumer to exercise theirfree speech rights, or exercise another right provided for by law.

Wemay Protect our legal interests, to defend our rights in a case ofpotential, threatened, or actual litigation, and to enforce ourrights.

Complywith the California Electronic Communications Privacy Act (Cal. PenalCode § 1546 seq.).

Engagein public or peer-reviewed scientific, historical, or statisticalresearch in the public interest that adheres to all other applicableethics and privacy laws, when the information’s deletion may likelyrender impossible or seriously impair the research’s achievement,if you previously provided informed consent.

Enablesolely internal uses that are reasonably aligned with consumerexpectations based on your relationship with us.

Complywith a legal obligation.

Makeother internal and lawful uses of that information that arecompatible with the context in which you provided it.



ExercisingAccess, Data Portability, and Deletion Rights



Toexercise the access, data portability, and deletion rights describedabove, please submit a verifiable consumer request to us toprivacy@equashield.com.



Onlyyou, or a person registered with the California Secretary of Statethat you authorize to act on your behalf, may make a verifiableconsumer request related to your personal information. You may alsomake a verifiable consumer request on behalf of your minor child.



Youmay only make a verifiable consumer request for access or dataportability twice within a 12-month period. The verifiable consumerrequest must:



Providesufficient information that allows us to reasonably verify you arethe person about whom we collected personal information or anauthorized representative.

Describeyour request with sufficient detail that allows us to properlyunderstand, evaluate, and respond to it.



Wecannot respond to your request or provide you with personalinformation if we cannot verify your identity or authority to makethe request and confirm the personal information relates to you.



Makinga verifiable consumer request does not require you to create anaccount with us.



Wewill only use personal information provided in a verifiable consumerrequest to verify the requestor’s identity or authority to make therequest.



ResponseTiming and Format



Weendeavor to respond to a verifiable consumer request withinforty-five (45) days of its receipt. If we require more time (up to90 days), we will inform you of the reason and extension period inwriting.



Ifyou have an account with us, we will deliver our written response tothat account. If you do not have an account with us, we will deliverour written response by mail or electronically, at your option.



Anydisclosures we provide will only cover the 12-month period precedingthe verifiable consumer request’s receipt. The response we providewill also explain the reasons we cannot comply with a request, ifapplicable. For data portability requests, we will select a format toprovide your personal information that is readily useable and shouldallow you to transmit the information from one entity to anotherentity without hindrance.



Wedo not charge a fee to process or respond to your verifiable consumerrequest unless it is excessive, repetitive, or manifestly unfounded.If we determine that the request warrants a fee, we will tell you whywe made that decision and provide you with a cost estimate beforecompleting your request.



Non-Discrimination



Wewill not discriminate against you for exercising any of your CCPArights. Unless permitted by the CCPA, we will not:

Denyyou goods or services.

Chargeyou different prices or rates for goods or services, includingthrough granting discounts or other benefits, or imposing penalties.

Provideyou a different level or quality of goods or services.

Suggestthat you may receive a different price or rate for goods or servicesor a different level or quality of goods or services.

However,we may offer you certain financial incentives permitted by the CCPAthat can result in different prices, rates, or quality levels. AnyCCPA-permitted financial incentive we offer will reasonably relate toyour personal information’s value and contain written terms thatdescribe the program’s material aspects. Participation in afinancial incentive program requires your prior opt in consent, whichyou may revoke at any time.



OtherCalifornia Privacy Rights



California’s“Shine the Light” law (Civil Code Section § 1798.83) permitsusers of our Websites that are California residents to requestcertain information regarding our disclosure of personal informationto third parties for their direct marketing purposes. To make such arequest, please send an email to privacy@equashield.com.



12.GENERAL

Minors.We do not knowingly collect or solicit information or data from orabout children under the age of 16 or knowingly allow children underthe age of 16 to register for Equashield services. If you are under16, do not register or attempt to register for any of the EquashieldService or send any information about yourself to us. If we learnthat we have collected or have been sent Personal Data from a childunder the age of 16, we will delete that Personal Data as soon asreasonably practicable without any liability to Equashield. If youbelieve that we might have collected or been sent information from aminor under the age of 16, please contact us at:privacy@equashield.com, as soon as possible.



Changesto this Privacy Policy. The terms of this Privacy Policy will governthe use of the services, websites, and any information collected inconnection with them. Equashield may amend or update this PrivacyPolicy from time to time. The most current version of this PrivacyPolicy will be available at: https://www.equashield.com/privacy/.Changes to this Privacy Policy are effective as of the stated “LastRevised” date and your continued use of our services willconstitute your active acceptance of the changes to and terms of thePrivacy Policy.



Equashieldaims to process only adequate, accurate and relevant data limited tothe needs and purposes for which it is gathered. It also aims tostore data for the time period necessary to fulfill the purpose forwhich the data is gathered. Equashield only collects data inconnection with a specific legitimate purpose and only processes datain accordance with this Privacy Policy. Our policies and practicesare constantly evolving and improving, and we invite any suggestionsfor improvements, questions or comments concerning this PrivacyPolicy, you are welcome to contact us (details below) and we willmake an effort to reply within a reasonable timeframe.



Equashieldcontact details: privacy@equashield.com







LastRevised: