Who we are
Medenico Ltd. is the data controller responsible for personal data collected through this website (medenico.com).
- Registered office: 1 Webbs Court, Buckhurst Avenue, Sevenoaks, Kent, TN13 1LZ, United Kingdom
- Company number: 15628036 (registered in England & Wales)
- Contact for privacy enquiries: info@medenico.com
What this notice covers
This notice describes how Medenico Ltd. collects and processes personal data when you visit medenico.com or contact us through the website. It is written for compliance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and the Privacy and Electronic Communications Regulations (PECR).
What information we collect
We collect personal data only in the following circumstances.
Contact form submissions. When you submit the contact form, we collect your name, organisation, email address, telephone number (if provided), the interest categories you select, and the body of your message.
Email correspondence. When you email info@medenico.com or regulatory@medenico.com, we receive your email address, your name and the contents of your correspondence.
Anonymous analytics. We use Cloudflare Web Analytics to understand which pages are visited, how visitors arrive at the site, and which devices and browsers are used in aggregate. Cloudflare Web Analytics is a privacy-first service that does not use cookies, does not fingerprint visitors, and does not collect personal data. See Cloudflare’s privacy policy for details: https://www.cloudflare.com/privacypolicy/
We do not operate user accounts, comments, login systems, or third-party advertising on this site. We do not use social-media trackers or remarketing.
How we use your data
We use the personal data you provide for the following purposes:
- To respond to your enquiry and route it to the appropriate team (clinical, procurement or regulatory).
- To follow up on relevant clinical evaluations, procurement conversations or UKRP engagements you have requested.
- To meet our regulatory record-keeping obligations as a medical device distributor and UK Responsible Person.
Legal basis for processing
We process your personal data on the following lawful bases:
- Consent: when you submit the contact form, you consent to us using your details to respond to your enquiry. You can withdraw consent at any time by emailing info@medenico.com.
- Legitimate interests: to operate the website, ensure its security, follow up on enquiries you have initiated, and communicate with you about engagements you have agreed to.
- Legal obligation: to retain records required by UK medical device regulations and UK Responsible Person obligations.
Who we share your data with
We share personal data only with the following categories of recipients, under appropriate data-processing arrangements:
- Email infrastructure providers. Contact form submissions are delivered via Resend (resend.com) and stored briefly in transit before being received in our team mailboxes. See Resend’s privacy notice: https://resend.com/legal/privacy-policy
- Cloudflare. As our hosting, content-delivery, security and analytics provider, Cloudflare processes connection metadata required to serve the site. See Cloudflare’s privacy notice: https://www.cloudflare.com/privacypolicy/
- The MHRA and other UK Competent Authorities, where required as part of our UKRP regulatory obligations on behalf of partner manufacturers.
We do not sell personal data to third parties.
International transfers
Some of our service providers are located outside the United Kingdom. Where we transfer personal data internationally, we rely on appropriate safeguards including UK International Data Transfer Agreements (IDTAs), the UK Addendum to the EU Standard Contractual Clauses, and equivalent transfer mechanisms recognised under UK GDPR.
How long we keep your data
- Contact form submissions and email correspondence: retained for 24 months from the date of last contact, then deleted, unless the conversation has resulted in an active clinical or regulatory engagement (in which case the engagement record is kept under the retention period below).
- Records related to UKRP and medical device distribution: retained for the period required by applicable UK medical device regulation, which may be up to ten years after a device is placed on the market.
- Analytics: Cloudflare Web Analytics data is aggregated and does not relate to identifiable individuals.
Your rights
Under the UK GDPR you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate or incomplete data.
- Request erasure of your data (subject to our regulatory record-keeping obligations).
- Object to or restrict processing of your data.
- Request transfer of your data to another organisation.
- Withdraw consent at any time, where processing is based on consent.
- Lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk.
To exercise any of these rights, contact info@medenico.com. We will respond within one calendar month, as required by UK GDPR.
Cookies
This website uses only strictly-necessary cookies set by our hosting provider for security and reliability. We do not set analytics, advertising, social, or remarketing cookies. See our cookies notice for the full list.
Changes to this notice
We may update this notice from time to time. The “last updated” date at the top of this page reflects the most recent change. Material changes will be announced on this page.
Contact
For any questions about this privacy notice or our data practices, contact info@medenico.com or write to:
Medenico Ltd. 1 Webbs Court, Buckhurst Avenue Sevenoaks, Kent · TN13 1LZ United Kingdom