Privacy Policy
Last updated: May 2026
ESNA Care B.V. respects your privacy and handles personal data in accordance with the EU General Data Protection Regulation (GDPR) and the Dutch Implementation Act (UAVG). This Privacy Policy explains what personal data we collect through this website, why we collect it, how we use it, and what rights you have.
1. Who we are (Data Controller)
- ESNA Care B.V. (KVK 78518563) — operational entity and data controller for website enquiries
- ESNA Healthcare B.V. (KVK 74103830) — holding company
- Address: Newtonlaan 115, 3584 BH Utrecht, The Netherlands
- Email: info@esnahealthcare.nl
- Phone: +31 6 15 3 69 208
2. What personal data we collect
Through this website we collect only the data you choose to provide via our contact and supplier offer forms:
- Company name
- Your name
- Email address
- Telephone number (optional)
- The content of your message
- Any file you choose to attach (for example, a stock list or product request)
We do not collect sensitive categories of personal data (such as health data, political opinions, or biometric data) through this website.
3. How we use your data (Purposes & Legal Bases)
- Responding to your enquiry or offer — Art. 6(1)(b) (pre-contractual steps at your request)
- Qualifying you as a supplier or customer under our GDP obligations — Art. 6(1)(c) (legal obligation: EU GDP Guidelines, Dutch Medicines Act)
- Ongoing business correspondence after initial contact — Art. 6(1)(f) (legitimate business interest)
We do not use your data for marketing, profiling, or automated decision-making.
4. Who we share your data with (Recipients & Processors)
We share personal data only with service providers necessary to operate the business:
- Microsoft (Microsoft 365 / Outlook) — email hosting provider, processes messages you send to info@esnahealthcare.nl
- TransIP B.V. — website hosting provider (Netherlands-based)
- Our warehouse and logistics partners — only where relevant to fulfilling a specific contract
All processors are bound by appropriate data processing agreements. We do not sell personal data to third parties. Where personal data is transferred outside the European Economic Area (for example, via Microsoft's global infrastructure), such transfers are covered by EU Standard Contractual Clauses or equivalent safeguards.
5. How long we keep your data (Retention)
- Website enquiry messages: retained for up to 24 months after the last meaningful contact, then deleted.
- Files you attach (stock lists, product requests): handled as part of the enquiry and retained under the same period unless they form part of an active business relationship.
- Supplier and customer qualification records: retained for the periods required under EU GDP Guidelines and the Dutch Medicines Act (typically at least 5 years after the business relationship ends).
6. Your rights
Under the GDPR you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data (where applicable)
- Restrict or object to processing
- Data portability
- Withdraw consent at any time (where processing is based on consent)
- Lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens, autoriteitpersoonsgegevens.nl)
To exercise any of these rights, contact us at info@esnahealthcare.nl. We will respond within one month.
7. Cookies
This website uses a minimal set of cookies. See our Cookie Policy for full details.
8. Security
We use technical and organisational measures appropriate to the nature of the data processed, including encrypted connections (HTTPS), access controls, and vetted hosting providers. No system is completely secure, but we take reasonable steps to protect your data.
9. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected in the "Last updated" date at the top of this page.
10. Contact
Questions about this policy? Email us at info@esnahealthcare.nl.