MEDISSIMO's top priority is the protection of personal data, collected and processed in compliance with applicable laws and regulations. These include, inparticular, the French Data Protection Act of January 6, 1978, as amended, and the European Regulation (EU) 2016/679 of April 27, 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data (the " RGPD ") (together the " RGPD Legal Framework ").
This privacy policy (the " Privacy Policy ") presents and summarizes MEDISSIMO's commitments with regard to the protection of personal data, it being specified that the RGPD Legal Framework is applicable to any processing of personal data, understood as any operation on one or more pieces of information (first and last name, telephone number, email, date of birth, etc.) enabling a natural person to be identified directly or indirectly (" personal data " " data subject "), where MEDISSIMO has the capacity of data controller concerning data collected on the medissimo.fr website, medissimo.com (the " Sites ") and/or the Medissimo Pharmacien and Medissmo Etablissement web applications, as well as the Medissimo Aidant and Medissimo Infirmière mobile application (the " Applications ").
With regard to Application data processed by MEDISSIMO as a subcontractor, please refer to the specifically applicable provisions of the MEDISSIMO GTC.
The data controller is MEDISSIMO, a simplified joint stock company with capital of €2,525,000.00, registered in the VERSAILLES Trade and Companies Register under number RCS B 434 856 209, whose registered office is located at TECHNOPARC, 8, rue Jeanneret - 78300 POISSY, and whose intra-Community VAT number is FR22434856209 (" MEDISSIMO "), and is represented by Mrs Caroline BLOCHET, President.
2. Personal data processed and means of collection
The personal data processed is as follows:
- Identification: surname, first name, date of birth,
- Contact details: postal address, email, telephone and fax numbers,
- Payment data: credit card data.
Personal data is collected in the following ways:
- Cookies: when browsing the Sites and Applications, cookies may be installed on the terminal of the person concerned (see Cookies Appendix for more information),
- Account creation forms, Site and Application login,
- Using Applications,
- The Sites' online payment solution,
- Contact form,
- Commercial relations with suppliers and partners (making contacts, setting up relationships).
Where applicable, the compulsory or optional nature of data provision is indicated at the time of collection by an asterisk (*). The requirement to provide mandatory data (i) has a regulatory or contractual character or (ii) conditions the processing of the request, including the conclusion and performance of the contract where applicable. Failure to provide such data will result in the impossibility of processing the request and/or concluding and fulfilling the contract. By voluntarily providing data, including optional data, data subjects expressly agree to its processing in accordance with the purpose indicated at the time of collection and under the conditions of the Privacy Policy.
3. Purposes pursued by the processing of personal data
MEDISSIMO processes personal data for the following purposes:
- Communication with data subjects, in particular for the purpose of replying to requests for information on the company's activities and offers,
- The creation of an account on the Sites and Applications,
- Processing submitted applications, communicating with the candidate and, if necessary, creating a candidate file,
- Create a prospect file,
- Create a customer file, manage customer relations,
- The conclusion of the contract (order), the execution, processing, management, invoicing and payment of orders for products and/or services,
- Downloading and using a mobile application,
- Processing warranty claims,
- The provision by third parties of technical, logistical or other functions on its behalf (in particular online payment solutions, carriers, accounting, etc.),
- Improving our offer, by inviting customers to take part in surveys, studies and satisfaction surveys,
- Commercial and user statistics,
- Formulating and responding to customer and user requests via the contact form available on the Sites and Applications,
- The sending of personalized offers by electronic communication (email, sms etc.),
- Creation and management of events related to MEDISSIMO's business (trade shows, annual events, competitions),
- Managing the exercise of rights by data subjects,
- The protection of its legitimate interests (in particular debt collection and the exercise of any legal rights),
- Compliance with legal and regulatory obligations (such as document retention, accounting and/or tax obligations).
No profiling and/or fully automated individual decision-making is carried out.
Cookies : The purposes of each cookie implemented on the Sites and Applications can be consulted in the table in the Cookies Appendix and/or via the tag management solution.
Should the data subject's personal data be processed for different purposes, MEDISSIMO undertakes to inform him or her of this and, where required by law, to obtain his or her prior consent.
4. Bases legals of treatments of personal data
The processing of personal data is carried out by MEDISSIMO in accordance with the regulations in force, and in particular with the RGPD Legal Framework. As such, they are founded on one or more of the following legal bases:
- Free, specific, informed and unambiguous consent to the processing of their data by data subjects,
- When this is necessary to fulfil MEDISSIMO's contractual obligations towards the persons concerned or pre-contractual measures taken at their request,
- When necessary to comply with MEDISSIMO's legal and regulatory obligations (such as the fight against fraud),
- When it is necessary for the purposes of MEDISSIMO's legitimate interests (such as carrying out satisfaction surveys in order to improve its offers),
- When it is necessary to exercise or defend a legal right of the Company (such as debt collection, civil or criminal liability action, etc.).
Cookies: to find out more about the legal basis for the processing of cookies and your right to object to the deposit of certain cookies, please consult the Cookies Appendix.
5. Retention periods for personal data
In accordance with current regulations, and in particular the RGPD Legal Framework, the retention periods for personal data depend on the purpose pursued by the processing concerned.
As a result, personal data is kept for no longer than is necessary for the purposes for which it is processed, and in any event for no longer than the legal maximum periods.
Insofar as the purposes of processing correspond, the periods recommended by the CNIL are respected.
Lastly, it is specified that certain personal data is kept for a longer period, for the purposes of (i) compliance with applicable legal and regulatory obligations (such as document retention, invoicing or the fight against fraud), and/or (ii) ensuring the establishment, exercise or defense of MEDISSIMO's legal rights during the applicable statute of limitations.
6. Measures applicable to the processing of personal data - Transfers outside the EU
All necessary measures are taken to guarantee the confidentiality, integrity and security of personal data, including with regard to subcontractors, in view of the risks involved, in order to prevent personal data from being distorted, damaged or accessed by unauthorized third parties.
Personal data is stored in the European Union. However, in the context of the transmission of personal data to certain recipients, their transfer outside the European Union is possible. In this case, the appropriate measures resulting from the RGPD Legal Framework are taken to ensure that the recipients concerned provide a level of security comparable to that resulting from compliance with the RGPD Legal Framework and present the guarantees required in this respect.
7. Destinataires of personal data
Personal data is processed within the company.
However, personal data may be passed on to external recipients, solely for the purposes mentioned above and to the extent strictly necessary to carry out the tasks entrusted to them and/or in accordance with legal and regulatory provisions.
These include :
- Subcontractors, in particular from the following categories: accounting firms and technical service providers for information systems, cookie publishers (on this point, please refer to the Cookies Appendix),
- Banking institutions and online payment service providers,
- Social and tax organizations.
Where applicable, personal data may be communicated to third parties authorized by legal and regulatory provisions, in the context of an express, reasoned request from the judicial authorities.
8. Dights of those concerned
Under the RGPD Legal Framework, data subjects have the following rights: rights ofaccess,query, rectification,erasure, limitation and withdrawal of consent to processing and opposition to processing on legitimate grounds and at any time in the context of commercial prospecting, as well as rights to the portability of personal data and to define post-mortem directives relating to the fate of personal data.
These rights may be exercised by sending a complete request accompanied by proof of identity to the following addresses:
- By post: MEDISSIMO SAS - Technoparc, 8, rue Jeanneret - 78300 POISSY
- By email: dpo@medissimo.fr
The request must contain the surname, first name, e-mail address or postal address to which the person concerned would like MEDISSIMO to reply. For security reasons and to avoid fraudulent requests, this request must be accompanied by proof of identity. In accordance with the law, except in special justified circumstances, this request will be answered within one month of receipt.
Finally, data subjects have the right to lodge a complaint with the CNIL or any othercompetent supervisory authorityin their country of residence.
This complaint can be made to the French CNIL at the following addresses:
- By post: CNIL - 3 PLACE DE FONTENOY, TSA 80715, 75334 PARIS CEDEX 07
- By email: https: //www.cnil.fr/fr/plaintes
Appendix cookies
During visits to the Sites/Applications, tracking technologies are used and data is collected. The term "cookies" refers to all tracking technologies that may be used. Cookies are text files recorded on the user's terminal when he/she visits the Sites/Applications, containing information about his/her browsing and enabling certain functionalities.
There are several categories of cookies, which serve different purposes:
- Technical cookies: these cookies help to make the Sites / Applications usable by activating basic functions such as page navigation. The Sites / Applications cannot function properly without these cookies.
- Audience measurement cookies: by collecting and communicating information anonymously, these cookies help us to measure the number of visitors and understand how they interact with the Sites/Applications.
- Social network cookies: these so-called "social" cookies are linked to services provided by third-party sites, such as the "Like" and "Share" buttons or multimedia content players.
They are used to provide services to users or to remember their sharing preferences with social networks.
The social network providing such an application button is likely to identify the user thanks to this button, even if the user does not use this button when consulting the Sites/Applications. In fact, this type of application button may enable the social network concerned to understand the user's browsing on the Sites/Applications, simply by opening the user's session on his/her terminal.
- Advertising cookies: these cookies are used to present advertisements that may correspond to the user's centers of interest, by personalizing advertising and the content of the Sites/Applications.
Cookies may be placed by MEDISSIMO or by third parties. In the latter case, the user is informed and his or her consent is obtained prior to their deposit, but MEDISSIMO has no direct control over these cookies. The user is invited to refer to the privacy policies of third-party cookie publishers.
In accordance with the applicable provisions and recommendations of the CNIL, no cookies are deposited unless the user has given prior consent. Express consent is obtained by means of a device informing the user of the cookies used, their publishers and their purposes; this device enables the user to accept or refuse the deposit of cookies.
The period of validity of the user's consent to cookies is 13 months, at the end of which consent is again required.
Certain cookies, considered strictly necessary for the provision of the service, are exempt from consent. This is notably the case for the following cookies:
- Shopping cart" cookies,
- Session ID" cookies for the duration of a session, or persistent cookies limited to a few hours in some cases,
- Authentication cookies,
- Certain audience measurement analysis solutions (analytics),
- Persistent cookies used to personalize the user interface (choice of language or presentation).
In any event, users may withdraw their consent at any time by objecting to the deposit of cookies.
When the user objects to the installation or use of a cookie, a refusal cookie is installed on his/her terminal.
Users can configure their browser to refuse or accept certain types of cookies:
▪ Google Chrome:
https://support.google.com/chrome/answer/95647?hl=fr
▪ Internet Explorer: https: //support.microsoft.com/fr-fr/help/260971/description-of-cookies
▪ Mozilla Firefox: https: //support.mozilla.org/fr/kb/cookies-informations-sites-enregistrent
▪ Safari: https://support.apple.com/fr-fr/guide/safari/sfri11471/mac
▪ Safari (mobile): https: //support.apple.com/fr-fr/HT201265
▪ Android browser :
https://support.google.com/chrome/answer/95647?co=GENIE.Platform%3DAndroid&oco=1&hl=fr
- Setting cookies placed by third parties
The user may refuse to accept third-party cookies. For example, to deactivate the Google Analytics cookie, it is possible to download an add-on at https://tools.google.com/dlpage/gaoptout?hl=fr.
- The setting of personalized advertising cookies by the interprofessional platform " Youronlinechoices "
The user can connect to the Youronlinechoices site, proposed by digital advertising professionals grouped together within the European Digital Advertising Alliance (EDAA) and managed in France by the Interactive Advertising Bureau France; and thus find out which companies are registered with this platform and which offer the possibility of refusing or accepting the cookies used by these companies to adapt the advertisements likely to be displayed on the user's terminal to browsing information:
http://www.youronlinechoices.com/fr/controler-ses-cookies
This European platform is shared by hundreds of Internet advertising professionals, and constitutes a centralized interface enabling users to express their refusal or acceptance of cookies that may be used to adapt the advertising displayed on their terminal to their browsing habits. This procedure will not prevent the display of advertisements on the websites visited, but will only block the technologies that enable advertisements to be adapted.


Recommended when organizing shared medication baskets (sachets, liquids, etc.)
| Patients | Mono28 | Medipac | Medipac plus |
| M2 | 25 | 64 | 24 |
| M3 | 45 | 96 | 48 |
| M4 | 65 | 128 | 72 |

Recommended for organizations with no drug storage area (all drugs in the cart for 7 days)
| For 14 patients |
| For 28 patients |

Recommended for use with nominative lockers (dose and non-dose drugs together)
| Patients | Monoplus for 1 or 2 days | Dose sachet for 7 days |
| M2 | 36 | 48 |
| M3 | 48 | 72 |
| M4 | 60 | 96 |

The Medipac solution offers you the safety and convenience of a pharmacy-prepared, ready-to-use treatment. This solution helps you take your medication properly, which in turn helps your doctor adjust your treatment for better long-term health results. With this solution, you'll improve your compliance to protect your health.
The Medipac solution includes a secure pill dispenser connected to the pharmacy application by a QR code. The solution can integrate an application for caregivers. The data is fed into a compliance report for discussion with the pharmacist and review of treatment with the doctor. Use is free of charge.
The Kimed solution helps you to take your medication properly, which in turn enables your doctor to adjust your treatment for better long-term health results. With this solution, you'll improve your compliance to protect your quality of life.
The Kimed solution connects a patient application to a pharmacy application. The patient receives notifications to prevent forgetfulness and provide information on compliance, side effects and additional medication taken. The data is fed into a compliance report, which can be discussed with the pharmacist and the treatment reviewed with the doctor. Use is free of charge.
This detachable pill dispenser allows you to repackage medications by dose, but separately, for one week. Ideal for storage in nominative compartments.
MULTIPLUS® packs all your medications in a single dose for one week. The MULTIPLUS® pill dispenser is useful for institutional use when the original blister pack needs to be preserved, and the individual drugs do not need to be isolated from each other.
This non-detachable pill dispenser allows you to repackage medications by time of use, for one month. Ideal for frequent medication changes.
The compliance report is a summary table of medication taken, enabling treatments to be re-evaluated from the Pharmacist App and the Establishment App.
The assessment is available for each patient on the nursing and pharmacy applications.
The assessment provides a global and detailed view of compliance, and helps to better understand the reasons for non-administration at any given time. The physician's analysis of the assessment enables him/her to take action to encourage proper use of the medication.
The "bilan de bon usage" is a set of summary tables used to identify at-risk patients and drugs from the Medissimo Pharmacien app.
The balance sheet is available to the establishment on the pharmacy application.
The assessment provides an overall view of the risks associated with medication at any given time. The physician's analysis of the assessment enables him/her to take action to promote the proper use of medication.
The MEDISSIMO platform offers a secure, traceable treatment service for patients at home and in residential care, including pillboxing of medicines in the pharmacy and treatment monitoring in cooperation with healthcare professionals and their families.
The platform brings together the pharmacist, who delivers the treatment with full traceability, and the patient or his or her homecare assistant, who fills in the dosages from the MEDIPAC® pillbox prepared by a healthcare professional, and the nurse, who monitors the treatment in liaison with the pharmacist and the family, and informs the doctor in the event of a medication risk.
In line with the public health priority defined in the national health strategy, the pharmacist - nurse - attending physician triad is at the heart of the platform designed by MEDISSIMO, with the aim of promoting the proper use of medicines.
