+

Corporate General Information Text

                                                                            Regarding the Processing of Personal Data:                                                                

As Sem Dayanıklı Tüketim Malları Pazarlama ve Dış Ticaret A.Ş. ("Sem Dayanıklı"), we have prepared this information text to inform you, our Visitors, Online Visitors, Customers, Potential Customers, Supplier Employees, and Supplier Representatives, about the processing, storage, and transfer of your personal data within the scope of the activities arising from the Law No. 6698 on the Protection of Personal Data ("GDRP") and related legislation and legal regulations.

1) What Personal Data Categories Do We Process and For What Purposes?

Your personal data may be processed in accordance with the principles set out in Article 4.2 of the GDPR, which are as follows:

(i) Being lawful and in compliance with principles of fairness.
(ii) Being accurate and, when necessary, up-to-date.
(iii) Being processed for specified, explicit, and legitimate purposes.
(iv) Being related, limited, and proportional to the purpose of processing.
(v) Being retained for the period specified in relevant legislation or for the time required for the purposes for which the data were processed.

The personal data of visitors, online visitors, customers, potential customers, supplier employees, and supplier representatives will be processed in the following categories, as applicable, in the context of the business relationships we have established and continue to maintain with our business partners:

A. Visitors

Identity information (e.g., name, surname)
Physical location security information (e.g., camera records)

a)Creation and tracking of visitor records.                                                                                                                                    b)Ensuring physical security of the premises.

B. Online Visitors

Transaction security information (e.g., IP address), marketing information (e.g., purchase history, cookies), and identity and contact information (e.g., email address if provided).

a) Conducting activities in compliance with regulations,
b) Managing information security processes,
c) Tracking requests/complaints,
d) Managing communication activities,
e) Providing information to authorized individuals, institutions, and organizations.                                                                            f) It will be processed in order to enable access to our website via the internet.

C. Customers

For real person customers or the representatives and/or employees of legal entity customers: identity, contact, transaction data (e.g., order details), physical security, financial, legal process, and marketing information.

a) Conducting activities in compliance with regulations,
b) Managing finance and accounting operations,
c) Managing/monitoring business activities,
d) Managing logistics operations,
e) Managing post-sales support services for goods/services,
f) Managing sales processes for goods/services,
g) Conducting marketing analysis studies,
h) Managing contract processes,
i) Providing information to authorized individuals, institutions, and organizations,
j) Ensuring physical security of premises,
k) Resolving legal disputes,
l) Managing storage and archiving activities,
m) Managing risk management processes,
n) Managing customer/product/service loyalty processes,
o) Managing communication activities.

D. Potential Customers

For real person customers or the representatives and/or employees of legal entity customers: identity, contact, transaction data, physical security, and marketing information.

a) Managing sales processes for goods/services,
b) Managing contract processes,
c) Ensuring physical security of premises,
d) Conducting marketing analysis studies.

E. Supplier Employees

Identity, contact, and physical security information.

a) Managing communication activities,
b) Managing/monitoring business activities,
c) Ensuring physical security of premises,
d) Managing supply chain management processes,
e) Managing logistics operations,
f) Conducting activities in compliance with regulations,
g) Managing occupational health and safety activities.

F. Supplier Representatives

Identity, contact, physical security, transaction data, financial, marketing, and legal information.

a) Managing/monitoring business activities,
b) Managing procurement processes for goods/services,
c) Managing finance and accounting operations,
d) Managing contract processes,
e) Managing investment processes,
f) Ensuring physical security of premises,
g) Monitoring and managing legal affairs.

2) How Do We Collect Your Personal Data?

Your personal data, as categorized above, is collected through physical means such as order forms, contracts, visitor forms, or via information systems and electronic devices (e.g., telecommunications infrastructure, computers, phones), third parties (e.g., KKB, Findeks), our website, and other documents provided by the relevant individuals, both automatically and manually.

3) What Are the Legal Grounds for Collecting Your Personal Data?

The personal data we process is based on the legal grounds outlined in Article 5 of the GDPR, which include:

(i) As explicitly provided by law,
(ii) It is necessary to process personal data of the parties to a contract, provided it is directly related to the establishment or performance of the contract,
(iii) It is necessary for the data controller to fulfill its legal obligations,
(iv) It is necessary for the establishment, use, or protection of a right,
(v) It is necessary to process data for the legitimate interests of the data controller, provided it does not harm the fundamental rights and freedoms of the data subject.

4) Do We Share Your Personal Data with Third Parties?

a) Personal data of our visitors may be shared with law enforcement and judicial authorities for the purpose of resolving legal disputes, and when requested in accordance with relevant legislation.
b) Personal data of our online visitors may be shared with judicial authorities and relevant public institutions and organizations for the purpose of resolving legal disputes, and when requested in accordance with relevant legislation.
c) Personal data of our customers may be shared within the scope required by legal regulations, for the purpose of ensuring compliance with regulations, monitoring and managing legal affairs, and providing information to authorized individuals.

Personal data may be shared with authorized public institutions and organizations for the purpose of providing information to relevant authorities; with group companies, IT companies, suppliers, cargo companies, insurance companies, banks, and our financial advisor to the extent necessary for the execution/monitoring of business activities, risk management processes, and the proper fulfillment of our services. Additionally, such personal data may be transferred to the law firm we work with and judicial authorities to be used as evidence in potential future legal disputes.

d) Personal data of our potential customers may be transferred to the law firm we work with and judicial authorities to be used as evidence in potential future legal disputes.

e) Personal data of our supplier's employees may be transferred to authorized public institutions and organizations for the purposes of ensuring compliance with regulations, monitoring and managing legal affairs, providing information to authorized individuals, institutions, and organizations, and conducting/monitoring business activities, within the scope required by legal regulations. Additionally, to the extent necessary for the proper fulfillment of the service, personal data may be shared with group companies, IT companies, suppliers, cargo companies, banks, and our financial advisor. Furthermore, such personal data may be transferred to the law firm we work with and judicial authorities to be used as evidence in potential future legal disputes.

f) Personal data of our supplier representatives may be transferred to authorized public institutions and organizations for the purposes of ensuring compliance with regulations, monitoring and managing legal affairs, providing information to authorized individuals, institutions, and organizations, and conducting/monitoring business activities, within the scope required by legal regulations. Additionally, to the extent necessary for the proper fulfillment of the service, personal data may be shared with group companies, IT companies, suppliers, cargo companies, banks, and our financial advisor. Furthermore, such personal data may be transferred to the law firm we work with and judicial authorities to be used as evidence in potential future legal disputes.

5) Do We Transfer Your Personal Data Abroad?

Sem Dayanıklı Tüketim Malları Pazarlama ve Dış Ticaret A.Ş. does not transfer your personal data abroad.

6) How Can You Exercise Your Rights Regarding Your Personal Data?

In accordance with Article 11 of the GDPR, you may exercise your rights by filling out the "Data Controller Application Form" available at the following address:
https://www.semhome.com.tr/sayfa/sem-dayanikli-veri-sorumlusuna-basvuru-formu/

Data Controller: Sem Dayanıklı Tüketim Malları Pazarlama ve Dış Ticaret A.Ş.
Address: Karpuzsekisi Mh. 41 Cd. No:20 Hacılar/Kayseri
Email: kvkk@semisi.com.tr