Website Security

Privacy Policy

This policy explains the principles regarding the privacy and security of personal data of users who visit our website.

Last updated: 08 February 2026

1. Data Controller

Within the scope of this website, the data controller is MBO HEALT TURİZM SANAYİ VE TİCARET LİMİTED ŞİRKETİ.

  • Email: info@opdrmehmetbediiogurel.com
  • Phone: +90 539 864 02 65

2. Scope of This Policy

This policy applies to personal data that may be processed when you visit our website, use contact forms, and communicate with us via digital channels.

3. Types of Data That May Be Processed

  • Identity/contact data (name-surname, phone, email),
  • Patient and health data (special category data): medical history, examination findings, test/report information, diagnosis and treatment-related data,
  • Request and message content data,
  • Technical log and security data (IP address, device/browser information, access time),
  • Usage data obtained through cookies.

4. Purposes of Processing

  • Responding to communication requests and managing service processes,
  • Ensuring website security and preventing errors and misuse,
  • Fulfilling legal obligations,
  • Measuring website performance and improving user experience.

5. Legal Bases

Personal data is processed in accordance with applicable data protection laws (including, where applicable, the GDPR), based on the relevant lawful bases. Where explicit consent is required, explicit consent is obtained separately.

The information (transparency) obligation and consent processes are conducted separately.

6. Cookies

Our website may use strictly necessary cookies and, depending on your use, performance/analytics or preference cookies. For non-essential cookies, a consent mechanism is applied in accordance with applicable legislation.

Details on cookie categories, purposes, retention periods, and preference management are also provided on the Cookie Policy page.

7. Data Transfers

Personal data may be transferred, to the extent permitted by law, to competent public authorities and technical service providers, with appropriate security measures in place.

8. Retention Period and Security

Data is retained for the period required by the purpose of processing and the retention periods set out in applicable legislation; after that, it is deleted, destroyed, or anonymized.

Appropriate technical and organizational measures are implemented to prevent unauthorized access, loss, misuse, and disclosure.

9. Data Subject Rights

As a data subject, you may exercise your rights such as access, rectification, erasure, objection, and other rights provided under applicable data protection laws (including, where applicable, the GDPR). You may submit your requests via the contact channels below:

  • Email: info@opdrmehmetbediiogurel.com
  • Phone: +90 539 864 02 65

10. Relationship with Other Policies

This text is a general privacy policy. Detailed transparency information is also provided in the Data Protection Notice.

For detailed information regarding the processing of your personal data, please refer to the Patient/Appointment Privacy Notice .

11. Policy Updates

This policy may be updated due to legislative changes or operational needs. The current version is published on the website.