Skip to main content

GDPR (AVG) and DentallManager

The GDPR (AVG) sets rules for the careful processing of personal data: only collecting what is needed, securing data, and giving people their rights. This page explains how DentallManager supports you with this, for employee data.

Employee data, not patient data

DentallManager processes data about your team: name and contact data, practice data, login data, and documents you upload yourself. DentallManager does not process patient data; that remains in your patient management system (PMS) and therefore falls outside the scope of this page. Read more at Data and Privacy.

How DentallManager helps

Access control. With roles and permissions, you determine who can view which employee data, so that only authorized colleagues have access.

Retention periods. DentallManager retains account data for as long as your account is active; invoicing data for seven years. Read more about this at Data Protection.

Employee rights. Employees exercise their rights to access, correction, erasure, data portability and objection via info@dentallmanager.nl.

What DentallManager does not do

Using DentallManager does not automatically make your practice GDPR-compliant. As a practice, you remain the data controller. You remain responsible for the full range of GDPR obligations, such as a processing register or a risk assessment with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).

DentallManager supports you in organising quality and compliance, but this is not legal advice. For the current requirements, consult the official sources (including KNMT, IGJ and the Dutch Data Protection Authority) or an adviser.

See also

  • Retention periods, hosting and the data processing agreement: data protection.

Can't figure it out? Contact the free helpdesk at info@dentallmanager.nl.