Privacy Policy
Last Updated: May 8, 2026
Siloam Oncology Summit ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you register for and attend our event.
1. Information We Collect
1.1 Personal Information
When you register for the Siloam Oncology Summit, we collect the following information:
- Identity Information: Full name, ID number (KTP/Passport), date of birth
- Contact Information: Email address, phone number, mailing address
- Professional Information: Medical specialty, subspecialty, institution/hospital affiliation, professional registration number
- Account Information: Username, password (encrypted), account type (Specialist, GP, Resident, Student)
- Payment Information: Payment method, transaction details (processed securely through Xendit)
1.2 Automatically Collected Information
- Technical Data: IP address, browser type, device information, operating system
- Usage Data: Pages visited, time spent on site, registration progress, session attendance
- Cookies: We use cookies to enhance your experience (see Cookie Policy below)
1.3 Information from Third Parties
- Payment Processor: Transaction status and payment confirmation from Xendit
- Sponsors: If you interact with sponsors, they may share information with us
2. How We Use Your Information
2.1 Primary Purposes
- Event Registration: Process your registration and payment
- Event Management: Manage attendance, check-in, and session access
- Communication: Send event updates, reminders, and important announcements
- Certificates: Generate and issue certificates of attendance and CME credits
- Customer Support: Respond to your inquiries and provide assistance
2.2 Secondary Purposes
- Event Improvement: Analyze attendance patterns and feedback to improve future events
- Marketing: Send information about future events (with your consent)
- Research: Conduct anonymized research on event participation trends
- Legal Compliance: Comply with legal obligations and protect our rights
3. Legal Basis for Processing (GDPR Compliance)
We process your personal data based on:
- Contract Performance: Processing necessary to fulfill our contract with you (event registration)
- Legitimate Interest: Event management, security, and improvement
- Consent: Marketing communications and optional data collection
- Legal Obligation: Tax records, financial reporting, and regulatory compliance
4. Data Sharing and Disclosure
4.1 Service Providers
We share your information with trusted third-party service providers:
- Payment Processor: Xendit (for secure payment processing)
- Email Service: For sending event communications
- Cloud Hosting: For secure data storage
- Analytics: For website and event analytics (anonymized data)
4.2 Event Stakeholders
- Speakers and Faculty: Limited information for session management
- Sponsors: Only if you explicitly consent or interact with them
- Professional Bodies: For CME credit verification (with your consent)
4.3 Legal Requirements
We may disclose your information if required by law, court order, or government authority.
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the new entity.
5. Data Security
5.1 Security Measures
- Encryption: All data transmission is encrypted using SSL/TLS
- Password Protection: Passwords are hashed and encrypted
- Access Control: Limited access to personal data on a need-to-know basis
- Regular Audits: Security assessments and vulnerability testing
- Secure Hosting: Data stored on secure servers with backup systems
5.2 Payment Security
- We do not store credit card information on our servers
- All payment processing is handled by PCI-DSS compliant Xendit
- Payment data is encrypted and tokenized
6. Data Retention
- Active Data: Retained during event registration period and event duration
- Post-Event: Retained for 3 years for certificate issuance and CME verification
- Financial Records: Retained for 7 years as required by Indonesian tax law
- Marketing Data: Retained until you withdraw consent
- Deletion: Data securely deleted after retention period expires
7. Your Rights
7.1 Access and Portability
- Right to access your personal data
- Right to receive your data in a portable format
7.2 Correction and Deletion
- Right to correct inaccurate information
- Right to request deletion of your data (subject to legal obligations)
7.3 Restriction and Objection
- Right to restrict processing of your data
- Right to object to processing for marketing purposes
7.4 Withdrawal of Consent
- Right to withdraw consent for marketing communications at any time
- Unsubscribe links provided in all marketing emails
7.5 How to Exercise Your Rights
To exercise any of these rights, please contact us at: siloamoncologysummit@gmail.com
We will respond to your request within 30 days.
8. Cookies and Tracking Technologies
8.1 Types of Cookies We Use
- Essential Cookies: Required for website functionality (login, session management)
- Performance Cookies: Analyze website usage and performance
- Functional Cookies: Remember your preferences and settings
8.2 Managing Cookies
You can control cookies through your browser settings. Note that disabling essential cookies may affect website functionality.
9. International Data Transfers
Your data is primarily stored in Indonesia. If data is transferred internationally (e.g., for cloud services), we ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses (SCCs)
- Adequacy decisions by relevant authorities
- Encryption during transfer
10. Children's Privacy
Our event is intended for medical professionals and students aged 18 and above. We do not knowingly collect information from children under 18.
11. Third-Party Links
Our website may contain links to third-party websites (sponsors, partners). We are not responsible for their privacy practices. Please review their privacy policies separately.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically. Changes will be posted on this page with an updated "Last Updated" date. Significant changes will be communicated via email.
13. Contact Information
For questions about this Privacy Policy or to exercise your rights, please contact:
- Email: siloamoncologysummit@gmail.com
- Event Website: https://sos2026.meirs.id/
14. Supervisory Authority
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Indonesian Data Protection Authority or relevant supervisory authority in your jurisdiction.
15. Consent
By registering for the Siloam Oncology Summit, you acknowledge that you have read and understood this Privacy Policy and consent to the collection, use, and disclosure of your personal information as described herein.