LGPD - General Data Protection Law

Last updated: Janeiro 2026

Commitment to LGPD

Surgilys is in full compliance with the General Data Protection Law (Law No. 13,709/2018). This document details how we process personal data in accordance with Brazilian legislation.

Data Controller

Surgilys Tecnologia Ltda. acts as the controller of personal data collected through our platform, being responsible for decisions regarding personal data processing.

Legal Basis for Processing

Personal data processing by Surgilys is carried out based on the following legal hypotheses:

  • Consent of the data subject
  • Contract execution
  • Legitimate interest of the controller
  • Compliance with legal obligation

Data Subject Rights

According to LGPD, you have the following rights:

  • Confirmation of processing existence
  • Access to data
  • Correction of incomplete or outdated data
  • Anonymization, blocking, or deletion of unnecessary data
  • Data portability
  • Deletion of data processed with consent
  • Revocation of consent

Data Protection Officer (DPO)

To exercise your rights or clarify questions about data processing, contact our DPO:

dpo@surgilys.com

Security Measures

We adopt technical and administrative measures to protect personal data from unauthorized access and accidental or unlawful situations of destruction, loss, alteration, communication, or dissemination.