Privacy Policy
At Fyronastrael, we value your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, and safeguard your information when you visit our website, participate in our programs, or interact with us in any way.
Information We Collect
We collect several types of information from and about users of our website and services, including:
- Personal identification information: Name, email address, phone number, and postal address when you register for our programs, subscribe to our newsletter, or fill out a contact form.
- Health-related information: Information about your health conditions, allergies, or dietary restrictions that you voluntarily provide to us in order for us to better tailor our wellness services to your needs.
- Payment information: Credit card details and billing addresses when you make a purchase (this information is processed securely through our payment processors and is not stored on our servers).
- Technical information: IP address, browser type, operating system, device information, usage data, and cookies when you browse our website.
How We Use Your Information
We use the information we collect for various purposes, including:
- To provide and improve our services
- To process your bookings, payments, and refunds
- To send you service-related notifications
- To communicate with you about our programs, events, and special offers (if you have opted in to marketing communications)
- To personalize your experience and deliver content relevant to your interests
- To ensure the security and proper functioning of our website
- To analyze usage patterns and improve our website and services
- To comply with legal obligations
We will only use your personal data for the purposes for which we collected it, unless we reasonably consider that we need to use it for another reason compatible with the original purpose.
Legal Basis for Processing
Under the General Data Protection Regulation (GDPR), we process your personal data on the following legal grounds:
- Consent: We process your data when you have given us specific consent to do so, such as subscribing to our newsletter.
- Contract: We process your data when it is necessary for the performance of a contract with you (e.g., when you book a session or program).
- Legitimate Interests: We process your data when it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests, such as analyzing website usage to improve our services.
- Legal Obligation: We process your data when we need to comply with a legal or regulatory obligation.
For special categories of personal data, such as health-related information, we will only process this data with your explicit consent.
Data Retention
We will retain your personal data only for as long as necessary to fulfill the purposes for which we collected it, including for the purposes of satisfying any legal, accounting, or reporting requirements.
To determine the appropriate retention period for personal data, we consider:
- The amount, nature, and sensitivity of the personal data
- The potential risk of harm from unauthorized use or disclosure of your personal data
- The purposes for which we process your personal data
- Whether we can achieve those purposes through other means
- The applicable legal requirements
In general, we keep basic customer information for up to 6 years after the last interaction for tax and legal purposes. Marketing preferences and subscription data are kept until you unsubscribe or ask us to delete this information.
Data Security
We have implemented appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. These measures include:
- Secure HTTPS protocol for all website traffic
- Encryption of sensitive data
- Regular security assessments and updates
- Limited access to personal data only to authorized personnel
- Employee training on data protection and security
While we do our best to protect your personal data, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security of your data.
Data Sharing and Third Parties
We may share your personal data with the following categories of third parties:
- Service providers: We share data with trusted third parties who assist us in operating our website, conducting our business, or providing services to you (e.g., payment processors, email service providers, and analytics providers).
- Program instructors: For participants in our programs, we may share relevant information with the instructors who will be providing the service.
- Legal and regulatory authorities: We may disclose your information if required by law, regulation, or legal process.
We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.
We do not sell your personal data to third parties.
International Transfers
Our operations are primarily based in Finland and the European Economic Area (EEA). However, some of our service providers may be located outside the EEA, which means your data may be transferred to and processed in countries where data protection laws may be less comprehensive than those in the EEA.
When we transfer your personal data outside the EEA, we ensure a similar degree of protection is afforded to it by implementing at least one of the following safeguards:
- Transferring data to countries that have been deemed to provide an adequate level of protection by the European Commission
- Using specific contracts approved by the European Commission that give personal data the same protection it has in Europe
- Using providers based in the US that are part of the EU-US Privacy Shield (where applicable)
Your Rights
Under certain circumstances, you have the following rights under data protection laws:
- Right to access: You can request a copy of the personal data we hold about you.
- Right to rectification: You can ask us to correct any incomplete or inaccurate data we hold about you.
- Right to erasure: You can ask us to delete your personal data in certain circumstances.
- Right to restrict processing: You can ask us to suspend the processing of your personal data in certain circumstances.
- Right to data portability: You can request the transfer of your personal data to you or to a third party in certain circumstances.
- Right to object: You can object to the processing of your personal data in certain circumstances, particularly for direct marketing purposes.
- Right to withdraw consent: You can withdraw your consent at any time where we rely on consent to process your personal data.
If you wish to exercise any of these rights, please contact us using the details provided in the "Contact Us" section. We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data.
Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience, analyze site traffic, and personalize content. Cookies are small text files that are stored on your device when you visit our website.
We use the following types of cookies:
- Essential cookies: These are necessary for the website to function properly and cannot be switched off in our systems.
- Performance cookies: These help us understand how visitors interact with our website by collecting and reporting information anonymously.
- Functional cookies: These enable the website to provide enhanced functionality and personalization based on your preferences.
- Targeting cookies: These may be set through our site by our advertising partners to build a profile of your interests and show you relevant ads on other sites.
You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. If you disable or refuse cookies, please note that some parts of this website may become inaccessible or not function properly.
For more information about the cookies we use, please see our Cookie Policy.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your personal data.
Contact Us
If you have any questions about this Privacy Policy or our data practices, or if you would like to exercise any of your rights under data protection laws, please contact us at:
Email: [email protected]
Phone: +358 45 133 4363
Address: Tehtaankatu 25, 00150 Helsinki,
Finland
You have the right to make a complaint at any time to the Finnish Data Protection Ombudsman (Tietosuojavaltuutetun toimisto), the Finnish supervisory authority for data protection issues. However, we would appreciate the chance to deal with your concerns before you approach the Data Protection Ombudsman, so please contact us in the first instance.