Privacy Policy.

Controller

The controller responsible for data processing on this website is:

Healju Hub – Verena Stracke
Email: hello@healjuhub.com

General Information

We take the protection of your personal data very seriously. Personal data is only collected, processed, and used when necessary to provide a functional website, my services, or with your consent. Processing of personal data is carried out in accordance with the General Data Protection Regulation (GDPR).

Hosting (Squarespace)

This website is hosted on Squarespace (Squarespace Ireland Ltd., Le Pole House, Ship Street Great, Dublin 8, Ireland). Squarespace may also process data on servers in the USA. To ensure GDPR compliance, Squarespace relies on EU Standard Contractual Clauses.

Data processed may include IP addresses, device/browser information, and server log files for security and technical purposes.

Data We Collect

  • Contact details (name, email address, phone number)

  • Booking details (class or service booked, date, time)

  • Payment details (via PayPal, Stripe, Apple Pay, credit card – no card details are stored directly on our servers)

  • Technical data (cookies, IP address, browser type, device type, operating system, access times)

Cookies

Our website uses cookies. Cookies are small text files that are stored on your device and help provide a better user experience (e.g., analytics, session management, marketing).

You may disable cookies in your browser, but some features of this website may not work properly.

Analytics & Marketing Tools

Google Analytics

We use Google Analytics (Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland) to analyze how visitors use this website. Google may transfer data to servers in the USA and relies on EU Standard Contractual Clauses.

Legal basis: your consent (Art. 6(1)(a) GDPR).

Google Fonts

Our website uses Google Fonts to display consistent fonts. When loading the site, your browser connects to Google servers, which may result in your IP address being transmitted.

Meta Pixel (Facebook & Instagram)

We use the Meta Pixel (Meta Platforms Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland) to measure the effectiveness of ads and improve our marketing. Meta may link data to your profile if you are logged in.

Legal basis: your consent (Art. 6(1)(a) GDPR).

Newsletter

If you sign up for our newsletter (via Squarespace), we process your email address and optional details you provide.
Legal basis: your consent (Art. 6(1)(a) GDPR).

You may unsubscribe at any time via the link in the footer or by contacting hello@healjuhub.com.

Contact

If you contact us by email (hello@healjuhub.com), we process your details in order to handle your request.
Legal basis: performance of a contract or pre-contractual steps (Art. 6(1)(b) GDPR).

Payments

We use external payment providers for secure transactions:

  • PayPal (PayPal Europe S.à r.l. et Cie, S.C.A., Luxembourg)

  • Stripe (Stripe Payments Europe Ltd., Ireland) – also used for credit card payments and Apple Pay

  • Apple Pay (Apple Inc., Cupertino, USA, via Stripe integration)

These providers may process data outside the EU (especially in the USA) based on EU Standard Contractual Clauses.
Legal basis: performance of a contract (Art. 6(1)(b) GDPR).

Legal Basis For Processing

We process your data based on the following legal grounds under the GDPR:

  • Art. 6(1)(a) – Consent (e.g., analytics, marketing, newsletter)

  • Art. 6(1)(b) – Contract (e.g., bookings, payments, communication)

  • Art. 6(1)(f) – Legitimate Interests (e.g., website security, prevention of fraud)

Data Retention

We only store your personal data as long as necessary:

  • For customer accounts and bookings: until the purpose is fulfilled, or legal retention periods expire.

  • For newsletters: until you withdraw your consent.

  • For server logs: up to 30 days for security reasons.

Your Rights Under The GDPR

You have the following rights:

  • Right of access (Art. 15 GDPR)

  • Right to rectification (Art. 16 GDPR)

  • Right to erasure (Art. 17 GDPR)

  • Right to restriction of processing (Art. 18 GDPR)

  • Right to data portability (Art. 20 GDPR)

  • Right to object (Art. 21 GDPR)

  • Right to withdraw consent at any time (Art. 7(3) GDPR)

You also have the right to lodge a complaint with a supervisory authority.

Data Transfers To Third Parties

Whenever personal data is transferred outside the EU/EEA (e.g., USA), we ensure that EU Standard Contractual Clauses or other suitable safeguards are in place.

Security

We use SSL encryption and other technical and organizational measures to secure your data against unauthorized access or disclosure.

Updates

We may update this Privacy Policy from time to time. The latest version is always available on this page.

Contact

For any questions about this Privacy Policy or data processing, please contact:

Healju Hub – Verena Stracke
Email: hello@healjuhub.com