Privacy statement

Valid from 1 November 2021. In this section, we describe the processing of your personal data and present the basis according to which we process the personal data we collect from you or that you give us. 1. Controller and contact information Bodymaja Oy In the marketing of the service and later on this page, the name Bodymaja is used for the company Customer service Email: [email protected] Phone: 045 111 5454 (Mon-Fri 9am-3pm) Postal address: PL 2, 99131 Sirkka 2. What information do we collect? Bodymaja collects information that is necessary for the customer relationship between you and Bodymaja and for the purposes for which the information is used. Bodymaja collects the following categories of personal data. Basic and contact information Permission information – for example, marketing permissions Order and contract information – for example, order or contract type, payment method Health and well-being information – for example, the results of body composition measurements or information related to your measurements, health and well-being that you enter into the service yourself Other information provided by the customer: wishes and choices related to services, satisfaction information and other similar information Payment transaction information – for example, information needed for invoicing and payment Online behavior data – for example, login data, other data obtained from the use of our services, customer profiling, including offline online behavior, data collected by website cookies Office use information (Appointment information) Customer service chat recordings Information about the use of our services – for example, ordered measurement packages Communication – for example, as an answer to a survey and other feedback and messages you send us Information about the data processing device – for example, IP address, cookie information 3. From which sources is personal data obtained? The processed personal data includes information that was received from you during the order, when joining the service or during the customer relationship. The results of the measurements you acquire through Bodymaja and the measurements produced by measuring devices and offices. We also receive tracking information about how you use our website and services. Bodymaja can also process derived information that has been derived or deduced based on the information received. Our service is also connected to parties offering identification, verification, credit information, payment brokerage or other similar services and receives related information. In addition, the user’s online behavior is monitored and analyzed with Google Analytics, Active Campaign, LiveChat, Youtube, Google Optimize, Google Ads, Google Tag Manager and Facebook services. The services mentioned above are used in website development, customer service organization and marketing targeting. 4. What is personal data processed for? We process personal data for the following purposes: Customer relationship management – for example, sending order-related notifications, product or service-related notifications or updates, customer instructions Service provision and maintenance, administration and delivery of orders Identification of registrants Retention of transaction data Organization, implementation and monitoring of measurements Subcontractor communication with our contractual partners Management of own health status and other information entered by the user Invoices, collection, returning payments to customers Archiving of contracts and invoices Communication and marketing related to the products and services of Bodymaja or our partners Targeting communication, marketing and services to the customer Informing and reminding the customer using customer and health information, for example, about renewing the test or Bodymaja’s services Collection and monitoring of customer interest information and choices and wishes related to services and locations, analysis and related customer service development Taking into account the wishes of customers and developing customer service and targeting the offer Targeted direct marketing (for current and potential future customers) The development of Bodymaja’s services and business and related customer service development. Bodymaja’s own operations planning, development, statistics, reporting, audits and other tasks required to fulfill the rights and obligations of the data controller Feedback and survey studies and customer satisfaction measurements Statistical processing, for example, to compare the results to a certain target group Handling customer feedback, managing complaints and disputes Processing of official clarification requests based on EU or Finnish legislation, e.g. data protection regulation Transfers of personal data (for example, business transfers, transfers or business transactions) Partner reporting Justifying, presenting or defending legal claims 5. What is the legal basis for processing personal data? In the processing of personal data, for example, the following legal bases: We must create a contractual relationship between you and Bodymaja and fulfill our contractual obligations. Your consent. If our processing of personal data is based on your consent, you can withdraw your consent at any time. We must comply with legal obligations (for example, the law requires us to retain certain information for a certain period of time) and justify, present or defend Bodymaja’s legal claims. We must defend our legitimate interests, including: Internal reporting Partner reporting Product and service development, including feedback and surveys Transfers of personal data (including transfers and transfers) Compensation requests Direct marketing to current and potential future customers Collection 6. Who processes my personal data and where is it transferred? In Bodymaja, personal data is processed for the purposes mentioned above. Bodymaja can outsource the processing of personal data to external service providers who process personal data on behalf of Bodymaja. Bodymaja acquires the equipment used in the measurement services from Inbody Co Ltd, which is responsible for the data as an independent data controller in Europe. The results of the body composition measurements ordered by Bodymaja’s customer are also delivered to Bodymaja’s online service for the customer to see. In Bodymaja, your data and the measurement results you ordered can be seen in Bodymaja’s online service, so that you can view them and monitor your progress. Bodymaja is a Finnish company and operates independently. With Bodymaja’s results report, you can switch to acquiring additional services from third parties if you wish, and receive e.g. advice about your health. As a general rule, customer data is not transferred outside the European Union or the European Economic Area. 7. Automatic decision making Our operations do not involve profiling or automatic decision-making. 8. Your rights The right to get access to personal data: You can access your own data through Bodymaja’s Oma Body service. The service covers the personal information you provide as well as the measurement results related to your health and the information you provide. You can also make an inspection request regarding personal data in writing to Bodymaja. Right to correct information: You can make a written correction request to Bodymaja’s customer service. Right to delete data: Your data can be deleted from Bodymaja based on your request, unless there is a special reason for denying the deletion request. Withdrawal of consent: When the processing is based on your consent, you can withdraw your consent at any time. You can withdraw your consent from our customer service. The right to transfer the data from one system to another: You can save the test results for yourself and copy the data you entered yourself through the Oma Body service. The right to file a complaint with the supervisory authority: If you believe that the data protection regulation has been violated in the processing of your personal data, you have the right to file a complaint with the supervisory authority. 9. How is personal data protected? Data protection and security is of primary importance to us. All data processing is done with Bodymaja’s information system. Personal information remains in Finland and Europe in a high-security server room. We also do not collect sensitive health information. Health data can only be processed by the persons who take care of the measurement services, who are necessary for the production of the service and who have given a written confidentiality commitment. Personal data is processed in accordance with the authorizations required by the personal user ID and work tasks. Bodymaja’s data protection officer is the CEO.