Innsaeiland · Legal

Privacy Policy

Last updated 7 July 2026

Your privacy matters to us. This policy describes how Innsaeiland collects, uses and protects your personal data when you visit our website, book a treatment or purchase a digital product. We process your data in accordance with the EU General Data Protection Regulation (GDPR).

1. Data controller

Innsaeiland (Tania Ginard) is the data controller responsible for the processing of your personal data.

2. What data we collect

  • Booking and contact: name, email address, phone number and whatever you choose to write in a message to us.
  • Payment: payments are handled by our payment partners (e.g. Stan Store for digital purchases). We never store your full card or account details.
  • Health and wellbeing: during a treatment or programme you may share information about your physical or emotional state. This constitutes sensitive personal data and is processed only with your explicit consent and in strict confidence.
  • Web analytics: we use GATE Lens, a cookieless analytics tool that measures visits at an aggregate level without tracking you as an individual.

3. Why and on what legal basis

  • To perform a contract: to handle your booking, your purchase and our communication with you.
  • With your consent: processing of health data as well as any newsletters or marketing.
  • Legitimate interest: to improve the website and our services through cookieless, aggregated statistics.
  • Legal obligation: to retain accounting records and supporting documents under the Swedish Bookkeeping Act.

4. How long we keep the data

We keep your data for as long as it is needed for the purpose it was collected for — booking history for the duration of the customer relationship, and accounting records for seven years under the Swedish Bookkeeping Act. Health data is deleted when it is no longer needed or when you withdraw your consent.

5. Who we share data with

We never sell your personal data. We share it only with trusted providers who help us run the business — for example payment and booking services and our web hosting provider — and only to the extent necessary. All such parties are bound by data processing agreements.

6. Your rights under the GDPR

You have the right to:

  • request access to the data we hold about you,
  • request rectification of inaccurate data,
  • request erasure ("the right to be forgotten"),
  • request restriction of or object to the processing,
  • request data portability,
  • withdraw a consent at any time.

Contact us at hello@innsaeiland.se to exercise any of these rights. If you believe we are processing your data incorrectly, you have the right to lodge a complaint with the Swedish Authority for Privacy Protection (IMY), www.imy.se.

7. Cookies

Innsaeiland does not use tracking cookies for advertising. Our web analytics (GATE Lens) is cookieless and measures visits at an aggregate level. Necessary cookies may occur for the website to function (e.g. your choice of language).

8. Changes to this policy

We may update this policy from time to time. The latest version is always available on this page with the date at the top.

Have questions about how we handle your personal data? Contact us at hello@innsaeiland.se.