top of page

PRIVACY & DATA PROTECTION POLICY Vibracion Origen

1. Who We Are (Data Controller)

Vibracion Origen (“we,” “us,” “our”) is the data controller responsible for your personal data collected through www.vibracionorigen.com.

Contact: Vibracion Origen Farbstrasse 19, 3592 Saanen

Email: vibracionorigen@gmail.com

Phone: +34 606 289 539 / +41 772 801 494

We process your personal data in accordance with the EU General Data Protection Regulation (GDPR – Regulation (EU) 2016/679).

2. What Personal Data We Collect

  • Identity & contact data: name, email address, phone number, and address (if home-visit sessions are booked)

  • Booking data: session type booked, date/time, session history

  • Health-related information (special category data): any information you voluntarily share about your physical or emotional condition relevant to your session (e.g., areas of tension, medical conditions to be aware of during treatment)

  • Communication data: messages sent via our contact form or email

  • Technical data: IP address, browser type, device information, and cookies

  • Marketing preferences: whether you have opted in or out of promotional emails

3. Special Category Data (Health Information)

Because our services are wellness-oriented body therapies, you may voluntarily disclose health-related details when booking a session (e.g., an injury, pregnancy, or condition we should be aware of). Under GDPR Article 9, this is considered special category data and requires a higher level of protection.

  • We only collect this information with your explicit consent, given when you provide it to us (e.g., in a booking form or before a session).

  • This data is used solely to provide a safe, appropriate session and is never used for marketing or shared with third parties beyond what is necessary to deliver the service.

  • You may withdraw this consent or request deletion of this information at any time.

4. Legal Basis for Processing

PurposeLegal Basis

Booking and delivering your sessionPerformance of a contract

Health-related details you share for your sessionExplicit consent (Art. 9 GDPR)

Responding to enquiriesPerformance of a contract / Legitimate interest

Sending marketing emailsConsent (you can withdraw anytime)

Website analytics & performanceLegitimate interest / Consent (via cookie banner)

Complying with tax and accounting obligationsLegal obligation

5. How We Use Your Data

We use your personal data to:

  • Book, prepare for, and deliver your Shiatsu, sound therapy, or acupressure session

  • Communicate with you about your booking, including reminders or rescheduling

  • Respond to questions or enquiries

  • Send newsletters or promotions, only if you have opted in

  • Improve our services and website

  • Comply with legal, tax, and accounting requirements

We do not sell or rent your personal data to third parties.

6. Who We Share Your Data With

  • Wix.com — our website and booking platform

  • Payment processors — to securely process session payments

  • Email marketing service (if applicable) — only if you subscribe to our newsletter

All third-party providers are required to process your data securely and in compliance with GDPR.

7. International Data Transfers

If any service provider processes data outside the EU/EEA (including in Switzerland, which is recognized by the European Commission as offering an adequate level of data protection), we ensure your data continues to receive an equivalent level of protection.

8. Data Retention

  • Booking and session records: retained for the legally required accounting/tax period

  • Health-related information you shared: retained only as long as needed for your ongoing care, and deleted upon request or after a reasonable period of inactivity

  • Marketing data: retained until you unsubscribe or withdraw consent

9. Cookies

Our website uses cookies to ensure proper functioning, remember your preferences, and analyze site traffic. You can manage cookie preferences through the consent banner shown on your first visit, and adjust them anytime via your browser settings.

10. Your Rights Under GDPR

You have the right to:

  • Access the personal data we hold about you

  • Rectify inaccurate or incomplete data

  • Erase your data (“right to be forgotten”), where applicable

  • Restrict processing of your data

  • Object to processing based on legitimate interest or direct marketing

  • Data portability — receive your data in a structured, commonly used format

  • Withdraw consent at any time, including consent given for sharing health-related information

To exercise these rights, contact us at [insert contact email]. We will respond within one month, as required by GDPR.

11. Right to Lodge a Complaint

If you believe your data protection rights have been violated, you may lodge a complaint with your national data protection authority. If you are in Spain:

AEPD (Agencia Española de Protección de Datos) C/ Jorge Juan, 6, 28001 Madrid, Spain www.aepd.es

Clients elsewhere in the EU may contact their own national authority.

12. Data Security

We take appropriate technical and organizational measures to protect your personal data, including relying on our hosting provider’s secure, encrypted infrastructure.

13. Children’s Privacy

Our services are not intended for individuals under 18 without parental consent. We do not knowingly collect personal data from children.

14. Changes to This Policy

We may update this Privacy Policy from time to time. The date of the latest update will be shown below.

Last updated: 21 August 2026

bottom of page