This Privacy Policy describes how Washflexible ("we," "us," or "our") collects, uses, stores, and protects personal information when you visit our website at washflexible.world or use our consultation and educational services. We are committed to protecting your privacy and processing your data in accordance with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA) where applicable, and other relevant international data protection laws.
1. Data Controller Information
The data controller responsible for your personal information is:
- Company Name: Washflexible
- Address: 303 Lafayette St, New York, NY 10012, United States
- Phone: +1 212-680-1938
- Email: admin@washflexible.world
- Website: washflexible.world
For any questions regarding this Privacy Policy or our data processing practices, please contact us using the details above. We will respond to privacy-related inquiries within 30 days of receipt.
2. Scope of This Policy
This Privacy Policy applies to all personal data collected through our website, contact forms, consultation bookings, email communications, and any other channels through which you interact with Washflexible. It does not apply to third-party websites that may be linked from our pages. We encourage you to review the privacy policies of any external sites you visit.
Our website provides general informational content about water balance and lifestyle wellness. We do not collect health records, medical diagnoses, or clinical data. Any information you voluntarily share during consultations is treated as general wellness discussion context, not protected health information under HIPAA or equivalent regulations.
3. Categories of Personal Data We Collect
3.1 Information You Provide Directly
When you interact with our website or services, you may provide the following types of personal data:
- Identity Data: Your full name as submitted through our contact form or consultation booking process.
- Contact Data: Your email address, phone number, and mailing address when voluntarily provided.
- Communication Data: The content of messages, inquiries, and feedback you send through our contact form or email.
- Consent Records: Records of your consent to data processing, cookie preferences, and marketing communications.
- Booking Data: Preferred consultation dates, session format preferences (in-person or remote), and related scheduling information.
3.2 Information Collected Automatically
When you visit our website, certain technical data may be collected automatically through cookies and similar technologies, subject to your consent preferences:
- Usage Data: Pages visited, time spent on pages, navigation paths, and interaction patterns.
- Technical Data: IP address (anonymized where possible), browser type and version, operating system, device type, and screen resolution.
- Referral Data: The website or source that directed you to our pages.
- Cookie Data: Information stored through cookies as described in our Cookie Policy.
3.3 Information We Do Not Collect
We do not intentionally collect sensitive personal data such as racial or ethnic origin, political opinions, religious beliefs, trade union membership, genetic data, biometric data, health records, or data concerning sexual orientation. We do not process payment card information directly on our website. If payment processing is required for consultation services, it is handled by secure third-party payment processors with their own privacy policies.
4. Legal Basis for Processing
Under the GDPR, we process your personal data based on the following legal grounds:
- Consent (Article 6(1)(a)): When you submit our contact form, accept cookies, or opt in to marketing communications, you provide explicit consent for the specified processing activities.
- Contract Performance (Article 6(1)(b)): Processing necessary to respond to your inquiries, schedule consultations, and deliver educational services you have requested.
- Legitimate Interests (Article 6(1)(f)): Processing for website security, fraud prevention, service improvement, and internal analytics, balanced against your privacy rights.
- Legal Obligation (Article 6(1)(c)): Processing required to comply with applicable laws, regulations, tax requirements, or legal proceedings.
5. Purposes of Data Processing
We use your personal data for the following specific purposes:
- Responding to contact form submissions and email inquiries within our stated response timeframe.
- Scheduling and conducting informational consultation sessions.
- Delivering educational materials and program content you have enrolled in.
- Maintaining records of your service preferences and consultation history for continuity of service.
- Improving our website functionality, content relevance, and user experience through aggregated analytics.
- Sending service-related communications such as appointment confirmations and policy updates.
- Complying with legal obligations and responding to lawful requests from authorities.
- Protecting the security and integrity of our website and preventing unauthorized access.
6. Data Sharing and Third Parties
We do not sell, rent, or trade your personal data to third parties for their marketing purposes. We may share your data with the following categories of recipients only when necessary:
- Service Providers: Hosting providers, email delivery services, analytics platforms, and scheduling tools that process data on our behalf under strict data processing agreements.
- Legal Authorities: When required by law, court order, or governmental regulation.
- Professional Advisors: Lawyers, accountants, or auditors when necessary for compliance or business operations, bound by confidentiality obligations.
All third-party processors are required to implement appropriate technical and organizational measures to protect your data and process it only according to our instructions.
7. International Data Transfers
Washflexible is based in the United States. If you access our website from the European Economic Area (EEA), United Kingdom, or other regions with data transfer restrictions, your personal data may be transferred to and processed in the United States. We ensure appropriate safeguards for such transfers, including Standard Contractual Clauses approved by the European Commission, adequacy decisions where applicable, and binding corporate rules for affiliated entities.
8. Data Retention Periods
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Contact Form Submissions: Retained for 24 months from the date of submission, unless an ongoing consultation relationship exists.
- Consultation Records: Retained for 36 months after the last session to support follow-up services and reference continuity.
- Marketing Consent Records: Retained for the duration of consent plus 12 months after withdrawal for compliance documentation.
- Cookie and Analytics Data: Retained according to periods specified in our Cookie Policy, typically 12 to 26 months.
- Legal and Financial Records: Retained for 7 years where required by applicable tax and commercial law.
After the applicable retention period expires, personal data is securely deleted or anonymized so it can no longer be associated with you.
9. Security Measures
We implement appropriate technical and organizational security measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- HTTPS encryption for all data transmitted between your browser and our servers.
- Access controls limiting personal data access to authorized personnel only.
- Regular security assessments and updates to our website infrastructure.
- Secure storage of consultation records with encryption at rest where applicable.
- Employee training on data protection principles and confidentiality obligations.
- Incident response procedures for detecting, reporting, and addressing data breaches.
While we strive to protect your personal data, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security but commit to notifying affected individuals and relevant authorities of any breach within 72 hours where required by law.
10. Your Rights Under GDPR and Applicable Laws
Depending on your location, you may have the following rights regarding your personal data:
- Right of Access: Request a copy of the personal data we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete personal data.
- Right to Erasure: Request deletion of your personal data where no compelling reason exists for continued processing.
- Right to Restrict Processing: Request limitation of processing under certain circumstances.
- Right to Data Portability: Receive your data in a structured, commonly used, machine-readable format.
- Right to Object: Object to processing based on legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent, without affecting the lawfulness of prior processing.
- Right to Lodge a Complaint: File a complaint with a supervisory authority in your country of residence.
To exercise any of these rights, contact us at admin@washflexible.world. We will respond within 30 days. We may request verification of your identity before processing your request.
11. Children's Privacy
Our website and services are intended for adults aged 18 and over. We do not knowingly collect personal data from individuals under 18 years of age. If we become aware that we have collected data from a minor without parental consent, we will take steps to delete that information promptly. Parents or guardians who believe their child has provided personal data to us should contact us immediately.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or business operations. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you via email or a prominent notice on our website. We encourage you to review this policy regularly to stay informed about how we protect your data.
13. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us:
- Email: admin@washflexible.world
- Phone: +1 212-680-1938
- Mail: Washflexible, 303 Lafayette St, New York, NY 10012, United States