PRIVACY POLICY
INSIGHT TERAPI
WE CARE ABOUT YOUR PRIVACY
At Insight Terapi, our specialists in therapy and coaching work closely with technology developers to promote more accessible and secure evidence-based care. Our goal is to make it smooth and safe for you to receive the help you need.
Your privacy is of utmost importance to us, and this data protection policy (“Privacy Policy”) outlines how we handle and protect your personal data when you use our services (“the Services”).
This policy explains how Insight Terapi operates for you as a user and who is responsible for processing your personal data. We detail the type of information we collect, its purpose, and the legal basis for its processing.
Additionally, we clarify situations where external parties may need to process certain data to ensure a safe and efficient service. Finally, we inform you of your rights regarding our handling of your personal data and how you can exercise these rights.
WHO IS RESPONSIBLE FOR PROCESSING YOUR PERSONAL DATA?
Insight Terapi (“Insight Terapi”) is the data controller for the processing of your personal data within the Service. Through this privacy policy, we aim to inform you about the data we collect, its intended use, and your rights.
WHY DO WE COLLECT DATA, AND WHAT PERSONAL DATA DO WE PROCESS?
Below is an overview of the data we collect when you contact us or use the Service, along with the legal basis for processing.
Managing Your User Account
- Personal data collected: Contact information such as name, email address, phone number, and address.
- Legal basis: Processing is necessary to fulfill our contractual obligations to you and comply with legal requirements.
Communication with You
- Personal data collected: Contact details, such as name and email address, for notifications and reminders.
- Legal basis: Processing is necessary to fulfill our agreement with you and serve our legitimate interests.
Treatment and Patient Record-Keeping
- Personal data collected: Information you choose to share during chat sessions or meetings with our therapists and coaches, including mental and physical health details.
- Legal basis: Processing is necessary to fulfill our contractual obligations and comply with applicable legal requirements, such as the Patient Data Act.
Payment Processing
- Personal data collected: Credit or debit card details, including name and card number.
- Legal basis: Processing is necessary to fulfill our contractual obligations and comply with legal requirements.
Service Security Maintenance
- Personal data collected: Contact details linked to your user account and IP address for fraud prevention and security purposes.
- Legal basis: Processing is based on legitimate interest.
Customer Service
- Personal data collected: Email address or name when contacting customer support.
- Legal basis: Processing is based on legitimate interest.
Marketing and Personalized Communication
- Personal data collected: Device information (e.g., IP address) and contact details (email, phone number) for marketing purposes.
- Legal basis: Personalized communication is based on legitimate interest. Direct marketing via email and SMS requires your consent, which can be withdrawn at any time by contacting [email protected]
Service Development
- Personal data collected: Your personal data, except health information, may be used to generate anonymized and aggregated statistics for service development.
- Legal basis: Processing is based on legitimate interest.
You always have the option to withhold your data, but doing so may limit or prevent our ability to provide the Service. Incorrect or incomplete information may also impact our ability to offer the appropriate care.
INFORMATION SECURITY
We prioritize information and IT security to protect your personal data from unauthorized access. This includes technical and organizational security measures in compliance with legal requirements and our internal policies.
All communication between you and Insight Terapi is encrypted, ensuring that only you and those involved in your care can access your health data. No audio or video recordings are stored or registered. However, your profile picture and any files you choose to upload to the Service will be saved.
WHEN DO WE PROCESS YOUR DATA?
The personal data listed above is collected:
- When you visit our website
- When you register an account with us
- When you contact us via email, mail, phone, meetings, or our website
- When you subscribe to our newsletter or other updates
- When we obtain data from publicly available records, such as SPAR
HOW DO WE USE YOUR DATA?
We use your personal data to:
- Keep your information up to date
- Deliver, manage, and communicate our Services to you
- Handle and manage communication with you, including newsletters and other relevant updates
WHO DO WE SHARE YOUR DATA WITH?
We do not sell your personal data to third parties. However, we may share your data with other companies within our group, partners, or subcontractors to provide the Service and fulfill the purposes for which we process your personal data.
A subcontractor will never have access to your patient records or health data without your consent.
Third-Party Services
To offer the best possible service, we use third-party providers. By using our Services, you agree to these third parties processing your personal data in accordance with their privacy policies.
Read more about Google Meet’s privacy policy here.
We may also share your personal data with authorities as required by law. Additionally, we may share encrypted personal data with advertising services and social platforms such as Meta, Google, Microsoft (Bing), LinkedIn, and TikTok.
In the event of a business transfer, such as an acquisition or restructuring, your personal data may be transferred accordingly.
WHERE DO WE PROCESS YOUR DATA?
We strive to process your personal data within the EU and EEA as much as possible. However, some subcontractors operate outside the EU/EEA (“third countries”). If we need to transfer your data to a third country, we ensure that this is done in compliance with applicable legislation, applying appropriate safeguards approved by the EU Commission.
HOW LONG DO WE STORE YOUR DATA?
We retain your personal data as long as necessary to fulfill the purposes for which it was collected. Generally, this applies for as long as you remain connected to us, such as by using our Services or subscribing to newsletters.
Some data may be retained longer if required by law, such as patient records.
YOUR RIGHTS
It is important to us that you are aware of your rights regarding the processing of your personal data. Below, you will find more information about these rights.
- Right to Withdraw Consent: If any processing is based on your consent, you have the right to withdraw it, and we will cease processing your personal data.
- Right to Access (Data Subject Access Request): You can request a record of the personal data we process about you, including a copy of the information. The record will be sent to your registered address.
- Right to Rectification: You have the right to request that your information be completed or that incorrect details, such as your name or other contact information, be corrected.
- You have the right to request the deletion of your data if any of the following conditions apply:
- The data is no longer needed for the purposes for which it was collected.
- The processing is based solely on your consent, and you withdraw it.
- The processing is for direct marketing purposes, and you object to it.
- You object to processing based on a legitimate interest, and there are no overriding reasons for the processing.
- The data has not been processed in accordance with applicable laws.
- The deletion is necessary to fulfill a legal obligation.
If we delete your personal data under these conditions, we will notify any parties to whom we have disclosed your data to the extent possible. Upon your request, we will also inform you of the recipients of the disclosed data.
- Right to Restriction of Processing: You can request that we restrict the processing of your personal data. This may be relevant, for example, if we have incorrect information about you, and you do not want the data to be processed until it is corrected.
- Right to Block Data: You have the right to request that information in your patient record be blocked from electronic access.
- Right to Data Portability: If processing is based on consent or a contract, you can request to receive your personal data in a machine-readable format so that it can be transferred to another party. However, this right does not apply if we process your data based on legitimate interest or a legal obligation.
- Right to Object: For processing based on legitimate interest, you have the right to object to the use of your personal data. If we determine that such processing should still continue, we must demonstrate that there are overriding legitimate interests.
- Reporting a Violation: If you believe that we are processing your data in violation of applicable law, you should report it to us. You may also file a complaint with the Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten) at https://www.imy.se/
COOKIES
What is a cookie?
A cookie is a text file sent from a website or digital channel to your browser. It allows the site to recognize your computer or mobile device and collect information about the pages and features you have visited. Cookies also help retain your choices when navigating our website or returning to it later. Cookies are commonly used on websites and are often necessary for them to function properly. By continuing to browse the website, you agree to the use of cookies.
How we use cookies
On Insight Terapi’s digital channels, we use cookies for various purposes, such as functionality and analytics. Cookies help us provide you with a better user experience when visiting our website and enable improvements to your experience. Some cookies are essential for the website’s core functions, while others enhance usability and optimize your experience.
Functional cookies
Functional cookies recognize you when you return to our website. This allows us to tailor website content to your needs, greet you by name, and, in some cases, remember your preferences. Functional cookies are also used to:
- Remember your login details
- Ensure a consistent appearance of the website pages
Performance cookies
Performance cookies (Google Analytics) allow us to identify and count the number of visitors and understand how they navigate the website. They also help us improve the website, for example, by ensuring you can easily find what you’re looking for and that the pages you visit load faster.
Examples of usage
Cookies are used to enhance Insight Terapi’s digital services, for instance by:
- Measuring how many people use the services so we can make them simpler and faster
- Analyzing data to help us understand how you use the website’s services so we can improve them
Want to know more?
If you have any questions regarding privacy or data protection, or if you wish to exercise your rights, you can contact us by sending an email to [email protected]
Last updated: October 23, 2024.