Privacy policy
This privacy policy is a draft and must be legally reviewed before publication.
1. Controller
Physiotherapie am Gesundbrunnen Center, Praxisgemeinschaft
Andrea Klonz and Rita Seidler
Behmstraße 23, 13357 Berlin
Phone: (030) 49 30 13 16
Email: [email protected]
2. Data protection officer
To be confirmed by the practice before publication: "We are not legally required to appoint a data protection officer." Publish this only once the practice has confirmed it — a practice processing health data may be required to appoint one.
3. Principle
You can use our website without providing personal data. Where personal data is collected, this is always on a voluntary basis. Such data is not passed on to third parties without your explicit consent.
4. Server log files
When you visit our site we process your IP address (shortened), the date and time, the resource requested, the referrer, and your browser and device type. The legal basis is Art. 6(1)(f) GDPR — our legitimate interest in secure, trouble-free operation.
To be confirmed by the practice before publication: Retention period to be agreed with the hosting provider. Intended statement: short-term, no longer than 7 days.
5. Appointment request and contact form
We process: your name, email address, phone number where given, the treatment you are interested in, your insurance type, whether you have a prescription, whether you need a home visit, your preferred time of day and your message. The purpose is to handle and answer your appointment request.
The legal bases are Art. 6(1)(a) GDPR (consent) and Art. 6(1)(b) GDPR (pre-contractual steps). Where you voluntarily provide health data, Art. 9(2)(a) GDPR (explicit consent) applies in addition. Please do not send detailed health information through the form.
Your data is deleted once your request has been dealt with conclusively and no statutory retention obligations apply.
6. Withdrawing your consent
You may withdraw your consent at any time, informally, at [email protected]. This does not affect the lawfulness of processing carried out before the withdrawal.
7. Recipients and processors
Our hosting provider processes data on our behalf under Art. 28 GDPR. No data is transferred to third countries.
To be confirmed by the practice before publication: Name and registered office of the hosting provider to be entered before publication.
10. External links
A map service opens in a new tab only when you actively click it. The privacy terms of that provider then apply.
11. Your rights
You have the right of access (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and objection (Art. 21).
You also have the right to lodge a complaint with a supervisory authority — for Berlin: Berliner Beauftragte für Datenschutz und Informationsfreiheit, Alt-Moabit 59–61, 10555 Berlin.
12. TLS encryption
For security reasons this website uses SSL/TLS encryption.
13. Changes to this privacy policy
We will adapt this privacy policy if the legal situation or our services change. The version published on this page is the one that applies.
9. No social media plugins
No social network plugins are embedded.