Privacy Policy

Effective Date: 17.09.2025
Last Updated: 17.09.2025
Image
Image

1. Introduction

At MartinThomsen.com (“we,” “our,” or “us”), your privacy matters. This Privacy Policy explains how we collect, use, and protect your personal data when you use our website, book a retreat or coaching service, subscribe to our newsletter, or contact us.

We comply with the General Data Protection Regulation (GDPR) and European data protection laws.

2. Data We Collect

We may collect the following types of data:

  • Personal Identification Data: Name, email address, phone number, country of residence, and billing information.
  • Health/Wellbeing Information (if provided): Shared voluntarily via retreat application forms or coaching intake forms (e.g., medical conditions, medications, mental health history).
  • Payment Data: Processed securely by third-party providers (Wise, Stripe, Eventbrite). We do not store card details.
  • Technical Data: IP address, browser type, device information, and cookies (see Cookie Policy).
  • Communication Data: Emails, form submissions, or messages you send to us.

3. How We Use Your Data

We process your personal data only for specific and lawful purposes:

  • To provide and deliver coaching, therapy, and retreat services.
  • To manage bookings, payments, and communications.
  • To send newsletters, updates, or marketing communications (with your consent).
  • To comply with legal obligations (invoicing, tax, etc.).
  • To improve website performance and user experience.

We never sell or rent your data.

4. Legal Basis for Processing (GDPR):

We rely on the following lawful bases:

  • Consent: For newsletters, marketing, and optional health disclosures.
  • Contract: To provide services you book (e.g., retreats, coaching).
  • Legal Obligation: To maintain invoices and tax records.
  • Legitimate Interests: To improve services and ensure website security.

5. How Long We Keep Your Data

We only keep your data as long as necessary:

  • Newsletter subscribers → until you unsubscribe.
  • Client/retreat records → up to 5 years (for legal/tax purposes).
  • Health/wellbeing intake data → deleted within 12 months after your retreat/program ends.

6. Sharing Your Data

We only share your data with trusted third parties essential to providing our services:

  • Kit / Typeform / Calendly (forms & bookings)
  • Eventbrite (retreat ticketing)
  • Wise, Stripe (payments)
  • Google Analytics / Meta Pixel (website analytics & ads, where consented)

These providers comply with GDPR or equivalent safeguards.

7. Your GDPR Rights

As an EU resident, you have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate or incomplete data.
  • Request deletion (“right to be forgotten”).
  • Restrict or object to processing.
  • Request transfer of your data (data portability).
  • Withdraw consent at any time (e.g., unsubscribe from emails).

To exercise these rights, use the contact form here.

8. Data Security

We take appropriate measures (encryption, secure storage, restricted access) to protect your data. However, no online system can guarantee 100% security.

9. International Transfers

If your data is transferred outside the EU/EEA (e.g., to US-based service providers), we ensure that safeguards are in place, such as Standard Contractual Clauses (SCCs) or equivalent legal frameworks.

10. Updates to This Policy

We reserve the right to update this Privacy Policy from time to time. The updated version will always be posted on this page, accompanied by the “Last Updated” date.

11. Contact

If you have any questions, concerns, or requests, please don't hesitate to contact us here.

Data Controller:

Martin Schmidt Thomsen

Business Address: 30 N Gould St Ste R, Sheridan, WY 82801