Privacy Policy

1. Introduction and Responsibility

The protection of your privacy and the legally compliant processing of your personal data are our highest priorities. This Privacy Policy provides comprehensive information about the nature, scope, and purpose of the collection and use of data by:

Data Controller: Renato Bassani,lic.iur - ReBrivia, 4125 Riehen Switzerland

Email: kontakt@rebrivia.com

Website: www.rebrivia.com

2. Legal Basis and Scope

We process personal data in strict compliance with the Swiss Federal Act on Data Protection (FADP/nDSG) and, where applicable, the European Union General Data Protection Regulation (GDPR). This policy applies to all interactions via our website, including the use of analytical tools, newsletter subscriptions, and the utilization of consulting services in the fields of longevity and vitality analysis.

3. Categories of Processed Data

We collect data directly from you (e.g., via forms) or automatically through your visit (technical data).

3.1 Sensitive Personal Data (Health Data)

As part of our biological age consulting, we process data concerning your health (Art. 5 lit. c FADP). This includes:

  • Life circumstances, health factors/data, and lifestyle factors.

  • Information on nutrition (vital nutrients), stress levels, and fitness.

  • Test results (if provided by you). Note: The processing of this data occurs exclusively on the basis of your express consent.

3.2 Technical Data and Logging

With every access to our website, the following data is collected and stored in log files:

  • IP address (anonymized), date, and time of access.

  • Browser type, version, and operating system.

  • Referrer URL (the previously visited page).

3.3 Communication and Master Data

Data you transmit to us via email or contact forms (name, address, email address, phone number).

4. Purpose of Data Processing

We pursue legitimate purposes with the processing of your data:

  • Contract Fulfillment: Provision of personalized vitality analyses and coaching.

  • Website Optimization: Ensuring the stability, security, and performance of the website.

  • Marketing & SEO: Statistical evaluation of user behavior to improve content relevance.

  • Legal Protection: Defense against unauthorized claims and compliance with statutory archiving obligations.

5. Use of Cookies and Third-Party Technologies

5.1 Analytical Tools (e.g., Google Analytics 4)

We use GA4 to analyze the use of our website.

  • Anonymization: We utilize the IP anonymization function.

  • International Transfer: Data may be transferred to servers in the USA. We rely on the Swiss-U.S. Data Privacy Framework and the EU Commission's Standard Contractual Clauses.

5.2 Artificial Intelligence (AI)

We use AI tools for visualization purposes (e.g., cell regeneration graphics).

  • AI Data Protection: We do not input personal data of our clients into public AI training models. All inputs are processed anonymously.

5.3 Use of Google Analytics

Our website uses Google Analytics, a web analytics service provided by Google LLC. Google Analytics uses cookies that are stored on your device and enable an analysis of your use of the website. The information generated by the cookie about your use of this website is generally transmitted to a Google server in the United States and stored there.

Purpose of Data Processing

The data is processed for the purpose of analyzing the use of our website and generating reports on website activity. This information helps us improve our website and optimize our services.

Categories of Data Processed

  • IP address (in anonymized form)

  • Time of access

  • Referrer URL (the website from which the user accesses our website)

  • Pages visited and duration of visit

  • Geographical data (in anonymized form)

  • Device type and operating system

  • Browser type and version

IP Anonymization

IP anonymization is activated on this website. This means that your IP address is shortened by Google within member states of the European Union or in other states party to the Agreement on the European Economic Area (EEA). Only in exceptional cases will the full IP address be transmitted to a Google server in the United States and shortened there. This ensures that only an anonymized IP address is processed.

Disclosure of Data

Google processes the collected information on our behalf to evaluate the use of the website, compile reports on website activity, and provide other services related to website and internet usage. Google may transfer this information to third parties where required by law or where such third parties process the information on Google’s behalf. Google will not associate your IP address with any other data held by Google.

Opt-Out Options

You may prevent the storage of cookies by adjusting the settings of your browser software. Please note, however, that in this case you may not be able to use all functions of this website to their full extent.

You may also prevent the collection and processing of data generated by the cookie and related to your use of the website by Google by downloading and installing the Google Analytics Opt-out Browser Add-on, available at:
https://tools.google.com/dlpage/gaoptout

Data Retention Period

The data collected via Google Analytics is stored for a period of 14 months and is automatically deleted thereafter.

Legal Basis for Data Processing

The legal basis for the use of Google Analytics is your consent pursuant to Art. 6 para. 1 lit. a GDPR and Art. 13 para. 1 Swiss Federal Act on Data Protection (FADP), as well as our legitimate interest in analyzing and improving the use of our website pursuant to Art. 6 para. 1 lit. f GDPR and Art. 13 para. 1 FADP.

Data Transfer to the United States

The data collected through Google Analytics may be transferred to and processed in the United States. As the United States does not provide a level of data protection equivalent to that of the European Union or Switzerland, such transfers are based on standard contractual clauses entered into by Google to ensure an adequate level of data protection.

Further Information

Further information about Google’s data protection practices can be found at:
https://policies.google.com/privacy

6. Data Disclosure and Sub-processing

Data is only disclosed to third parties:

  • To specialized IT service providers (hosting, cloud services) under strict adherence to data processing agreements (Art. 9 FADP).

  • To authorities, provided there is a legal obligation.

  • We do not sell any data to third parties for advertising purposes.

7. Retention Period and Data Deletion

We store your data only as long as required by the purpose:

  • Consulting Records: Generally 10 years (corresponding to the statutory limitation period for professional liability).

  • Marketing Data: Until you withdraw your consent.

  • Log Data: Automatically deleted or anonymized after 30 to 90 days.

8. Your Rights as a Data Subject

You have extensive rights regarding your data:

  • Right of Access: Transparency regarding which data we process.

  • Rectification & Erasure: Correction of incorrect data or destruction of data no longer required.

  • Data Portability: Delivery of your data in a standard, machine-readable format (Art. 28 FADP).

  • Right of Withdrawal: Withdrawal of granted consents with effect for the future.

9. Data Security

We employ state-of-the-art technical and organizational measures (TOM):

  • End-to-End Encryption (TLS/SSL).

  • Personal data are processed using appropriate security measures, such as encryption.

  • Regular backups