PRIVACY POLICY AND PERSONAL DATA PROCESSING

Controller: Paula Jiménez Hypnotherapy (Paula Jiménez)
Contact: info@pjhypno.com
Effective from: [15/08/2025] – last updated on [15/08/2025].


1. Legal Framework

This policy complies with Colombian Statutory Law 1581 of 2012 and its regulatory decrees (1377 of 2013 and 1074 of 2015), implementing the fundamental right to the protection of personal data in accordance with the principles of legality, purpose, freedom, accuracy, transparency, restricted access and circulation, security, and confidentiality.


2. Definitions

  • Personal data: Any information linked or that can be associated with a natural person.

  • Sensitive data: Information related to health, sexual life, beliefs, or emotional state, processed during hypnotherapy sessions.

  • Data processor: Technical service provider with temporary access to personal data (e.g., Zoom, Stripe, Mailchimp).


3. Purposes of Processing

  • Schedule and manage sessions (exploratory or Hypnotherapy).

  • Personalize the Hypnotherapy process.

  • Administrative management and invoicing.

  • Send appointment reminders and confirmations.

  • Send newsletters or promotions, only with explicit and separate consent.


4. Sensitive Data and Consent

The processing of sensitive data requires prior, express, and informed consent, obtained through a digital form with a specific checkbox, documented with date and IP or digital signature. The data subject is not obliged to authorize the processing of sensitive data.


5. Data Retention

  • Administrative data: minimum 5 years due to legal/tax obligations.

  • Session records: until deletion request or for a maximum of X years.
    Upon expiration, data will be securely deleted or anonymized.


6. Transfers and Providers

Service providers acting as data processors:

  • Zoom (video conferencing, USA, GDPR-equivalent standards).

  • Stripe / PayPal (payments, without storing complete banking details).

  • Mailchimp / SendGrid (communications delivery).
    All providers comply with confidentiality and security agreements.


7. Data Subject Rights

  • Access, update, rectify, and delete personal data.

  • Request proof of consent.

  • Be informed about the use of personal data.

  • Revoke consent and/or request deletion, unless restricted by legal obligation.

  • File a complaint with the Superintendence of Industry and Commerce after exhausting internal procedures.


8. Internal Procedures (Inquiries & Complaints)

  • Inquiries and requests: email to info@pjhypno.com, maximum 10 business days for a response.

  • Complaints: maximum 10 business days for resolution.
    If more time is required, the reason and a new date (up to 5 additional business days) will be provided.


9. Minors

Services are strictly for adults only. If it is discovered that a minor has provided data without legal guardian authorization, such data will be immediately deleted.


10. Security and Confidentiality

We implement technical measures (encryption, secure passwords) and organizational measures (restricted access, confidentiality agreements) to prevent unauthorized access, loss, or alteration of personal data.


11. Changes to This Policy

If substantial changes occur, especially regarding the processing of sensitive data or the purposes, data subjects will be notified at least 15 days in advance via email or website notice.


Paula Jiménez
Paula Jiménez Hypnotherapy

Guiding minds and nurturing well-being through compassionate and personalized therapy.
FREE EXPLORATORY SESSION

+57 310 379 3294

Copyright © 2025Paula Jiménez Hypnotherapy. All rights reserved.