Privacy policy
This policy clearly explains how Kinetic Digital Solutions SL processes personal data related to Rhyvia, its website, forms and products.
Privacy verification and exercise of rights↗1. Data controller
KINETIC DIGITAL SOLUTIONS SL, tax ID B23957004, located at CALLE CARRERA DEL SABADO 13, 3F, ZARAGOZA, Spain, is the data controller. Brand and product: Rhyvia. Privacy and rights contact: info@kineticds.tech.
2. Scope
This policy applies to data collected through this website and its forms, and to processing connected with Rhyvia App and Rhyvia Coach where applicable. Product- or service-specific terms may supplement this information.
3. Data we process
We may process identification and contact data, enquiries and feedback, optional mini-survey answers, communication preferences, technical browsing data and consented analytics. Rhyvia products may also process account, activity, planning, training, nutrition, wellbeing, progress, communication and contracting data provided by users or their professionals.
4. Purposes
We process data to handle information requests; record and analyse feedback; provide, maintain and improve products or services; manage relationships with users and professionals; prevent incidents and protect security; comply with legal obligations; and measure website use when analytics has been authorised. We send marketing about products or services only with express consent.
5. Legal bases
Answering a request is based on the controller's legitimate interest and, where applicable, pre-contractual steps or performance of a contract. Marketing and non-essential analytics rely on consent, which may be withdrawn at any time without affecting prior lawful processing. Legal compliance relies on applicable law. Special-category data requires the applicable legal basis and, where required, explicit consent.
6. Optional marketing consent
The marketing checkbox is voluntary. Leaving it unchecked does not prevent submission or a response. Consent may be withdrawn by emailing info@kineticds.tech or using the unsubscribe method in each communication.
7. Retention
Enquiries and feedback are kept as long as needed to address and follow them up and then for applicable limitation periods. Customer data is kept during the contractual relationship and statutory periods. Consent-based data is kept until consent is withdrawn, subject to periods needed to address legal liabilities.
8. Recipients and processors
Necessary hosting, infrastructure, database, analytics, communications, support, security and professional-service providers may access data under appropriate contracts and duties. Data may also be disclosed to authorities or courts where legally required. We do not sell personal data.
9. International transfers
Where a provider processes data outside the European Economic Area, we use an adequacy decision, standard contractual clauses or another lawful safeguard. Details of applicable safeguards may be requested at info@kineticds.tech.
10. Your rights
You may exercise rights of access, rectification, erasure, portability, restriction, objection to processing and objection to automated decisions, and withdraw consent. Email info@kineticds.tech and provide sufficient identification. You may also complain to the Spanish Data Protection Agency (www.aepd.es).
11. Automated decisions
We will not make decisions producing legal or similarly significant effects based solely on automated processing unless a valid legal basis, prior information and required safeguards apply. Where relevant, you may request human intervention, express your view and challenge the decision.
12. Cookies and analytics
The website stores your consent preference. Non-essential analytics should activate only after acceptance. You may revisit your choice through the Cookies link in the footer. Provider, cookie and retention details must be kept current as tools are added.
13. Health and wellbeing data
Some Rhyvia features may involve health, habit or wellbeing information. Data minimisation, restricted access, enhanced safeguards and the relevant legal bases will apply. Users should not provide information that is unnecessary for the service.
14. Children
The products are not intended for children without the authorisation and safeguards required by applicable law. Minimum age, parental authorisation and relevant restrictions will be defined before access is enabled.
15. Security
We use technical and organisational measures appropriate to risk to protect data against loss, unauthorised access, alteration or disclosure. No system is completely infallible; safeguards are reviewed as the product, providers and risks evolve.
16. Changes and contact
We may update this policy when processing, products, providers or law change. The current version and update date will be published here. For privacy questions, email info@kineticds.tech.