Overview
We run a small educational publishing project focused on emotional stability practices described in general language. Personal data enters our systems when you volunteer it (forms, email, telephone), when payments are processed for optional services, or when technology logs create minimal technical traces as you load HTTPS pages.
We do not sell personal data as a line of business. Where analytics or marketing tags become relevant, they load only after consent through the cookie interface unless an exception applies under electronic communications rules for strictly necessary activities.
Nothing here replaces professional advice about health, safety, or legal disputes. Privacy questions stay separate from educational content; we respond through the contact channels listed under the controller section.
Controller and primary contact
The data controller is Detoxificationli, reachable at Aleksanterinkatu 13, 15110 Lahti, Finland. For privacy-specific correspondence, email online@detoxificationli.world or call +358 9 622 9930 during published office hours.
Please include enough context to identify your request (for example the email address used on a form) but avoid attaching highly sensitive documents unless we explicitly ask after a risk review. Identity checks may apply before we disclose or delete information.
Purposes and lawful bases
We rely on different legal grounds depending on the situation: performing a contract when you book a paid session, complying with law when invoices must be stored, consent when you activate optional cookies, and legitimate interests when we keep a minimal operational record of enquiries provided those interests are balanced against your rights.
Answering messages
Contract steps where you request a service; otherwise legitimate interest in replying to a voluntary enquiry, with opt-out of further contact when appropriate.
Accounting & tax
Legal obligation to retain certain commercial records under Finnish bookkeeping practice.
Optional measurement
Consent gathered through the cookie banner before non-essential statistics or advertising pixels load.
Security monitoring
Legitimate interest in detecting abuse, spam, or attempts to disrupt the site, using proportionate logs.
Categories of personal data
Identifiers include your name, email address, telephone number if given, billing identifiers on invoices, and any signature blocks you place in correspondence. Content data covers free-text messages, attachments you upload when permitted, and notes we create internally to continue a conversation thread.
Technical data includes Internet protocol addresses in truncated or short-lived form where feasible, user agent strings, approximate timing of page views, and cookie identifiers when used. Payment instruments are handled by regulated payment service providers; we generally see payment confirmations rather than full card numbers.
Uses, processors, and sharing
Personnel authorised under confidentiality obligations may access data when handling your request. We use service providers for hosting, email delivery, calendar tools, and accounting platforms. Written agreements require processors to follow documented instructions and assist with data subject rights.
Public authorities may compel disclosure in rare cases; we verify legal basis before complying when practicable. We do not publish your correspondence on marketing materials without separate written permission.
International transfers
When data leaves the European Economic Area, we rely on adequacy decisions where they exist, otherwise standard contractual clauses or other approved transfer tools, supplemented by practical risk assessments on the tools we control.
If a provider changes territory or subprocessors materially, we review contracts and update this statement or processor listings as appropriate. You may request a summary of categories of recipients relevant to your case.
Retention
Conversation threads tied to informal enquiries may be archived for up to twenty-four months unless a longer period is mandated by litigation, accounting, or your continued active relationship. Financial records follow statutory Finnish timelines. Security logs rotate according to a documented schedule balancing forensic utility against minimisation.
After retention expires, we delete or irreversibly anonymise information where feasible. Backup systems may lag slightly; deletion propagates with the next scheduled rotation window.
Security measures
Transport encryption via TLS protects web traffic. Access inside the organisation follows role separation. We patch infrastructure regularly, monitor authentication, and review incidents that could affect personal data, notifying supervisory authorities and individuals when the law requires.
No online system is without residual risk. We design flows to collect only what we need for the stated task and to avoid keeping sensitive commentary beyond its useful administrative life.
Your rights
Subject to conditions in the GDPR, you may request access, correction, deletion, restriction, data portability for structured machine-readable inputs you supplied, and objection to certain processing. Where consent was the only basis, withdrawal is available without undermining earlier lawful processing.
Automated decisions producing legal or similarly significant effects are not applied to your enquiries through this website. If that ever changes, we will publish a dedicated explanation and opt-out pathway before activation.
Supervisory authority
You may lodge a complaint with the Office of the Data Protection Ombudsman in Finland or, if you habitually reside elsewhere in the EU, with another competent supervisory authority under applicable rules.
Children
Materials here address adults capable of giving informed consent to data processing relevant to them. If you believe a minor’s data reached us without appropriate authority, notify us promptly so we can investigate and delete information that should not have been collected.
Changes to this policy
We revise this text when processing details or legal interpretations evolve. The effective line at the top updates accordingly when you load the page with JavaScript enabled; substantive edits may also be announced through the contact channel or a short notice on the home page when the change is significant.
Related documents: Cookie Policy, Terms of Use.