Accueil

Privacy Policy (GDPR)

Elevate Inside is committed to protecting your personal data. This policy explains what data we collect, why, and your rights under the EU General Data Protection Regulation (EU) 2016/679.

1. Data controller

Elevate Inside, Lanzarote, Îles Canaries, Espagne. Contact: info@elevate-inside.com.

2. Data collected

Via contact and booking forms: name, email, phone (optional), service of interest, dates, message, timezone.

Via the member area (if you create an account): first name, email, preferred language, check-in data (mood, energy, sleep, hydration, notes).

Technical data: connection logs and navigation data strictly necessary to operate the site.

3. Purposes & legal bases

Respond to your requests and manage bookings — performance of a contract or pre-contractual measures (Art. 6.1.b GDPR).

Send notification emails to our team — legitimate interest in processing your request (Art. 6.1.f).

Manage your member account and personalize the experience — contract (Art. 6.1.b) and consent (Art. 6.1.a).

Compliance with legal obligations (accounting, tax) — Art. 6.1.c.

4. Recipients

Data is accessible only to Elevate Inside founders and our technical processors (hosting, database, email delivery). No data is sold.

Main processors: Lovable Cloud (hosting and database), our transactional email provider (notify.elevate-inside.com). All offer adequate GDPR safeguards.

5. Transfers outside the EU

If processors handle data outside the EU, transfers are covered by the European Commission's Standard Contractual Clauses or an equivalent mechanism.

6. Retention

Contact inquiries: 3 years from last exchange.

Confirmed bookings: 10 years (accounting obligations).

Member account: as long as active, then deletion within 12 months of inactivity or upon request.

7. Your rights

You have rights of access, rectification, erasure, restriction, objection, portability, and the right to withdraw consent at any time.

To exercise your rights: info@elevate-inside.com. You may also lodge a complaint with the competent supervisory authority (in Spain: AEPD — aepd.es).

8. Cookies

The site uses only strictly necessary cookies (session, language preference). No advertising or third-party tracking cookies are placed without your consent.

9. Security

We implement appropriate technical and organizational measures (HTTPS encryption, access control, backups) to protect your data from loss, unauthorized access, or disclosure.

10. Changes

This policy may be updated. The last-updated date appears at the bottom of the page.

Dernière mise à jour : 11 mai 2026