Privacy Policy & Cookie Policy
Last updated: May 2026
1. Data Controller
The data controller responsible for your personal data is:
Dr. Heeyeon Amy Chu, operating as Heeyeon Counseling
Turin, Italy
VAT No. 13412120019
contact@heecounseling.com
2. Introduction
This Privacy Policy explains how Heeyeon Counseling collects, uses, and protects your personal data when you visit heecounseling.com or use our contact and booking forms. We are committed to protecting your privacy and complying with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and applicable Italian data protection law (D.lgs. 196/2003, as amended by D.lgs. 101/2018).
3. Data We Collect
When you submit a session booking or free consultation request, we collect the following information:
- Full name
- Email address
- Current location (city and country)
- Time zone
- Preferred appointment times
- Type of support you are seeking
- Optional: a brief description of what brings you to counseling
We do not collect sensitive health data through our website forms. Any clinical information discussed in sessions is governed by a separate confidentiality agreement.
4. Purpose and Legal Basis
We use your data exclusively to:
- Respond to your booking or consultation request
- Schedule and confirm appointments
- Communicate with you about your sessions
Legal basis: Processing is based on your explicit consent (Art. 6(1)(a) GDPR), which you provide by submitting the form and checking the consent boxes. For subsequent email correspondence, we also rely on pre-contractual measures (Art. 6(1)(b) GDPR).
5. Data Retention
Your enquiry data is retained for the time necessary to process your request. If you become a client, data is kept for the duration of our professional relationship and for a reasonable period thereafter (up to 10 years), in line with applicable Italian professional obligations. If no appointment follows an enquiry, data is deleted within 12 months.
6. Data Sharing
We do not sell, rent, or share your personal data with third parties, except:
- Email delivery: form submissions are delivered to our inbox via our web hosting provider's mail server, located within the EU. No data is stored by third-party services.
- Legal obligation: we may disclose data if required by law or a competent authority.
7. International Transfers
Our website and mail server are hosted within the European Union. We do not transfer your personal data outside the EU/EEA.
8. Cookie Policy
This website uses no marketing, tracking, or analytics cookies. The site may use browser local storage (localStorage) solely to remember interface preferences such as language selection. This is local to your device and is not transmitted to any third party.
Because this website does not use cookies that require consent under EU law, no cookie consent banner is displayed.
If you use our contact forms, your browser may temporarily store form data as part of its normal functioning. This data remains entirely on your device.
9. Your Rights (GDPR)
Under the GDPR, you have the right to:
- Access your personal data (Art. 15)
- Rectification of inaccurate data (Art. 16)
- Erasure ("right to be forgotten") (Art. 17)
- Restriction of processing (Art. 18)
- Data portability (Art. 20)
- Object to processing (Art. 21)
- Withdraw consent at any time, without affecting the lawfulness of prior processing (Art. 7(3))
To exercise any of these rights, contact us at contact@heecounseling.com. We will respond within 30 days.
10. Right to Complain
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Italian supervisory authority:
Garante per la protezione dei dati personali
Piazza Venezia 11, 00187 Roma, Italy
www.garanteprivacy.it
urp@gpdp.it
11. Changes to This Policy
We may update this policy periodically. Changes will be published on this page with an updated date. We encourage you to review this page from time to time.
12. Contact
For any questions about this privacy policy:
contact@heecounseling.com