LONGEVITY ACADEMY PRIVACY POLICY 

I. INTRODUCTION  

This Privacy Policy describes how Longevity Center Sp. z o.o., with its registered office at Belwederska 9, 00-761 Warszawa, Poland (“Company”, “we”, “us”, “our”), collects, processes, stores, and protects personal data in connection with the Longevity Academy platform available at longevity-academy.com (the “Platform”). We are committed to ensuring that your personal data is processed lawfully, fairly, and transparently in accordance with: Regulation (EU) 2016/679 (GDPR) Polish data protection laws Applicable international privacy standards This Privacy Policy applies to all users of the Platform, including individual consumers and business clients. 

II. DATA CONTROLLER 

The Data Controller responsible for your personal data is: 
Longevity Center Sp. z o.o. 
Belwederska 9 
00-761 Warszawa, Poland 
Email: info@longevity-academy.com 

III. CATEGORIES OF PERSONAL DATA WE COLLECT 

 1, Account Registration Data. When creating an Account, we may collect: 
  •     First name and last name 
  •     Email address 
  •     Password (encrypted) 
  •     Billing country 
  •     Account preferences 

2. Social Login Data (Single Sign-On). If you register or sign in using: 
  •     Facebook 
  •     Twitter (X) 
  •     LinkedIn 
  •     Google 
  •     Apple 

3. We may receive limited information depending on your privacy settings with that provider, including: 
  •     Name 
  •     Email address 
  •     Profile identifier 
  •     Profile picture (if authorized) 

We do not receive your password from third-party providers. 
Your relationship with such providers is governed by their respective privacy policies. 
4. Payment and Transaction Data Payments are processed by third-party providers (e.g., Shopify, Stripe). 
We may collect: 
  •     Transaction ID 
  •     Date and time of transaction 
  •     Amount 
  •     Currency 
  •     Billing country 

We do not store full payment card numbers. 
5. Certification and Course Data. If you participate in Longevity Clinic Certification or courses, we may process: 
  •     Course enrollment records 
  •     Assessment results 
  •     Completion status 
  •     Issued certificates 
  •     Academic progress 

6. Usage and Technical Data. When you access the Platform, we may collect: 
  •     IP address 
  •     Browser type 
  •     Device information 
  •     Operating system 
  •     Session duration 
  •     Pages visited 
  •     Referring URLs 

7. Communication Data. When you contact us or use Platform communications:
  •     Email correspondence 
  •     Support requests 
  •     Community posts 
  •     Webinar registrations 
  •     Feedback submissions 

8. Enterprise Client Data. For corporate users, we may process: 
  •     Company name 
  •     Contact person name 
  •     Business email 
  •     Professional role 
  •     Learning progress reports (for authorized users) 

IV. PURPOSES AND LEGAL BASIS FOR PROCESSING 

We process personal data for the following purposes: 
1. Performance of Contract (Art. 6(1)(b) GDPR) 
  •     Creating and managing Accounts 
  •     Providing access to courses and certifications 
  •     Processing payments 
  •     Issuing certificates 
  •     Providing customer support

2. Legal Obligations (Art. 6(1)(c) GDPR)    
  • Tax and accounting compliance     
  • Fraud prevention     
  • Record keeping obligations  

3. Legitimate Interests of the Controller (Art. 6(1)(f) GDPR) 
  •     Platform security 
  •     Fraud detection 
  •     Improving Services 
  •     Enforcing Terms 
  •     Preventing abuse 
  •     Protecting legal claims 
  •     Maintaining good relationships with our customers and clients 

4. Consent (Art. 6(1)(a) GDPR) 
  •     Marketing communications 
  •     Newsletter subscriptions 
  •     Optional cookies 
  •     Social media advertising 
  •     Participation in surveys 

You may withdraw consent at any time. 

V. COOKIES AND TRACKING TECHNOLOGIES 

 1. We use: 
  •     Essential cookies (necessary for Platform operation) 
  •     Analytics cookies 
  •     Functional cookies 
  •     Marketing cookies (with consent) 

 2. You may manage cookie preferences via your browser or cookie banner. 

VI. DATA RETENTION 

We retain personal data: 
  •     For the duration of your Account 
  •     For up to 6 years for accounting/tax compliance (or longer if required by law) 
  •     For the duration necessary to defend legal claims 

Inactive accounts may be deleted after a prolonged period of inactivity. 

VII. DATA SHARING 

When required by law, we may share personal data with: 
1. Payment Processors: Shopify, Stripe, or other providers. 
2. Hosting Providers: Cloud infrastructure providers (EU-based or GDPR-compliant). 
3. IT Service Providers: Platform maintenance and development contractors. 
4. Email and Communication Providers 
5. Analytics Providers 
6. Legal Authorities 
We do not sell personal data. 

VIII. INTERNATIONAL TRANSFERS 

Where personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards, such as: 
  •     Standard Contractual Clauses (SCCs) 
  •     Adequacy decisions 
  •     Certified service providers 

IX. DATA SUBJECT RIGHTS 

Under GDPR, you have the right to: 
  •     Access your personal data 
  •     Rectify inaccurate data 
  •     Erase data (“Right to be Forgotten”) 
  •     Restrict processing 
  •     Object to processing 
  •     Data portability 
  •     Withdraw consent 
  •     Lodge a complaint with the Polish Data Protection Authority (UODO) 

Requests may be submitted to: info@longevity-academy.com 
We will respond within one month. 

X. ACCOUNT DELETION 

You may request deletion of your Account. 
Deletion does not automatically remove data required for: 
  •     Legal compliance 
  •     Tax obligations 
  •     Fraud prevention 
  •     Ongoing disputes 

XI. AUTOMATED DECISION-MAKING 

We do not use automated decision-making that produces legal effects. 
If algorithmic ranking or personalization is introduced, you may request human intervention. 

XII. CHILDREN’S PRIVACY 

The Platform is not intended for children under 13. 
Users aged 13–17 must use the Platform under parental supervision. 
We do not knowingly collect data from children under 13. 

XIII. SECURITY MEASURES 

We implement: 
  •     SSL encryption 
  •     Secure payment gateways 
  •     Access controls 
  •     Role-based authorization 
  •     Regular system monitoring 

However, no system guarantees absolute security. 

XIV. DATA BREACH NOTIFICATION 

In case of a personal data breach likely to result in high risk to your rights, we will notify: 
  •     The competent supervisory authority 
  •     Affected users 

Without undue delay as required by GDPR. 

XV. CHANGES TO THIS POLICY 

We may update this Privacy Policy from time to time. 
Material changes will be communicated via: 
  •     Website notice 
  •     Email notification (where appropriate) 

XVI. CONTACT 

Longevity Center Sp. z o.o. 
Belwederska 9 
00-761 Warszawa, Poland 
Email: info@longevity-academy.co