Privacy Policy

1. Who is responsible for your personal data?

In this privacy policy, we describe how we collect and process your personal data when:

  • you visit our website;
  • you use our services;
  • you apply for a position with us;
  • we receive your personal data for other purposes within the scope of our business activities.

Contact Information
AYUN AG 
Bahnhofplatz 
CH-6300 Zug 
datenschutz@ayun.ch 

2. What personal data do we process?

2.1 When you visit our website

When you visit our website, the server automatically logs general technical information. This data includes, for example, the IP address and operating system of your device, the date and time of your visit, the website you came from, and the type of browser you use to access our website.

If you contact us through the website (e.g., through the booking tool, WhatsApp, email, or any other means of communication made available through the website), we process your contact details and other personal data you provide us with, as well as, if applicable, technical data that may accrue during the use of the respective means of communication.

We use cookies and other tracking technologies to ensure the functionality of our website, to make it more user-friendly, to evaluate the use of our website and to collect information to improve our products and services, and for marketing purposes. For more information see our Cookie Policy

2.2 When you use our services

When you use our services (e.g., book and attend appointments, visit us for a suitability assessment, treatment or check-up, etc.), we process the following personal data about you:

  • Identification data (e.g., name, ID, etc.);
  • Contact details (e.g., email, address, phone number, etc.);
  • Health data (e.g., family history, general health, medications taken, etc.);
  • Communication content;
  • Payment data;
  • Other relevant personal data you provide to us;
  • Technical data, if the process takes place through our website (including integrated services) (see above, "When you visit our website").

Health data is considered sensitive personal data under data protection laws, subject to a higher level of protection. For this reason, you will find additional information in this privacy policy on how we handle and protect your health data.

2.3 When you apply for a position with us

When you apply for a position with us, we collect and process the necessary personal data to review your application and conduct the application process. This includes, in particular:

  • Identification data (name, first name, etc.);
  • Contact details (e.g., email, address, phone number, etc.);
  • Communication content;
  • Information about your professional background and qualifications;
  • The content of your application;
  • Other data necessary for the review of your application.

You submit most of this data directly to us as part of your application. In addition, we process data from other sources, in particular from references (if you have consented to references being obtained), as well as from publicly accessible sources (e.g. professional social networks, the internet).

2.4 When we receive your personal data for other purposes within the scope of our business activities

During our business activities, we process personal data of other individuals, such as our contacts at business partners, suppliers, and service providers, or persons who are interested in our services. The personal data we process in this context primarily includes identification data, contact details, and communication content, as well as other relevant personal data.

We receive this data either directly from you or from other sources, such as your coworkers, our business partners and other contacts, as well as from publicly available sources (e.g. social networks).

3. For what purposes do we process your personal data?

We process your personal data:

  • to prepare, conclude, fulfill, and enforce contracts within the scope of our business activities. This includes contracts related to our services: in this context, we also process your health data, for example, for the preparation, execution, and follow-up of treatments.
  • based on and within the scope of your consent, if applicable. You can revoke your consent at any time.
  • to comply with legal obligations (e.g., retention of patient records).
  • as part of our interests to communicate with you and third parties (even outside the preparation or conclusion of a contract), to provide the website, to optimize your user experience, to maintain and potentially expand our business relationship with you, to improve, expand, and market our offerings, to ensure IT security and data protection, and to enforce, defend, or avert legal claims.

When you use our services, we may create evaluations and statistics based on your data to improve, expand, and market our offerings. Whenever possible, your personal data will be anonymized before evaluation.

We may contact you to invite you to rate our services or to seek feedback on a rating you have submitted. Submitting a review or feedback on it is always voluntary.

Based on our interest in informing individuals interested in our offerings about new developments, we can send you marketing information (e.g., via a newsletter). These marketing emails may contain visible or invisible images. When you download these images from the server, we can see whether and when you have opened the email. This allows us to better understand how you use our offerings and customize them for you. You can turn off this feature in your email program. You also have the option to opt out of receiving our marketing emails at any time.

4. When do we disclose your personal data to third parties?

To fulfill a contract, protect our interests, or comply with legal requirements, it may be necessary for us to disclose your personal data to third parties. This includes, in particular:

  • our IT service providers, manufacturers of diagnostic and treatment devices with cloud functions, as well as third-party providers in the areas of payment transactions, billing, collection, consulting, sales, and marketing;
  • third parties to whom we transfer our company or parts thereof, or with whom we merge;
  • cases where disclosure is necessary to (i) comply with legal obligations, (ii) ensure IT security and data protection, or (iii) enforce, defend, or avert legal claims.

In this context, we also transfer personal data abroad. In particular, we use IT service providers with data locations in the EU or the EEA. We limit the transfer of personal data outside Switzerland, the EU, and the EEA as far as possible, but it cannot be entirely avoided. If the respective recipient country does not have a level of data protection recognized by Switzerland, we use standard contractual clauses to ensure adequate data protection, where necessary and possible supplemented by additional security measures.

We do not sell or rent personal data to third parties.

5. Data security

We protect your personal data with appropriate technical and organizational security measures against accidental, unlawful, or unauthorized manipulation, deletion, alteration, access, disclosure, use, or loss.

In particular:

  • We have a state-of-the-art IT infrastructure.
  • Our employees only have access to your personal data to the extent necessary or reasonable for the fulfillment of their tasks.

6. How long do we retain your personal data?

We store your personal data only for as long as and to the extent necessary for the purposes described or for legal reasons.

For legal reasons, data related to analyses and treatments (patient records) is retained for 20 years.

7. What rights do you have in connection with your personal data?

If provided for and subject to the conditions of the applicable data protection laws, you have the following rights in connection with your personal data:

  • Right to access your personal data;
  • Right to have inaccurate personal data rectified;
  • Right to erasure ("right to be forgotten");
  • Right to restrict the processing of your personal data;
  • Right to data portability (transfer of your personal data to you or a third party);
  • Right to object to the processing of your personal data.

Please note that exceptions apply to these rights. In particular, we may be obliged or entitled to further process your personal data to fulfill a contract, to protect our legitimate interests such as enforcing, defending, or averting legal claims, or to comply with legal obligations. In these cases, we can or must reject certain requests or comply with them only to a limited extent.

8. Complaints

If you are not satisfied with how we process your personal data, you have the right to file a complaint with the relevant supervisory authority (Federal Data Protection and Information Commissioner, FDPIC).

Please contact us first before filing a complaint. This way, we can try to resolve your issue directly. The easiest way to contact us is by email at datenschutz@ayun.ch.

9. Links to other websites

Our website may link to third-party websites that are not operated or controlled by us. We are not responsible for whether and how these third parties comply with data protection regulations.

10. Links to other websites

We may modify this privacy policy from time to time. New versions become effective for you as soon as we have notified you by publishing them on our website.

11. Hosting

This website is hosted via the Content Delivery Network (CDN) of Webflow. The provider is Webflow, Inc, 398 11th Street, 2nd Floor, San Francisco, CA 94103, USA (hereinafter: Webflow). Webflow is a tool for creating and hosting websites. A content delivery network is a network of spatially distributed, possibly interconnected servers. The server that is closest to the respective user of the website is always used. The CDN used here includes servers in North America and parts of Europe. Webflow hosts our website using the content delivery networks of Fastly Inc. (Fastly Inc. 475, Brannan St. #300, San Francisco, CA 94107) and Amazon Web Services, Inc. (Amazon Web Services, Inc., 410 Terry Avenue North, Seattle WA 98109), to which Cloudfront also belongs. To ensure cross-browser compatibility so that the modern functionality of Webflow pages is also available in older browsers that do not natively support it, Webflow includes JavaScript using the Cloudflare CDN (Cloudflare, Inc., 101 Townsend St., San Francisco, CA 94107). When you visit our website, Webflow collects the above data. Data transfer to the USA is based on the standard contractual clauses of the EU Commission, and Webflow is also certified via the Data Privacy Framework. You can find more information about data processing by Webflow here: EU & Swiss Privacy Policy | Webflow

12. Third-party Services

In addition to the data we collect and process directly, we utilize certain third-party services to enhance our website's functionality, analyze user behavior, and facilitate transactions. These services may also collect and process personal data according to their respective privacy policies. The third-party services we currently use include:

  • Google Analytics: We use Google Analytics to analyze website traffic and user behavior. Google Analytics may collect various types of data, including IP addresses, browser types, device information, and interaction data. For more information, please review Google's Privacy Policy.
  • Google Tag Manager: Google Tag Manager helps manage website tags, including analytics and marketing tags. Google Tag Manager may collect data about your interactions with our website. Please refer to Google's Privacy Policy for details.
  • Hotjar: Hotjar is used to understand user behavior on our website through heatmaps, session recordings, and surveys. Hotjar may collect data such as IP addresses, device information, and interaction data. For more information, please review Hotjar's Privacy Policy.
  • HubSpot: We utilize HubSpot for customer relationship management, marketing automation, and analytics. HubSpot may collect personal data such as contact information, website activity, and interactions with our marketing content. Please refer to HubSpot's Privacy Policy for details.
  • Stripe: Stripe is our payment processing provider, facilitating secure online transactions. When you make payments through our website, Stripe may collect personal and financial information as necessary to process transactions. Please review Stripe's Privacy Policy for more information.

Passionate about health? Join our team