Privacy Policy
Effective Date: April 9, 2025
Last Updated: April 9, 2025
Your privacy is important to us at Blood Pressure Hub ("we", "us", "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, Blood Pressure Hub (the "Site"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.
1. Data Controller
The Data Controller responsible for your personal data is Blood Pressure Hub. You can contact us regarding data protection matters at info@bloodpressurehub.com.
2. Information We Collect
We may collect information about you in a variety of ways. The information we may collect on the Site includes:
- Personal Data: Personally identifiable information, such as your email address, which you voluntarily provide to us when you subscribe to our newsletter or contact us. You are under no obligation to provide us with personal data of any kind, however your refusal to do so may prevent you from using certain features of the Site, such as receiving newsletters.
- Derivative Data: Information our servers automatically collect when you access the Site, such as your IP address, your browser type, your operating system, your access times, and the pages you have viewed directly before and after accessing the Site. If you are using our mobile application, this information may also include your device name and type, your operating system, your phone number, your country, your likes and replies to a post, and other interactions with the application and other users via server log files, as well as any other information you choose to provide. (Note: Tailor this section based on actual data collected, especially if using analytics).
3. Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: We process your email address to send you newsletters based on your explicit consent, provided via a double opt-in mechanism when you subscribe. You can withdraw this consent at any time by using the unsubscribe link in our emails.
- Legitimate Interests: We may process non-personal information (like anonymized analytics data) based on our legitimate interest to operate and improve the Site. Where required by law (e.g., for certain cookies), we will rely on your consent.
4. How We Use Your Information
Having accurate information about you permits us to provide you with a smooth, efficient, and customized experience. Specifically, we may use information collected about you via the Site to:
- Send you newsletters and updates you have opted-in to receive.
- Respond to your comments, inquiries, and provide user support.
- Monitor and analyze usage and trends to improve your experience with the Site.
- Prevent fraudulent transactions, monitor against theft, and protect against criminal activity.
5. Disclosure of Your Information
We do not sell or rent your personal data. We may share information we have collected about you in certain situations. Your information may be disclosed as follows:
- By Law or to Protect Rights: If we believe the release of information about you is necessary to respond to legal process, to investigate or remedy potential violations of our policies, or to protect the rights, property, and safety of others, we may share your information as permitted or required by any applicable law, rule, or regulation.
- Third-Party Service Providers: We may share your information with third parties that perform services for us or on our behalf, including data storage, email delivery, hosting services, and customer service. We use services like:
- Supabase for database hosting.
- SendGrid for email delivery.
6. Cookies and Tracking Technologies
We use cookies and similar tracking technologies (like web beacons and pixels) to operate and improve the Site, enhance your experience, and analyze traffic. Cookies are small data files stored on your device.
You can manage your cookie preferences at any time through our Cookie Consent Banner (available on your first visit and typically accessible via a link in the site footer) and through your browser settings. Note that blocking strictly necessary cookies may impact site functionality.
Types of Cookies We May Use
- Strictly Necessary Cookies: These cookies are essential for the Site to function correctly and cannot be switched off in our systems. They are usually only set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in, or filling in forms. They do not store any personally identifiable information. We do not require your consent for these cookies, but we inform you about them.
(Example: Cookies managing your cookie consent choice itself) - Performance Cookies (Analytics): These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our Site. They help us know which pages are the most and least popular and see how visitors move around the Site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies, we will not know when you have visited our site.
(Examples: Google Analytics cookies - if implemented)
Consent Required: Yes. We will only set these cookies if you provide your explicit consent via our Cookie Consent Banner. - Functionality Cookies (Preferences): These cookies enable the Site to provide enhanced functionality and personalisation. They may be set by us or by third-party providers whose services we have added to our pages. They might remember choices you make, such as your username (if applicable), language, or region.
(Example: A cookie remembering your dark/light mode preference - if implemented)
Consent Required: Yes. We will only set these cookies if you provide your explicit consent via our Cookie Consent Banner. - Targeting Cookies (Advertising): These cookies may be set through our site by our advertising partners (if any). They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information but are based on uniquely identifying your browser and internet device.
(Examples: Facebook Pixel, Google Ads cookies - if implemented)
Consent Required: Yes. We will only set these cookies if you provide your explicit consent via our Cookie Consent Banner. Given the nature of a health blog, we will be particularly cautious about using targeting cookies.
Your Consent Choices
Upon your first visit to our Site, you will be presented with a Cookie Consent Banner. This banner allows you to:
- Accept all cookies.
- Reject all non-essential cookies.
- Customize your preferences for different categories of non-essential cookies.
You can change your mind and modify your consent choices at any time, typically via a link or icon available in the site footer or through your browser settings. For more detailed information about the specific cookies we use, their purpose, and duration, please refer to our dedicated Cookie Policy [TODO: Create and link a separate Cookie Policy page or expand this section further with specific cookie details once known].
7. Data Security
We use administrative, technical, and physical security measures to help protect your personal information. While we have taken reasonable steps to secure the personal information you provide to us, please be aware that despite our efforts, no security measures are perfect or impenetrable, and no method of data transmission can be guaranteed against any interception or other type of misuse.
8. Data Retention
We will only retain your personal data for as long as necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. For newsletter subscriptions, we retain your email address as long as you remain subscribed. If you unsubscribe, we may retain certain information for a limited period as necessary to comply with legal obligations or to prevent re-subscription abuse, after which it will be securely deleted.
9. International Transfers
Your information, including personal data, may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ from those from your jurisdiction. We utilize third-party services (like Supabase and SendGrid) which may process data globally. We rely on appropriate safeguards, such as Standard Contractual Clauses approved by the European Commission, for such transfers where required by applicable law.
10. Your Data Protection Rights (GDPR)
If you are a resident of the European Economic Area (EEA) or the UK, you have certain data protection rights. We aim to take reasonable steps to allow you to correct, amend, delete, or limit the use of your Personal Data. These rights include:
- The right to access: You have the right to request copies of your personal data we hold.
- The right to rectification: You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
- The right to erasure (Right to be forgotten): You have the right to request that we erase your personal data, under certain conditions.
- The right to restrict processing: You have the right to request that we restrict the processing of your personal data, under certain conditions.
- The right to object to processing: You have the right to object to our processing of your personal data, under certain conditions.
- The right to data portability: You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
- The right to withdraw consent: You have the right to withdraw your consent at any time where we relied on your consent to process your personal information (e.g., for newsletters via the unsubscribe link).
- The right to lodge a complaint: You have the right to complain to a Data Protection Authority about our collection and use of your Personal Data.
If you wish to exercise any of these rights, please contact us at info@bloodpressurehub.com. We may need to request specific information from you to help us confirm your identity before responding to your request.
11. Children's Privacy
The Site is not intended for use by individuals under the age of 16 (or the applicable age of consent in your jurisdiction). We do not knowingly collect personal information from children. If we become aware that we have collected Personal Data from children without verification of parental consent, we take steps to remove that information from our servers.
12. Changes to This Policy
We reserve the right to make changes to this Privacy Policy at any time and for any reason. We will alert you about any changes by updating the "Last Updated" date of this Privacy Policy. You are encouraged to periodically review this Privacy Policy to stay informed of updates.
13. Contact Us
If you have questions or comments about this Privacy Policy, please contact us at: info@bloodpressurehub.com.