Privacy Policy

Last updated: May 7, 2025

1. Data Controller

The owner and data controller of this website and app is IKI Health Group S.L. (hereinafter the "Service"), with address at Plaza Progrés, number 8, CP 07570, Artá, Balearic Islands, Spain.

Email: hello@iki.health
NIF: B72819360

1.1 Definitions

For greater clarity in this policy, we make the following distinction:

Simply accessing the website attributes the condition of "Visitor", while registering on our platform or application attributes the condition of "User". By registering, you fully accept these Terms of Use and Privacy and our Cookie Policy.

1.2 Acceptance

The acceptance of the Terms of Use and Privacy of the Service is a necessary condition for the use of our website.

These Terms of Use and Privacy regulate the collection, processing and use of your personal and non-personal information as a user of the Service, as of the effective date that appears in the header. Likewise, the conditions of use of the website and its functions are indicated.

To process your personal data, the Service complies with current European legislation, particularly the General Data Protection Regulation (GDPR) (EU) 2016/679, as well as the Spanish Organic Law 3/2018, of December 5, on the Protection of Personal Data and guarantee of digital rights and other applicable regulations.

2. Description and Use of the Service

The Service is a tool aimed at improving the efficiency of therapists in their daily consultations through technology. Through the Service you will be able to manage your clients with the tools and monitoring system designed by our team of professionals.

Currently, the Service primarily operates via our website. While we reference mobile applications in this policy, some features or collection methods mentioned may not be fully implemented at this time. This policy describes both current practices and anticipated functionality as we continue to develop our service.

The Service can be used by anyone who accesses it directly as a professional or through the recommendation of a healthcare professional, if you are a patient. In these cases, users who use the Service through a link provided by their therapist must accept that their data is shared only with their therapist so that they can monitor the evolution of the user.

In any case, the user knows and accepts that the Service and all the content and information contained in it are for informational purposes only and do not constitute professional or personalized medical diagnosis or treatment.

The Service only allows registered users to access global and general exercise and habit recommendations (for example, recipes) that may be compatible with their needs based on the answers that have been provided, as well as on the available health literature.

Accordingly, the user understands and accepts that if he needs healthcare, only his doctor or other healthcare provider can help him. You should not change your treatment or care plan, medication or therapy based on information, advice or materials you receive through the Service or from our employees.

3. External Links

The website may link to other websites.

However, we do not exercise any control over these sites or their contents, which are actually subject to their own terms and conditions. Nor do we assume any association or responsibility for them, nor do we guarantee their technical availability, quality, reliability, accuracy or veracity.

4. Intellectual and Industrial Property

The content and information on the Service (including, but not limited to, trademarks, logos, data, text, images, or computer code), as well as any hardware or software used to provide such content and information, are owned by the Service or used by it with the corresponding authorizations.

For this reason and by virtue of the provisions of national and European regulations on intellectual property, the modification, reproduction, duplication, copying, distribution, sale, resale and other forms of exploitation for commercial or equivalent purposes of the Service and its content are prohibited.

For any other use of the content of the Service you need, prior and in writing, our consent or, as the case may be, that of the authors of the content.

5. User Content

You can contribute to the Service by sending us a message to our email address and through the contact forms available on the website or app (hereinafter "Content").

We can use your Content in different ways, such as: display it on the website, reformat it, translate it into other languages, edit it for clarity, correct errors, promote it or distribute it, according to the license indicated in the previous section.

This means that the content remains yours, but the Service, thanks to that use license, can: a) use, reproduce, modify, adapt, translate, distribute and publish the Content, create derivative works from it, display it and show it throughout the world, by any known means and for any legitimate purpose; and b) use the name you submit in connection with that Content.

However, the Service reserves the right not to publish content or information that is false or contrary to the rights of third parties.

5.1 For Therapists

6. Age

Regarding the use of the web, you declare that you are of legal age and that you have the necessary legal capacity to be bound by this agreement and use the Service in accordance with its terms and conditions, which you fully understand and acknowledge.

In addition, you affirm that you have the consent and/or legal authorization of the third parties whose data and photographs you share through the web, especially in the case of minors.

You declare that all the information you provide to access the Service, before and during use, is true, complete and accurate.

7. Data Protection

7.1 Information Collected

The personal and non-personal information collected will change depending on whether you are a Visitor or User, and based on your use of the website and its features.

The personal and non-personal information collected will reach us in four ways:

  1. The one automatically collected
  2. The one voluntarily provided to us
  3. The one provided by third parties
  4. Application-specific data

7.1.1 Data Collected Automatically (applicable to Visitors and Users)

This information will consist of:

In any case, you can disable Google Analytics cookies from here.

7.1.2 Data Provided Voluntarily

For Visitors, this information will consist of:

For Users (in addition to the above), it will also include:

7.1.3 Those Provided by Third Parties

This information will consist of:

7.1.4 Application-Specific Data (applicable only to Users)

When using our applications, we collect and process health-related data including:

This health data is collected with the primary purpose of displaying it back to you and your healthcare providers through our user interface. We store this information securely in our database to enable historical tracking and progress monitoring.

Special note regarding health data: As health data is considered a special category of personal data under GDPR, we take additional measures to protect this information. By using our service, you explicitly consent to our collection and processing of your health data for the specific purposes outlined in this policy. We are working to implement more granular consent mechanisms in future updates of our application.

7.2 Rights

Both Visitors and Users have the rights detailed below, although the scope of these may vary depending on the volume and type of data processed:

We inform you that the completion of the forms is voluntary. However, if you do not fill in the required fields (marked with a required or asterisk) the use of some functions of the site will not be possible or will be limited.

The personal data that you provide us will be incorporated and will be processed in the files owned by the Service, in order to be able to attend to your requests.

In accordance with the GDPR and Spanish data protection regulations, you can exercise the following rights:

Important Note Regarding Consent: For Visitors, consent will primarily be requested for the use of non-essential cookies and sending commercial communications. For Users, additional explicit consent will be requested for the processing of special categories of data (such as health data) during the registration process. At present, acceptance of our Terms and Privacy Policy may be indicated through a single action (such as clicking "Sign Up" or similar buttons) on our platforms. We are working to implement more granular consent options, especially for processing special categories of data. Until such implementation is complete, by registering as a User, you acknowledge that you have read and agree to this Privacy Policy and the processing activities described herein.

You can exercise these rights at any time by email addressed to: hello@iki.health or to the postal address: Plaza Progrés, number 8, CP 07570, Artá, Balearic Islands, Spain.

In both cases you must identify yourself with your name and surname, and perhaps with a copy of your national ID or ID, if necessary.

In the event that you have granted consent for a specific purpose, you have the right to withdraw consent at any time, without affecting the legality of the treatment based on the consent prior to its withdrawal.

In addition, if you consider that there is a problem with the way in which we are handling your data, you can direct your claims to the corresponding data protection authority, in this case the Spanish Data Protection Agency (www.aepd.es).

7.3 Use of Data

The Service will use the data collected for:

For Visitors:

For Users (in addition to the above):

Likewise, the Service may use the personal and non-personal information of users in the form of aggregated and anonymous data to display it to third parties, for example for the preparation of a final report after the testing phase. You may also share statistics and demographic information about users and their use of the Service with third parties. None of this will allow those third parties to personally identify you. You accept and understand that some of this aggregated and anonymous data could be used in the future for the training of artificial intelligence models. The Service does not use automated individual decisions that produce legal effects on you or similarly significantly affect you.

7.3.1 In Emails and Contact Forms

The website has TLS encryption that allows the user to securely send their personal data through standard contact forms. The personal data collected will be subject to automated processing and incorporated into the corresponding record of processing activities of which the Service is the data controller.

In that sense:

7.3.2 On Social Networks

We have profiles on some of the main social networks on the Internet, the Service being responsible for the processing in relation to the data published on them (for example, photos uploaded by the Service in which people's faces appear).

This data will be processed according to the social network corporate profiles. Therefore, when the law does not prohibit it, we can inform our followers by any means that the social network allows about their activities or offers, as well as provide a personalized customer service.

In no case do we extract data from social networks, unless the user's consent to do so is obtained promptly and expressly.

When, due to the very nature of social networks, exercising your rights depends on modifying your profile, we will help and advise you to the best of our ability.

7.4 Conservation of Data

The following indicates how long the data processed by the Service is stored:

We implement periodic review processes of the stored data to ensure that it is not kept longer than necessary. We use automated tools to ensure the deletion or anonymization of data when the established deadlines are reached.

7.5 Security of Health Data

We implement specific security measures for health data including:

We do not use your health data for automated decision-making, profiling, or any secondary purposes beyond displaying it to you and your authorized healthcare providers.

7.6 International Data Transfers

Some of our service providers may be located outside the European Economic Area (EEE). We work to ensure that any international transfers comply with applicable data protection regulations. Currently, our data processing activities primarily take place within the European Union, with limited transfers outside this area.

Should our practices regarding international data transfers change significantly, we will update this policy accordingly.

8. Service Providers and Others

There are third parties that manage part of the Service.

The Service requires them to comply with these Terms of Use and Privacy in what is applicable to them and they must also have their own. However, the Service will not be responsible for compliance with such policy.

Under some circumstances, the Service may share, use, preserve or disclose personal information with third parties, in a non-aggregated way:

9. Responsibility

To the extent permitted by law, the Service is not responsible for: a) errors or omissions in the content; b) the lack of availability of the web or; c) the transmission of malicious programs in the contents, despite having adopted all reasonable technological measures to avoid it or; d) the usefulness for your specific needs of the different recommendations that the Service can make regarding lifestyle and eating habits.

10. Modifications

The Service reserves the right to make the modifications it deems appropriate to its website and app without prior notice, being able to change, delete or add both the content and services provided through it and the way in which they appear presented. On the other hand, these terms and conditions may change at any time. The modifications will enter into force from the moment of their publication.

This privacy policy is effective as of May 7, 2025, and will remain in effect except with respect to any changes in its provisions in the future, which will be in effect immediately after being posted on this page. We reserve the right to update or change our Privacy Policy at any time and you should check this Privacy Policy periodically.

11. Cookies

For information about how we use cookies, please refer to our separate Cookie Policy.

12. Security Measures

The Service adopts all the necessary technical and organizational measures to protect the security and integrity of personal and non-personal information collected. Both against unauthorized access and accidental alteration, loss or destruction.

These measures include, but are not limited to:

In any case, the Service cannot guarantee the absolute security of the information collected, so you must collaborate and use common sense about the information shared at all times.

You understand and acknowledge that even after deletion, personal and non-personal information may remain visible in cache or if copied or stored by other users.

12.1 Data Breach Notification

In case of a personal data breach that may pose a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of it, as required by the GDPR.

If the breach is likely to result in a high risk to your rights and freedoms, we will also notify you without undue delay, providing clear and plain information about the nature of the breach and the measures being taken to address it.

13. Contact

If you have questions about these Terms of Use and Privacy, or wish to exercise your data protection rights, contact us at:

Email: hello@iki.health
Address: Plaza Progrés, number 8, CP 07570, Artá, Balearic Islands, Spain

By clicking “Accept All Cookies”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. View our Privacy Policy for more information.