Privacy Policy
Privacy Policy - Dr Ludidi B.V.
Last updated: 3 October 2025
​
1. Who we are (Data Controller)
This is the Privacy Policy of Dr Ludidi B.V. (“Dr. Ludidi”, “we”, “us”, “our”).
Registered address: Langstraat 66, 6333 CG Schimmert, The Netherlands
KvK (Chamber of Commerce): 85278149 — VAT: NL 863571074B01
Websites: www.drludidi.com and academy.drludidi.com/coaching (“Website”).
Privacy contact (general): info@drludidi.com
Privacy contact (coaching/services): coaching@drludidi.com
We process personal data in accordance with the General Data Protection Regulation (GDPR) and Dutch privacy law.
2. Scope
This policy applies to visitors, customers, newsletter subscribers, and coaching clients who use our Website(s), purchase products, and/or receive services (including coaching, programs, and courses).
3. The data we process
3.1 Data you provide
-
Account / checkout: name, email, billing/shipping address, phone number (optional), order details, payment method (tokenized by the payment provider), preferences.
-
Newsletter & marketing opt-ins: name (optional), email, marketing preferences.
-
Contact forms / support: name, email, message content, any files you upload.
-
Coaching & programs (may include special categories): information you choose to share for assessment and guidance (e.g., nutrition/lifestyle details; potentially health-related data). We only process special category (health) data with your explicit consent and only when necessary to deliver coaching.
3.2 Data we collect automatically
-
Usage & device data: IP address, device type, browser type, pages viewed, time on page, referring/exit pages, approximate location (city/country), and similar diagnostics.
-
Cookies & similar technologies: see Section 10 (Cookies) and your on-site Cookie Settings panel for details and choices.
3.3 Data from third parties
-
Payment confirmations from our payment processor(s).
-
Delivery status from carriers (for physical goods).
-
Email engagement (opens/clicks) from our email service provider, if you’ve consented to marketing.
4. Purposes and legal bases
We only process personal data when we have a valid legal basis under GDPR:
PurposeExamplesLegal basis
Order & account managementcheckout, delivery, invoices, supportPerformance of a contract (Art. 6(1)(b)); legal obligation for tax records (Art. 6(1)(c))
Coaching & programsonboarding, assessments, progress trackingContract (Art. 6(1)(b)); explicit consent for any health data (Art. 9(2)(a))
Customer serviceresponding to messages/requestsLegitimate interests in running our business (Art. 6(1)(f)) or Contract
Newsletter & marketingupdates, offers, launchesConsent (Art. 6(1)(a)); you can withdraw any time
Analytics & performancemeasure site usage, improve UXConsent for non-essential cookies (Art. 6(1)(a)); legitimate interests for strictly necessary measurement/security
Security & fraud preventionprotecting accounts, preventing abuseLegitimate interests (Art. 6(1)(f))
Legal & compliancetax retention, court ordersLegal obligation (Art. 6(1)(c))
5. Special category data (health) for coaching
For private and online coaching, you may choose to share health-related information so we can tailor guidance. We will only process such data with your explicit consent, and only for the stated coaching purposes. You can withdraw consent at any time; this does not affect prior lawful processing. If you prefer not to share health data, some coaching features may be unavailable.
6. How we share data (recipients)
We don’t sell your data. We may share limited data with:
-
Payment processors (to take payment and prevent fraud).
-
Email/SMS communications providers (to send transactional emails; marketing only with consent).
-
Web/IT/analytics providers (to host, secure, and improve our Website—non-essential tracking only with consent).
-
Shipping/fulfilment partners (to deliver physical goods).
-
Coaching tools/platforms (for scheduling/video calls/lesson hosting, where relevant).
-
Professional advisors (legal/accounting) where necessary.
-
Authorities where required by law.
All processors act under a Data Processing Agreement and may only process data per our instructions.
7. International transfers
If processing involves destinations outside the EEA/UK, we use appropriate safeguards—e.g., EU Standard Contractual Clauses (SCCs), or other lawful mechanisms. You can contact us for more information on these safeguards.
8. Retention periods
We keep data no longer than necessary for the purposes described:
-
Orders & invoices: 7 years (Dutch tax law).
-
Accounts: until you delete your account or after 24 months of inactivity (we may contact you first).
-
Coaching records: generally up to 2 years after your last coaching interaction, unless you request earlier deletion and no legal reason requires retention.
-
Marketing data: until you withdraw consent or we detect inactivity for 24 months.
-
Support queries: up to 12 months after resolution (unless needed for legal claims).
9. Your rights
Under GDPR, you have the right to:
-
Access your data and obtain a copy.
-
Rectify inaccurate or incomplete data.
-
Erase data (“right to be forgotten”) in certain cases.
-
Restrict processing in certain cases.
-
Object to processing based on legitimate interests and to direct marketing at any time.
-
Data portability (receive/transfer a copy of data you provided).
-
Withdraw consent where processing is based on consent.
To exercise your rights, email info@drludidi.com (general) or coaching@drludidi.com (coaching). We will respond within one month (extendable where permitted). You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
10. Cookies & similar technologies
We use essential cookies to run our site (e.g., security, checkout, load balancing). With your consent, we may also use analytics and marketing cookies to measure performance and tailor content.
You can manage preferences at any time via our Cookie Settings on the Website and through your browser controls. Disabling some cookies may impact site functionality.
11. Children’s privacy
Our services are not directed to children under 16. We do not knowingly collect personal data from children under 16. If you believe a child provided us data, contact us to delete it.
12. Security
We apply appropriate technical and organizational measures to protect personal data (e.g., encryption in transit (TLS), access controls, backups, staff confidentiality). No system is 100% secure; please keep your account credentials confidential and notify us of any suspected misuse.
13. Third-party links
Our Website may link to third-party sites or services. Their privacy practices are governed by their own policies. We encourage you to review them when you visit those services.
14. Automated decision-making
We do not conduct automated decision-making that produces legal or similarly significant effects on you.
15. Changes to this policy
We may update this policy periodically. We will post the latest version on this page and update the “Last updated” date. For significant changes, we may notify you by email or on-site notice.
16. Contact
Data Controller: Dr Ludidi B.V.
Address: Langstraat 66, 6333 CG Schimmert, The Netherlands
General privacy: info@drludidi.com
Coaching privacy: coaching@drludidi.com
