Privacy Policy
Last updated: 10 July 2025
This Privacy Policy explains how Heidi Niemi & Co™ (“we”, “us”, “our”) collects, uses, and protects personal data through our websites (e.g. heidiniemi.fi, heidiniemicoaching.com), platforms (including Dolce Société™), and services. We are committed to protecting your privacy in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR).
1. Controller
Niemi Heidi Anneli
Via di Luiano 26, 50026 San Casciano in Val di Pesa (FI), Italy
VAT/Tax Code: 07148980480
Email: hello@heidiniemi.co
2. Legal Basis for Processing
We process personal data based on the following legal grounds:
- Your explicit and informed consent (e.g., for email communications or downloadable resources)
- Contractual necessity, for fulfilling orders or delivering services
- Our legitimate interest in maintaining client relationships, improving our services, and ensuring platform security
- Legal obligations, such as bookkeeping and tax reporting
We do not use your data for automated decision-making that produces legal effects.
3. Purpose of Data Collection
Personal data is collected and processed for:
- Delivering digital products, memberships, and services
- Managing customer accounts and orders
- Providing support and updates related to services
- Marketing communications (if consented)
- Ensuring platform functionality and security
- Legal compliance (e.g. tax and payment records)
4. Data Collected
We may collect the following information:
- Name, email address, phone number, business name
- Billing and payment information
- IP address and browser/device data
- Social media profiles (if provided)
- Order and subscription history
- Responses to forms, quizzes, and surveys
- Files or materials voluntarily submitted by the user
5. Cookies and Analytics
We use necessary cookies for website and platform functionality. Analytics cookies may be used for tracking user behavior on the website, based on legitimate interest. Cookies are stored for up to 365 days.
You can manage your cookie preferences through your browser settings. Third-party cookies are only used with your consent.
6. Tools and Third-Party Services
We may use trusted third-party service providers to help us operate our websites, process payments, and deliver services. These providers may process personal data on our behalf and are contractually bound to comply with applicable data protection laws, including GDPR. Where data is transferred outside the EU/EEA, appropriate safeguards are in place.
8. Data Transfers
Data may be transferred to and processed in countries outside the EU/EEA (e.g. the United States) only when necessary and with appropriate safeguards (e.g., Standard Contractual Clauses or adequacy decisions). You consent to these transfers by using our services.
9. Your Rights Under GDPR
You have the right to:
- Request access to your personal data
- Request correction of inaccurate or incomplete data
- Request deletion ("right to be forgotten")
- Restrict or object to data processing
- Withdraw consent at any time (for marketing emails or optional services)
- File a complaint with your local data protection authority
To exercise these rights, contact: hello@heidiniemi.co
10. Data Security
We take appropriate technical and organizational measures to secure your data:
- Secure servers and platform access
- Access limited to authorized personnel
- Data encryption and strong passwords
- Regular backups and software updates
11. Changes to This Policy
We may update this Privacy Policy from time to time. The latest version is always available on our website. We will notify you of any significant changes via email or platform notice.
12. Contact
If you have any questions or requests regarding your personal data, please contact:
Heidi Niemi & Co™ / Dolce Creatives™ / Dolce Société™
hello@heidiniemi.co
Via di Luiano 26, 50026 San Casciano In Val di Pesa (FI), Italy
7. Data Storage and Retention
Personal data is retained for as long as necessary to:
- Fulfill contractual and legal obligations
- Provide customer service and maintain records
- Meet accounting and tax requirements
- Order and transaction data is retained for at least 10 years as required under Italian tax law.
Inactive contacts are periodically reviewed and deleted when no longer needed.
13. Additional Rights for U.S. Residents
If you are a resident of California, Virginia, Colorado, Connecticut, or Utah, you have additional rights under state privacy laws:
- Right to know what categories of personal information we collect and how we use it
- Right to request deletion of your personal information
- Right to opt-out of the sale of personal information (Note: We do not sell personal data)
- Right to non-discrimination for exercising your CCPA rights
To exercise these rights, please contact us at: hello@heidiniemi.co. We will respond to your request within 45 days.