Last updated: August 14, 2026
Nordic Yoga Studio is committed to complying with the General Data Protection Regulation (GDPR) and protecting your personal data. This page provides detailed information about your rights and how we handle your information.
Nordic Yoga Studio acts as the data controller for personal information collected through our website and services. We determine how and why your personal data is processed.
Contact details:
Nordic Yoga Studio
Drottninggatan 45
111 21 Stockholm
Sweden
Email: [email protected]
You have the right to request a copy of the personal data we hold about you. We will provide this information in a structured, commonly used, and machine-readable format within one month of your request.
If you believe any personal data we hold about you is inaccurate or incomplete, you have the right to request correction. We will update the information promptly upon verification.
Also known as the "right to be forgotten," you can request deletion of your personal data when:
You can request that we limit how we use your personal data in certain circumstances, such as when you contest the accuracy of the data or object to processing.
You have the right to receive your personal data in a structured, commonly used format and to transmit it to another data controller where technically feasible.
You may object to processing of your personal data based on legitimate interests or for direct marketing purposes. We will cease processing unless we can demonstrate compelling legitimate grounds.
Where we process your data based on consent, you have the right to withdraw that consent at any time. This does not affect the lawfulness of processing based on consent before withdrawal.
If you are dissatisfied with how we handle your personal data, you have the right to lodge a complaint with the Swedish supervisory authority:
Integritetsskyddsmyndigheten (IMY)
Box 8114
104 20 Stockholm
Sweden
Website: www.imy.se
To exercise any of your rights, please contact us at [email protected] with the following information:
We will respond to your request within one month. In complex cases, this period may be extended by two additional months, and we will inform you of any such extension.
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements. Retention periods vary based on:
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
Your personal data is processed and stored within the European Economic Area. We do not transfer data to countries outside the EEA unless appropriate safeguards are in place as required by GDPR.
We do not use automated decision-making or profiling that produces legal effects or similarly significantly affects you.
We may update this GDPR information to reflect changes in our practices or legal requirements. Significant changes will be communicated through our website.