Legal
Data Protection Policy
Effective date: April 2026 · Last updated: April 2026
This Data Protection Policy explains how Alignment Architecture collects, uses, stores, and protects your personal information. We are committed to handling your data with the highest standards of care, transparency, and respect.
1. Who We Are
Alignment Architecture is operated by Dr. Boyd Simpson ("we", "us", "our"). We are committed to protecting and respecting your privacy in accordance with applicable data protection legislation, including the General Data Protection Regulation (GDPR) and equivalent international standards.
2. What Data We Collect
We may collect and process the following personal data: (a) Identity data — name, title, date of birth; (b) Contact data — email address, telephone number; (c) Health data — information you voluntarily share about your health and wellness, which is treated as special category data under GDPR; (d) Technical data — IP address, browser type, and usage data collected via analytics tools; (e) Communications data — records of correspondence with us.
3. How We Use Your Data
We use your personal data to: provide and manage your consultations and sessions; communicate with you about appointments and follow-ups; send relevant information about our services (only with your explicit consent); comply with legal and regulatory obligations; improve our website and services through anonymised analytics.
4. Legal Basis for Processing
We process your data on the following legal bases: (a) Consent — where you have given explicit consent, particularly for health data; (b) Contract — where processing is necessary to deliver the services you have requested; (c) Legal obligation — where we are required to process data by law; (d) Legitimate interests — where we have a legitimate interest that does not override your rights.
5. Health Data
Health information is special category data under GDPR. We only collect and process health data with your explicit consent and solely for the purpose of providing our services. This data is stored securely, never sold, and never shared with third parties except where required by law or where you have given specific consent.
6. Data Sharing
We do not sell, rent, or trade your personal data. We may share data with: trusted service providers (e.g., Calendly for appointment scheduling) who are bound by data processing agreements; professional advisors (e.g., legal or accounting); regulatory authorities where required by law. All third-party processors are required to handle your data in accordance with applicable data protection law.
7. International Transfers
As we serve clients worldwide, your data may be transferred to and processed in countries outside your country of residence, including countries outside the European Economic Area (EEA). Where such transfers occur, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission.
8. Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements. Health records are retained for a minimum of 7 years in accordance with professional standards. You may request deletion of your data at any time, subject to our legal obligations.
9. Your Rights
Under applicable data protection law, you have the right to: access your personal data; rectify inaccurate data; request erasure of your data ("right to be forgotten"); restrict or object to processing; data portability; withdraw consent at any time; lodge a complaint with your national data protection authority. To exercise any of these rights, please contact us at [email protected].
10. Cookies and Analytics
Our website uses privacy-respecting analytics to understand how visitors use our site. We do not use tracking cookies for advertising purposes. You can disable cookies in your browser settings at any time without affecting your ability to use our services.
11. Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. All data is transmitted over encrypted connections (HTTPS). Despite these measures, no internet transmission is completely secure, and we cannot guarantee absolute security.
12. Changes to This Policy
We may update this Data Protection Policy from time to time. Any changes will be posted on this page with an updated effective date. We encourage you to review this policy periodically.
13. Contact Us
For any questions, concerns, or requests regarding this policy or your personal data, please contact: Dr. Boyd Simpson — Alignment Architecture — Email: [email protected] — WhatsApp: +376 646 151