Privacy Policy
Last updated: October 2025
Our commitment to your privacy: At NutrIA Coach, we take the protection of your personal data very seriously. This policy explains how we collect, use, and protect your information in accordance with the European Union's General Data Protection Regulation (GDPR).
1. Data Controller
NutrIA Coach is the data controller for the personal data you provide to us.
For any inquiries related to the privacy of your data, you can contact us at:
- Email: beta@nutricoach.online
2. Data We Collect
2.1 Nutrition Professional Data
When you register with NutrIA Coach, we collect:
- Identification data: Full name, email address, phone number
- Professional data: License number, qualifications, specialty, professional experience
- Account data: Username, password (encrypted), configuration preferences
- Usage data: Activity logs on the platform, features used, access dates and times
2.2 Patient Data (managed by nutritionists)
As a nutritionist, you are responsible for your patients' data that you input into the platform. NutrIA Coach acts as a data processor for this information. This may include:
- Patient personal and contact information
- Medical and nutritional history
- Anthropometric data (weight, height, BMI, etc.)
- Goals and nutritional plans
- Consultation notes and follow-up
2.3 Technical Data
We automatically collect certain information when you use the platform:
- IP address
- Browser type and version
- Operating system
- Referring URLs
- Cookies and similar technologies
3. Legal Basis and Purpose of Processing
3.1 Contract Performance
We use your data to:
- Manage your registration and access to the platform
- Provide NutrIA Coach services
- Process your requests and communications
- Manage technical support
3.2 Legitimate Interest
We process data to:
- Improve the platform and develop new features
- Perform usage and performance analysis
- Prevent fraud and ensure security
- Send communications about important service updates
3.3 Consent
With your explicit consent, we may:
- Send you newsletters and marketing communications
- Collect feedback during the beta phase
- Use your data anonymously for research and service improvement
4. How We Use Your Data
We use the collected information to:
- Provide the service: Manage your account, process patient consultations, generate AI-assisted nutritional plans
- Improve the platform: Analyze usage patterns to optimize features and user experience
- Communication: Send you important notifications, service updates, and respond to your inquiries
- Security: Detect and prevent fraudulent or unauthorized activities
- Legal compliance: Comply with legal and regulatory obligations
5. Sharing Data with Third Parties
NutrIA Coach does not sell or rent your personal data. We may share information only in the following cases:
5.1 Service Providers
We work with providers who help us operate the platform:
- Hosting and cloud storage services (servers located in the EU)
- Transactional email services
- Analytics and monitoring tools
- AI providers for nutritional assistance features
All our providers are contractually obligated to protect your data and comply with GDPR.
5.2 Legal Requirements
We may disclose information if required by law, court order, or to protect our legal rights.
6. International Data Transfers
All data is stored on servers located in the European Union. If it ever becomes necessary to transfer data outside the EEA, we will implement appropriate safeguards (EU Standard Contractual Clauses) and inform you in advance.
7. Data Security
We implement technical and organizational measures to protect your data:
- Encryption: All data in transit is transmitted via HTTPS/TLS. Stored sensitive data is encrypted
- Access control: Role-based restricted access on a need-to-know basis
- Authentication: Encrypted passwords and multi-factor authentication options
- Backups: Regular and automated backups
- Audits: Periodic security reviews and system updates
- Training: Our team is trained in data protection and privacy
8. Data Retention
We retain your personal data for as long as necessary to fulfill the purposes described in this policy:
- Active account data: While you maintain your account active
- Data after cancellation: Up to 30 days after account cancellation (to allow reactivation)
- Patient data: According to legal obligations for medical record retention (generally 5-10 years)
- Tax/legal data: According to applicable legal requirements
9. Your Rights (GDPR)
As a user, you have the following rights regarding your personal data:
9.1 Right of Access
You can request a copy of the personal data we hold about you.
9.2 Right to Rectification
You can correct inaccurate or incomplete data.
9.3 Right to Erasure ("Right to be Forgotten")
You can request deletion of your personal data, subject to legal retention obligations.
9.4 Right to Restriction of Processing
You can request that we limit the processing of your data in certain circumstances.
9.5 Right to Data Portability
You can request to receive your data in a structured, commonly used, and machine-readable format.
9.6 Right to Object
You can object to the processing of your data for certain purposes, such as direct marketing.
9.7 Right to Withdraw Consent
When processing is based on your consent, you can withdraw it at any time.
To exercise any of these rights, contact us at: beta@nutricoach.online
We will respond to your request within a maximum of 30 days.
10. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential cookies: Necessary for platform operation (session management, security)
- Performance cookies: To analyze how the platform is used and improve it
- Functional cookies: To remember your preferences and settings
You can manage cookies through your browser settings, although some platform functionalities may be affected.
11. Minors
NutrIA Coach is designed for nutrition professionals over 18 years of age. We do not intentionally collect data from minors. If you discover that a minor has provided data, contact us immediately to delete it.
12. Changes to this Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of significant changes through:
- Email notification to your registered address
- Prominent notice on the platform
- Updating the "Last updated" date on this page
We recommend reviewing this policy periodically.
13. Supervisory Authority
You have the right to file a complaint with the data protection authority of your country if you believe we have violated your privacy rights.
In Spain, the competent authority is the Spanish Data Protection Agency (AEPD): www.aepd.es
Privacy Questions?
If you have any questions about this Privacy Policy or how we handle your data, feel free to contact us:
We commit to responding to all your privacy inquiries within a maximum of 72 hours.