Privacy Policy

1. Controller

The controller responsible for data processing on this website (within the meaning of the GDPR) is:

H2PR – Human Holistic Program Reset UG (haftungsbeschränkt)
Hussenstraße 19, 78462 Konstanz, Germany
Represented by: Elenice Candido Da Silva Stratjel
info@h2pr.de
+49-151-67678358

No Data Protection Officer has been appointed, as the thresholds under § 38 BDSG (generally at least 20 persons continuously engaged in automated processing of personal data) and Art. 37 GDPR are not met.

2. Your rights

You have the right

  • to access (Art. 15 GDPR),
  • rectification (Art. 16),
  • erasure (Art. 17),
  • restriction of processing (Art. 18),
  • data portability (Art. 20),
  • objection (Art. 21),
  • and to withdraw consent at any time with future effect (Art. 7(3)).
  • You may lodge a complaint with a supervisory authority (Art. 77), in particular the

Landesbeauftragte für den Datenschutz und die Informationsfreiheit Baden-Württemberg (LfDI), Königstraße 10a, 70173 Stuttgart, Germany — the authority competent for our registered seat in Konstanz.

3. Server log files

Our hosting provider automatically collects information transmitted by your browser on each visit: IP address, date/time of request, referrer URL, browser type/version, operating system.

Legal basis: Art. 6(1)(f) GDPR (legitimate interest in technically error-free delivery and security).

Retention period: 30 days

Hosting provider: Namecheap, Inc., 4600 East Washington Street, Suite 300, Phoenix, AZ 85034, USA.

As Namecheap is based in the USA, this involves a transfer of data to a third country outside the EU/EEA. Namecheap offers a Data Processing Addendum for hosting customers.

4. Contacting us

If you contact us by email (info@h2pr.de) or phone, we process the data you provide (e.g. name, email address, message) to handle your enquiry.

Legal basis: Art. 6(1)(b) GDPR (pre-contractual request) or Art. 6(1)(f) GDPR (legitimate interest).

Data is deleted once your enquiry is resolved, unless statutory retention duties apply.

5. Link to Google Maps / self-hosted fonts

Our contact page contains a plain text link (“Show location on Google Maps”) pointing to Google Maps. This is a link only, not an embedded map (no iframe) and no third-party content loads automatically. Simply visiting our contact page does not transmit any data to Google; this only happens if you actively click the link. Google’s own privacy policy then applies (Google Ireland Limited): https://policies.google.com/privacy.

The fonts used on this website are served locally from our own server (no Google Fonts or other external font service). No connection to third-party servers, and no transmission of your IP address for this purpose, takes place.

6. Social media links (Facebook, Instagram)

The footer links to our Facebook and Instagram profiles as plain text links, not embedded social plugins. No data is transmitted to Meta/Instagram merely by visiting our site — only if you actively click through.

7. Cookies

This website does not set any cookies.

8. No automated decision-making

We do not use automated decision-making within the meaning of Art. 22 GDPR.

9. Data security

This site uses SSL/TLS encryption.

10. Updates

This policy is current as of July 2026 and may be updated as the website evolves or legal requirements change.