Home/Data security and privacy

Data security and privacy

Data security at LUX Artscio


Transparency is important to me as a professional, and this page is focused on showing you my commitment to protect client data.
 

Data Security and Privacy Commitment

Your privacy and data security are priorities in my business. This page explains how and why I collect, store, and protect your information—ensuring transparency around my practice and the services I use.

1. Types of Data Collected

I only collect information essential to providing services:
  • Email address
  • First name or tattoo artist name
  • Other voluntary details (for portal access, custom systems, or coaching programs)
  • Payment details (processed and encrypted by Payhip or Revolut for subscription clients)

2. Purpose and Lawful Basis for Data Use

I process personal data for the following lawful reasons:
  • Consent: You voluntarily provide information for our services.
  • Contract: Data needed to fulfill bookings, coaching, or access to our systems.
  • Legal Obligation: Where applicable by law.
  • Legitimate Interest: To improve our services while protecting your rights.
Data is used for:
  • Scheduling
  • Project management
  • Payment processing
  • Delivering products and coaching programs

3. Third-Party Services Used

I utilize trusted technologies to run the business and safeguard your data:
Service provider
Service and description of how I use it
Link to their privacy policy
Notion
Business operations and development of products and services.
Calendar synchronization, email and AI.
Appointlet
Booking site for my clients
Bullet.so
Running website and gatekeeping for paid content.
Google Workspace
Calendar connection between Notion and Appointlet.
Figma
Used for membership features such as creating product prototypes with my clients.
PayHip
Running webshop, whereas I’m selling my digital products.
Meta
Communication and social media.
These services do NOT share your data with other vendors unless you consent to such.

4. International Data Transfers

Some partners may store data outside the EU/EEA. I only choose providers that guarantee adequate protection using mechanisms such as standard contractual clauses.

5. Processors and Sub-Processors

The listed third-party services act as processors or sub-processors for data under GDPR. I carefully review these relationships to safeguard your information.

6. Control and Access

Your GDPR rights include:
  • Being informed about your data
  • Accessing your data
  • Correcting inaccurate data
  • Erasing your data (“right to be forgotten”)
  • Restricting data processing
  • Data portability
  • Objecting to data processing
  • Freedom from automated decision-making
Clients cannot self-serve these options, but can always request access, correction, or deletion by contacting us—no questions asked.

7. Security Measures

I maintain strict security measures to ensure data breaches shouldn’t be able to happen on my end:
  • Password policies
  • Device security
  • Regular encrypted backups
  • Ongoing training in data protection

8. Incident Response

I have an effective countermeasure plan for managing data breaches. If your data is ever affected, I will inform you promptly and advise you on the next steps.
I will also report myself to Datatilsynet, if this ever happens.

9. Data Retention

Client data is stored for up to one year. Afterward, it is anonymized and only aggregated, non-personal information is kept for research and business improvement.

10. Automated Decision-Making

I do not use automated decision-making or profiling. Should this change, you will receive an update.

11. Cookies and Tracking Technologies

If my website uses cookies or similar technologies, I will notify you, explain their purposes, and request your consent where required.

12. Compliance

I adhere to GDPR. If local laws require additional compliance, I will comply accordingly. If you have any questions regarding data processing, please contact me on valkyria@luxartscio.com with the title: “Data processing request”

13. How to Contact Us

For any questions, data requests, corrections, or concerns about privacy and security:
  • Instagram: luxartscio

14. Policy Updates

Updates to this policy are communicated by email to clients, newsletter subscribers, and anyone who has previously used my services.