Privacy Policy

Last updated: 28 August 2025

I value your privacy and process personal data in accordance with GDPR and Swedish law. When you book a session, submit a form, or contact me via this website, your data is processed only to provide my services and to meet legal obligations.

Data Controller

Katarzyna Soraya Leffler
Email: contact@kasiasoraya.com
(sole proprietorship)

Data Collected

  • Name and contact details (email, phone)
  • Booking information (date, time, service) and payment details
  • Information you provide in contact or booking forms
  • Technical data (e.g., IP address, cookies) if you consent

Purpose & Legal Basis

  • Contract: Managing bookings, delivering services, administering payments.
  • Legal obligation: Complying with accounting/record-keeping laws.
  • Legitimate interests: Basic customer support, site security and functionality.
  • Consent: Newsletters, marketing, and non-essential cookies.

Retention

Data is kept only as long as necessary and as required by law. Accounting records are typically retained up to seven (7) years.

Third Parties & Processors

Data is shared only when required by law or to deliver the service (e.g., payment providers, booking systems) under data processing agreements.

Transfers outside the EU/EEA

If data is transferred outside the EU/EEA, appropriate safeguards are applied (e.g., Standard Contractual Clauses).

Your Rights

  • Access, rectification, and erasure
  • Restriction of processing and data portability
  • Object to processing (legitimate interests)
  • Withdraw consent at any time
  • Lodge a complaint with the Swedish Authority for Privacy Protection (IMY)

Cookies

This site may use cookies for functionality, analytics, and booking. Manage your preferences via the cookie banner. See our Cookie Policy.

Contact

Questions? Email contact@kasiasoraya.com.