Privacy Policy
We at Reha Applications Inc (“Reha App”) value your privacy and are committed to take care of your data, and we take this responsibility very serious. Please take the time to carefully read our Privacy Notice, which explains why we collect your Personal Data and how we process it when you
- visit our website (see, in particular, Section 3.1)
- reach out to us via email or contact form (see, in particular, Section 3.2)
- set up an account (see, in particular, Section 3.3)
919 North Market Street Suite
950Wilmington, Delaware 19801
2. Definitions
Unless otherwise indicated, capitalized terms used in this Privacy Notice are defined in Annex 1. Most of the definitions are derived from the California Consumer Privacy Act of 2018 (CCPA) which you can access from https://leginfo.legislature.ca.gov/faces/billTextClient.xhtml?bill_id=201720180SB1121 the California Privacy Rights Act of 2020 (CPRA), and the General Data Protection Regulation (GDPR) which you can access from https://eur-lex.europa.eu/eli/reg/2016/679/oj.
3. How do we process your Personal Data?
We process your data in different ways depending on whether you visit our website or express an interest in our products, or whether you are our client, supplier, business partner or job applicant:We do not sell your Personal Data within the meaning of Section 1798.140 (ad) of the CPRA. The term Selling has a broad meaning and includes selling, renting, releasing, disclosing, disseminating, making available, transferring, or otherwise communicating orally, in writing, or by electronic or other means, a consumer’s personal information by the business to a third party for monetary or other valuable consideration, according to Section 1798.140. (ad) (1-2) of the CPRA.
- 3.1 Processing of Personal Data relating to visitors of your website
Like many other websites, we use so-called “cookies”. Cookies are small text files that are stored on your device (laptop, tablet, smartphone, etc.) when you visit our website.
Opting in
The website only uses cookies which are not strictly necessary if you agree to this in advance. When you visit our website, a pop-up window will appear giving you the choice to go to ’Cookie Settings’, ‘Reject All’ or ‘Accept All Cookies’.
Opting out
Opting out for current session: You can opt-out for the current session by clicking on this link.Permanent opting out: If you do not want to participate in tracking, you can opt-out by easily disabling cookies in your browser settings. In doing so, you will not be included in the conversion tracking statistics. You can configure your browser to inform you about the use of cookies so that you can decide on a case-by-case basis whether to accept or reject a cookie. Alternatively, your browser can be configured to automatically accept cookies under certain conditions or to always reject them, or to automatically delete cookies when closing your browser. Disabling cookies may limit the functionality of this website.- 3.1.1. Necessary Cookies - are essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
- 3.1.2 Statistic Cookies - help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.
- We use the following statistic cookies: Google Analytics
If you consent, our website uses the features of Google Analytics Remarketing combined with the cross-device capabilities of Google AdWords. The operator of the Google Analytics component is Google LLC., 1600 Amphitheatre Pkwy, Mountain View, CA 94043-1351, USA. - Purpose and legal basis
We have integrated the component Google Analytics on this website. Google Analytics is a web analytics service. Web analysis is the gathering, collection and analysis of data about the behavior of visitors to websites. Among other things, a web analysis service collects data on which website a Data Subject has come to a website from (so-called referrers), which subpages of the website were accessed or how often and for which period of time a subpage was viewed. A web analysis is mainly used to optimize a website and for the cost-benefit analysis of Internet advertising. Our website also uses Google Analytics performance reports relating to demographics and interests and reports on Google Display Network impressions.
Google Analytics uses cookies. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. Google might transfer the personal information collected via this technical procedure to third parties. - Personal Data processed
Google Analytics collects the following Personal Data about your use of this website:
Internet information (CPRA Category F)- IP Address and IP location
- Referring (exit pages and URLs)
- Number, duration and time of visits (your interaction with the Website)
- Search engines, key phrases and keywords used to find our site)
The IP address is sent to and shortened by a Google server in the USA. On behalf of the operator of the website, Google will use this information to evaluate your use of the website, compile reports on website activity and to provide further services related to website and internet use to us. The IP address transferred through your browser to Google Analytics will not be combined with other data held by Google.
In addition, this website uses the Analytics feature UserID to track interaction data. This User ID will be additionally anonymized and encrypted and will not be linked with other data.Personal Data processed - Opting out
Permanent opting out
In addition to the above, you may generally prevent the collection of the data generated by cookies and related to your use of websites (including your IP address) by Google as well as the processing of this data by Google by downloading and installing the browser plug-in available under the following link: https://tools.google.com/dlpage/gaoptout?hl=en
This browser add-on informs Google Analytics via JavaScript that no data and information about website visits may be transmitted to Google Analytics. Please note that in addition, a cookie already set by Google Analytics can be deleted at any time via the Internet browser or other software programs.
Disable Google Analytics for display advertising
You can disable Google Analytics for display advertising and customize the ads on the Google Display Network by visiting the ad settings at this link: https://adssettings.google.com. - RecipientsRecipientData LocationBasis for transfer to third party country1Google LLCUSASCC with supplementary measures
- SummaryNameProviderPurposeDurationTypeads/ga-
audiencesgoogle.comSessionUsed by Google AdWords to re-engage visitors that are likely to convert to customers based on the visitor’s online behavior across websites.Pixel - 3.2 Processing of Personal Data relating to relating to potential customers
Purpose and legal basis
When you contact us via email or contact form, we process the Personal Data you include in such a message, especially the contact form on our website https://rehaapp.com, or emails or and process such inquiry in a precontractual stadium. Such processing is necessary for Contract Performance in order to take steps at your request prior to entering into a contract. Contract Performance is also the purpose of any processing of your personal when you create an account in order to use our service.
Furthermore, we process your Personal Data provided with an inquiry for Direct Marketing purposes to convert a potential client into an actual client. Such processing is based on a Legitimate Interest. You have the right, at all times, to object to the Processing of your Personal Data for the purpose of Direct Marketing, without being required to state your reasons, and can do so by sending us a letter or emailing us at info@rehaapp.com. The Processing of your Personal Data for the purpose of Direct Marketing is not required in order to conduct our contractual relationship.
Personal Data processed
We mainly process the Personal Data you provide us during a precontractual phase. We collect:
Identifiers (CPRA Category A)- Name
- E-mail address
Internet information (CPRA Category F)- IP Address and IP location
- Referring (exit pages and URLs)
- Browser type, type of device, system and performance information, internet service provider and operating system
Recipients
To achieve the objectives described above, it may be necessary to disclose your Personal Data to the following Recipients in certain cases. Personal Data may be disclosed by being transferred, disseminated, or provided by other means to:
RecipientData LocationBasis for transfer to third party country1SendGridSCC with supplementary measuresUSA/ Central India2MailchimpUSA/Central IndiaSCC with supplementary measures3Amazon Web ServicesUSASCC with supplementary measures4Google LLCUSASCC with supplementary measures
Retention period
The Personal Data will be deleted immediately after a lead is lost.
Personal Data collected for purposes related to Contract Performance shall be retained until such contract has been fully performed.
We may be allowed to retain Personal Data for a longer period whenever you have given consent to such processing (e.g. subscription to our newsletter), as long as such consent is not withdrawn. Furthermore, we may be obliged to retain Personal Data for a longer period whenever required to do so for the performance of a legal obligation or upon order of an authority.
Summary
PurposeLegal BasisRecipientsRetentionAnswer inquiryContract PerformanceOne yearAll recipientsDirect MarketingLegitimate InterestAll recipientsOne yearNewsletter subscriptionConsentAll recipientsOne year - 3.3 Processing of Personal Data relating to users
Purpose and legal basis
Your Personal Data as a customer is processed, first and foremost, for the purpose of providing services related to the Reha Application. You need to set up an account before you can use our services.
Such processing is based on Contract Performance and to manage and maintain our relationships with you and for ongoing customer service.
Besides that, we use your contact information to send you information on our Products as a form of Direct Marketing. Your email address might be added to a contact list of those who may receive email messages containing information of commercial or promotional nature as a result of signing up to this Website or after making a purchase.
The processing activity related to Direct Marketing is based on Legitimate Interest. You have the right, at all times, to object to the Processing of your Personal Data for the purpose of Direct Marketing, without being required to state your reasons, and can do so by sending us a letter or emailing us at info@rehaapp.com. The Processing of your Personal Data for the purpose of Direct Marketing is not required in order to conduct our contractual relationship.
Personal Data processed
We mainly process the Personal Data you provide us during a precontractual phase. We collect:
Identifiers (CPRA Category A)- Name
- E-mail address
Internet information (CPRA Category F)- IP Address and IP location
- Referring (exit pages and URLs)
- Browser type, type of device, system and performance information, internet service provider and operating system
Recipients
To achieve the objectives described above, it may be necessary to disclose your Personal Data to the following Recipients in certain cases. Personal Data may be disclosed by being transferred, disseminated, or provided by other means to:
RecipientData LocationBasis for transfer to third party country1SendGridSCC with supplementary measuresUSA/ Central India2MailchimpUSA/Central IndiaSCC with supplementary measures3Amazon Web ServicesUSASCC with supplementary measures4Google LLCUSASCC with supplementary measures
Retention period
The Personal Data will be deleted immediately after a lead is lost.
Personal Data collected for purposes related to Contract Performance shall be retained until such contract has been fully performed.
We may be allowed to retain Personal Data for a longer period whenever you have given consent to such processing (e.g. subscription to our newsletter), as long as such consent is not withdrawn. Furthermore, we may be obliged to retain Personal Data for a longer period whenever required to do so for the performance of a legal obligation or upon order of an authority.
Summary
PurposeLegal BasisRecipientsRetentionAnswer inquiryContract PerformanceOne yearAll recipientsDirect MarketingLegitimate InterestAll recipientsOne yearNewsletter subscriptionConsentAll recipientsOne year
We handle Personal Data only as permitted by data protection regulations. We use a variety of technical and organizational measures to help protect your Personal Data from unauthorized access, disclosure, modification, loss or destruction in accordance with applicable data protection laws.
When handling Personal Data, our employees are obliged to comply with the regulations of the GDPR, CCPA and the CPRA.
5. What are your rights with respect to Processing of Personal Data?
We process your data in different ways depending on whether you visit our website or express an interest in our products, or whether you are our client, supplier, business partner or job applicant:We do not sell your Personal Data within the meaning of Section 1798.140 (ad) of the CPRA. The term Selling has a broad meaning and includes selling, renting, releasing, disclosing, disseminating, making available, transferring, or otherwise communicating orally, in writing, or by electronic or other means, a consumer’s personal information by the business to a third party for monetary or other valuable consideration, according to Section 1798.140. (ad) (1-2) of the CPRA.
- 5.1 Rights under CPRA and GDPR
CPRA, GDPR and other applicable data protection laws protect certain rights for Data Subjects. In particular:
Right of Access
Right to obtain confirmation of which of your Personal Data is processed and information about it, for instance, which are the purposes of the Processing, what are the conservation periods, among others.
Right to Erasure or "right to be forgotten"
Right to erase your Personal Data, provided that there are no valid grounds for its retention, for example in cases where we have to keep the Personal Data to comply with legal obligation or because a court case is in progress.
Right to Data Portability
Right to receive the Personal Data you have provided us in a digital format of current use and automatic reading or to request the direct transmission of your Personal Data to another entity that becomes the new responsible for your Personal Data, however only if technically possible.
Right of Rectification
Right to request modification of your Personal Data that is inaccurate or request incomplete Personal Data, such as the address, VAT, email, telephone contacts, or others.
Right to object and ADM
Reha Applications may use personal data for automated decision-making including profiling within the meaning of Art 22 GDPR.
When the Processing of Personal Data, including the Processing for the definition of profiles, is exclusively automatic (without human intervention) and may have effects in your legal sphere or significantly affect it, you shall have the right not to remain subject to any decision based on such automatic Processing, except as otherwise provided by law and shall have the right that we take appropriate measures to safeguard its rights and freedoms and legitimate interests, including the right to have human intervention in decision making by us, the right to express its point of view or contest the decision taken on the basis of automated individual information Processing.
- 5.2 Rights exclusively under the GDPR
Right to Withdraw Consent or Right of Opposition
Right to object or withdraw consent at any time to Processing, for example in the case of Processing for marketing purposes, provided that no Legitimate Interests exist prevailing over your interests, rights and freedoms, such as defending a right in a judicial process.
Right of Limitation
Right to request the limitation of the Processing of your Personal Data, in the form of: (i) suspension of Processing or (ii) limitation of the scope of Processing to certain categories of Personal Data or purposes of Processing.
Right to complain
Right to complain to the supervisory authority, in addition to us.
For rights asserted by Data Subjects from the EU under the GDPR the period for handling a request is 30 days unless it is a particularly complex request.
Once the retention period expires, Personal Data shall be deleted. Therefore, the right to access, the right to erasure, the right to rectification and the right to data portability cannot be enforced after expiration of the retention period.
- 5.3 Rights exclusively under the CPRA
Right to Limit Use and Disclosure of Sensitive Personal Information (SPI)
Right to limit the use and disclosure of their SPI to that which is necessary to perform the services or provide the goods.
Right to Opt-Out of ADM technology
Right to opt-out of being subject to automated decision-making processes, including profiling.
The exercise of rights is free of charge, except in the case of a manifestly unfounded or excessive request, in which case a reasonable fee may be charged regarding its costs.
The information must be provided in writing but may be given orally if requested. In this case, we should verify your identity by means other than oral.The response to requests based on the provisions of the CPRA should be provided within a maximum of 45 days. If we require more time (up to 90 days), we will inform you of the reason and extension period in writing.
For rights asserted by Data Subjects from the EU under the GDPR the period for handling a request is 30 days unless it is a particularly complex request.
Once the retention period expires, Personal Data shall be deleted. Therefore, the right to access, the right to erasure, the right to rectification and the right to data portability cannot be enforced after expiration of the retention period.
We will not discriminate against you for exercising any of your CPRA rights. Unless permitted by the CPRA, we will not:
- Deny you goods or services.
- Charge you different prices or rates for goods or services, including through granting discounts or other benefits, or imposing penalties.
- Provide you a different level or quality of goods or services.
- Suggest that you may receive a different price or rate for goods or services or a different level or quality of goods or services.
Our services are not intended for and may not permissibly be used by individuals under the age of 13. Reha Applications Inc does not knowingly collect personal data from persons under 13 or allow them to register. If it comes to our attention that we have collected or processed personal data from such a person, we may delete this information without notice. If you have reason to believe that this has occurred, please contact our Data Compliance Coordinator on info@rehaapp.com.
8. Changes to our data protection provisions
We reserve the right to modify this Privacy Notice, so it is always in compliance with the current legal requirements or to implement changes to services in the Privacy Notice, e.g., when introducing new services. In this case, your future visits to our website will be subject to the updated Privacy Policy.If you have additional questions regarding the processing of your Personal Data, please feel free to contact us directly, by email at info@rehaapp.com.
9. Contact information
- 9.1 General
If you have any questions or comments about this Privacy Policy, the ways in which we collect and use your Personal Data, your choices and rights regarding such use please do not hesitate to contact us:
Phone: +919398000358
Website: rehaapp.com
Email: info@rehaapp.com
Postal Address: 919 North Market Street, Suite 950, Wilmington, Delaware 19801
- 9.2 Requests from California residents according to the CPRA
To exercise the access, data portability, rectification, and deletion rights described above in 5.1., California residents may submit a verifiable consumer request to us by either:
Calling us at +91939800358.
Visiting rehaapp.com
Only you or a person registered with the California Secretary of State that you authorize to act on your behalf, may make a verifiable consumer request related to your Personal Information. You may also make a verifiable consumer request on behalf of your minor child.
You may only make a verifiable consumer request for access or for disclosure what personal information is sold or shared and to whom, twice within a 12-month period. The verifiable consumer request must:- Provide sufficient information that allows us to reasonably verify you are the person about whom we collected Personal Information or an authorized representative.
- Describe your request with sufficient detail that allows us to properly understand, evaluate, and respond to it.
We cannot respond to your request or provide you with Personal Information if we cannot verify your identity or authority to make the request and confirm the Personal Information relates to you. Making a verifiable consumer request does not require you to create an account with us. We will only use Personal Information provided in a verifiable consumer request to verify the requestor's identity or authority to make the request.
- 9.3 Data Subject Requests from EU Data Subjects according to the GDPR
[We value your Data Subject Rights under GDPR and therefore appointed Prighter.com/Maetzler Rechtsanwalts GmbH & Co as representative according to Art 27 GDPR and provide you with an easy way to submit us privacy related request like a request to access or erase your personal data. If you want to make use of your data subject rights, please visit: https://prighter.com.
Contact GDPR-Rep.eu
GDPR-Rep.eu
Maetzler Rechtsanwalts GmbH & Co KG
Attorneys at Lawc/o Verdentum Technologies Private Limited
Schellinggasse 3/10, 1010 Vienna, Austria