Privacy Policy
1. Introduction
At Longevity Card Ltd, a private limited company registered in the United Kingdom (the “UK”) at 85 Great Portland Street, London, England, W1W 7LT (hereinafter also “our Company”, “Longevity Card”, “we” and “us”), your privacy is our top priority.
Our commitment is to offer every visitor, user, and customer an unparalleled experience. In order to provide you with this special and exceptional experience, we need to collect certain personal information from you. Rest assured, your privacy and the security of your personal data remain central to our operations.
This Privacy Policy serves as our commitment to explain how your data is collected, used, protected and shared when you access our website (www.longevity.cards/) with all its subdomains and mobile application available on the Google Play® or App Store® under the name “Longevity Card®” and “Longevity App” (collectively, the “Platform”) bearing our brand owned and/or operated by us or whenever we otherwise connect with you.
For the purposes of the General Data Protection Regulation (the "GDPR"), and the UK GDPR, our Company acts as a “Controller” as defined under these applicable regulations.
We value transparency and invite you to learn about the measures we take to ensure the security of your data and the choices and rights you have regarding your personal data. You can feel safe while using our Platform. While we take extensive measures to safeguard your data, remember that no system is entirely invulnerable. Thus, always exercise caution with your personal details. We recommend not sharing your personal data through email or other communication channels unless explicitly requested by us.
Please read this Policy carefully. If you do not agree with the terms of this Policy, please do not access our Platform or use our services.
2. WHAT PERSONAL DATA WE MAY COLLECT AND HOW WE COLLECT YOUR PERSONAL DATA?
2.1 Information You Provide To Us:
When you access or use our Platform, we collect the following types of personal information directly from you.
2.1.1 Personal Identification Information:
-
your name, email address, phone number, and/or social media account identifiers (if you log into our Platform using a social media account, we will obtain elements of the contact data from the relevant social media account provider).
2.1.2 Account Information:
-
your account identifier, date of birth, mobile phone number, name, email address, password, gender, account creation and modification dates, website settings, and marketing preferences.
2.1.3 Identity Verification Information:
-
images of your government-issued ID, passport, national ID card or driving licence, proof of residence or other identification documents deemed appropriate by government authorities; your biometric data, which includes the biometric photograph captured during the process of taking a selfie; proof of residence, the invoice of a subscribed service (e.g., electricity, water, natural gas, telephone services etc.);
2.1.4 Financial Information:
-
your bank details, credit, debit, or other payment information.
2.1.5 Health Information:
-
your medical history, medications, allergies, social and family history, ovulation test results, heart rates, injury history, current and future injuries, medical history, and relevant medical conditions or other medical information (including information related to your menstrual cycle/status and contraception where relevant).
2.1.6 Wellness Information:
-
your basal body temperature, sleep duration, quality, and its stages, wake-up time and bedtime, sleep and energy levels;
-
your training and fitness data including steps, distance, energy, pushes, jumps, timing and quality of exercises;
-
session/training logs;
-
your physical metrics including weight, height, date of birth, gender;
-
information relating to nutritional intake, timing and quality, and perceptions around food.
2.1.7 Transaction Information:
-
information relating to your purchases of goods and/or services, your longevity points, your name and contact details.
2.1.8 Other Information:
-
your requests, feedback, and other information you provide us at your discretion.
2.2 Information We Receive When You Access or Use Our Platform
We may gather this information when you access or use our platform, or we may use third-party services that collect, monitor and analyse this type of information in order to increase the functionality of our Platform.
2.2.1. Technical Information:
-
your login data, browser type and version, time zone setting and location, operating system and platform, a unique device identifier (when using our app) and other technology on the devices you use to access our Platform;
-
your usage information including your interaction with our Platform, such as browsing history, search history, and product interactions;
-
your device information including device type, operating system type and version, browser type and version.
-
your geolocation information including your IP address and your geographical location. We may collect your precise geographical location only if you have granted us the necessary permissions.
2.2.2. Cookies
-
When you visit or use our Platform, we may use cookies to enhance your experience. When visiting our Platform for the first time, we request your acceptance for using cookies and other analytic services. To learn more about cookies and their use, you can check our Cookie Policy
2.3. Information We Receive From Third-Parties
If you link your Longevity Card account to another service, we might obtain specific details from that service. With your consent, we may also retrieve additional data from these platforms. For instance, linking with platforms like Google or Health Connect could provide us with information such as your name, profile photo, language, email, contacts, or certain health data or wellness data. If you decide not to share this information, you can stop the transmission by disconnecting our access. The use of information received from third parties such as Google and Health Connect will adhere to their own policies and requirements. Please refer to Section 11.
Additionally, we gather your health and wellness data, as detailed in this Policy, via fitness trackers, smartwatches, and other relevant devices. Your financial and transactional details may also be sourced from our technical, payment, and delivery service providers.
We occasionally collaborate with third parties aiming to extend Longevity Card advantages to their clientele. In such instances, they might share with us details like your name, email, phone number, or user ID, enabling us to extend invitations for special offers or ascertain your qualification for benefits, such as discounts or complimentary services.
At times, other Longevity Card users might share your details with us – for example, when they give you a bonus, invite you to the Longevity Card, or distribute content with you via our Platform.
3. WHY AND HOW DO WE USE YOUR PERSONAL DATA?
We use your personal data for the following purposes.
-
To provide, maintain, and continuously enhance the services offered on our Platform, ensuring an optimal user experience.
-
To efficiently operate our Platform, ensuring swift server responses.
-
To facilitate and streamline personal money management, allowing swift transactions and transfers on demand.
-
To offer our users both virtual and physical cards.
-
To introduce users to a diverse longevity marketplace, granting access to health and wellness brands, complete with priority offers and discounts.
-
To allow users to benefit from curated selections, empowering them in their health journey.
-
To offer personalised recommendations based on individual user data.
-
To ensure genuine access to our Platform by validating and confirming user identities.
-
To offer mindfulness courses designed to reduce stress and foster relaxation.
-
To foster personal well-being by integrating a holistic health console within the app, featuring insights from leading experts, activity tracking, and motivational content.
-
To allow user-directed publications on our Platform.
-
To facilitate consistent communication through channels like email, SMS, and telephone while managing our relationship with users.
-
To continually curate and update the content within the integrated health console, ensuring users always have access to the latest trends, advice, and insights in the health and wellness sector.
-
When consented, to send promotional messages concerning our products, services, events, and other promotions (users can opt-out anytime).
-
To provide users with tangible rewards.
-
To conduct in-depth research and analysis to refine and personalise our services.
-
To create and maintain our databases, ensuring proper record keeping and data management.
-
To promote the safety and security of our Platform, its users, and stakeholders.
-
To prevent fraudulent activities, detect unauthorised access, and mitigate other potential risks.
-
To manage business and operational risks, obtain or maintain insurance coverage, and seek necessary professional advice.
-
To adhere to legal and regulatory requirements and safeguard the rights of both our Company and users.
We rely on several legal grounds to process your personal data and your sensitive personal data, including:
-
Consent: When you have given your consent for specific processing, which you may withdraw at any time. For example, we rely on this legal basis for certain publication purposes, direct marketing, using cookies rather than essential cookies, or on your explicit consent for processing your health data.
-
Contract: When the processing is necessary for the performance of the contract which you are a party or prior to entering into such a contract. For example, we rely on this legal basis to identify you as a user of our Platform and fulfil our obligations under the Terms and Conditions.
-
Legal obligation: When the processing is necessary for us to comply with our legal obligations. For example, we rely on this legal basis to protect, claim, and defend the legal rights and interests of our organisation, its users and other related third parties.
-
Legitimate interests: When the processing is necessary for our, your, other users’ or stakeholders’ legitimate interests. For example, we rely on this legal basis to offer you specialised services, handle complaints, use essential cookies, improve our services, or ensure the safety and security of our Platform.
4. HOW WE STORE YOUR PERSONAL DATA?
We retain the data you provide for the duration necessary to deliver our Services to you, or as long as you have an account on the Platform, unless you request its deletion. However, certain legal obligations might require us to store your information for longer periods.
The landing page for our website is hosted on the Wix.com platform, which provides us with the online platform that allows us to sell our products and services to you. Consequently, your data might be housed via Wix.com's storage solutions, databases, and its broader suite of applications. They store your data on secure servers behind a firewall. Additionally, your user data and our mobile application are hosted on Amazon Web Services' cloud infrastructure in Ireland, which adheres to the ISO27001 standards. For detailed insights into the security measures implemented by Amazon to safeguard their servers and your data, please visit: http://aws.amazon.com/security/.
We use appropriate technical, physical, and administrative measures tailored to protect and maintain the security of your personal data while processing it. These protective measures are designed considering both the nature of the data and the potential threats. While our efforts are extensive and meticulously executed, it's essential to understand that no system can guarantee absolute invulnerability.
5. HOW DO WE SHARE INFORMATION WITH THIRD PARTIES?
At Longevity Card, we never sell your personal data or share your information with any third parties for the purposes of direct marketing.
We work with trusted third-party data processors who assist us in providing various aspects of our services. (Please check Section 4.) These data processors are bound by contracts strictly stating that they cannot do anything with your personal information unless we have instructed them to do it. For instance, we may share your personal data with our service providers who help us fulfil your requests or services, or with partners such as insurers, advisers, suppliers, or subcontractors for insurance, risk management, or professional advice. Importantly, they are not permitted to share your personal information with any other organisation. Your data is held securely and retained only for the duration that we specify.
In some circumstances, we are legally obliged to share information. This may include sharing your personal data with government regulators, public authorities, judicial bodies, or law enforcement agencies to comply with court orders, laws, guidelines, or regulations. Additionally, we may disclose your personal data when necessary to establish, exercise, or defend legal claims either in court or in out-of-court proceedings. In any scenario, we thoroughly assess and document the lawful basis for sharing this information to ensure compliance with legal requirements.
We may also share your personal data when you explicitly allow or instruct us to do so. This could happen when you use specific features, authorise third parties, or provide us with clear instructions to share your personal data.
Furthermore, in the event of a business transition, such as a merger or acquisition, your personal data may be shared as part of that transition.
In any case, we take all necessary measures to ensure that your personal data is handled with care and in accordance with applicable data protection laws and regulations.
6. WHAT ARE YOUR DATA PROTECTION RIGHTS?
We prioritise your privacy and protection of your personal data. Regardless of where you reside, you have certain rights regarding the personal information we hold about you. Your data protection rights under the UK GDPR include:
-
Right to Access – You can request access to your personal data. This allows you to request a copy of the personal data we hold about you.
-
Right to Rectification – If you believe that any information we hold about you is inaccurate or incomplete, you have the right to request us to correct or complete it.
-
Right to Erasure – In certain circumstances, you can request the deletion of your personal data. You can exercise the right to have your personal data erased if:
-
the personal data is no longer necessary for the purposes which we originally collected or processed it for;
-
your personal data were collected based on your consent as our lawful basis, and you withdraw your consent.
-
our basis for processing your personal data is legitimate interest, you object to the processing of your data, and there is no overriding legitimate interest to continue this processing;
-
your personal data is used only for direct marketing purposes, and you object to such processing;
-
your personal data is processed unlawfully,
-
it is necessary to comply with a legal request or legal obligation.
-
-
Right to Restrict Processing – You have the right to request us to restrict the processing of your personal data, in specific situations, such as when you want us to establish its accuracy or the reason for processing it.
-
Right to Object to Processing – You have the right to object to the processing of your personal data, under certain conditions, such as when it’s based solely for direct marketing purposes.
-
Right to Data Portability – You have the right to request us to transfer of your personal the data that we have collected based on your consent to another organisation, or to you, ensuring it's provided in a structured, commonly used, and machine-readable format.
-
Right Not to be Subject to Automated Decision-making – You can choose not to be subject to decisions solely based on automated processing, including profiling, which significantly affects you.You have the right to be free from decisions based solely on automated processing of your personal data, including profiling, that affects you.
If you wish to exercise any of these rights or have questions about your personal data, please contact us at dataprotection@longevity.cards.
7. INTERNATIONAL DATA TRANSFERS
We engage with third parties from various countries to provide our services. Consequently, your personal data might be processed outside the UK. Our utmost priority is the safeguarding of your data during these transfers. To ensure this, we:
-
Operate under stringent legal frameworks, which might sometimes require your explicit consent,
-
Always ensure the receiving country either has an adequate level of data protection endorsed by the European Commission,
-
When there is no adequacy decision, implementing appropriate safeguards and mechanisms such as International Data Transfer Agreement or Addendum, Binding Corporate Rules, or contractual clauses authorised by the Information Commissioner Office.
It's crucial to be aware that data protection laws in the countries we operate might differ from those of your home country. By using our services and agreeing to our data transfer protocols, you understand the potential risks, regardless of your location.
8. AGE LIMIT AND COLLECTION OF CHILDREN’S PERSONAL DATA
We do not knowingly collect personal information from children under 18. We encourage parents and legal guardians to monitor their children's internet usage and to help enforce our Privacy Policy by instructing their children never to provide us with personal data without their permission. If you have any concerns about your child’s privacy with respect to our services, or if you believe that your child may have provided his/her personal data to us, please contact us via dataprotection@longevity.cards. We ensure to delete such personal data from our records immediately.
9. COOKIES
We use cookies and related tracking technologies to analyse site activity, enhance user experience, and tailor content and ads. Cookies are small data files that are dispatched from our Platform and stored on your device. Their primary purpose is to facilitate user interaction with our website, offering insights like the number of visitors, the duration of their stay, and the content they engage with.
We mainly use cookies to obtain statistical information about the number of visitors, visit purpose, and duration of visit and dynamically generate advertisements and content from user pages.
You can adjust your browser preferences to control cookie settings, however, please note that declining cookies may impact certain site functionalities.
For comprehensive details on our cookie use and your rights, please see our Cookie Policy.
10. HOW TO WITHDRAW YOUR CONSENT?
If you've granted consent for the collection, processing, and transfer of your personal data, you can withdraw this consent either in full or part, whenever you choose.
To make this change, please utilise the opt-out links provided in our communications we may send you or directly get in touch with us at dataprotection@longevity.cards.
Once we’re informed of your decision to withdraw your consent, we will cease processing your data. However, there might be circumstances where we continue processing due to compelling legitimate reasons or in connection with legal claims.
11. LINKS TO THIRD-PARTY SITE
Our Platform may also contain links to other websites that are not operated by us. If you click a third-party link, you will be directed to that third party’s site. We strongly advise you to review the privacy notices of every site you visit. We have no control over and assume no responsibility for the content, privacy policies/notices or practices of any third-party sites or services.
12. CHANGES TO OUR PRIVACY POLICY
This Privacy Policy, available on our website, is effective as of the “Last Update” date. We may modify this Privacy Policy from time to time to reflect any changes in our data processing practices or to comply with evolving legal requirements. We recommend reviewing this page periodically to stay informed of any updates and to ensure your continued agreement.
13. CONTACT US
For any inquiries or concerns regarding our privacy or data handling procedures and practices, to make complaints to us, or to report any potential security breaches, please contact us at dataprotection@longevity.cards.