Última actualización: agosto de 2026 · Solutions Institute
La presente política de privacidad cumple con el Reglamento (UE) 2016/679 (RGPD), la Ley Orgánica 3/2018 (LOPDGDD) y demás normativa vigente. Los datos personales se tratan de forma lícita, leal y transparente, con las medidas de seguridad técnicas y organizativas apropiadas.
Las sesiones, clases o programas ya reservados pueden cancelarse o aplazarse de forma gratuita hasta 24 horas antes de la cita acordada.
En caso de cancelación posterior o incomparecencia, la cita se facturará íntegramente y no podrá recuperarse.
En cumplimiento de la normativa aplicable, se informa de los siguientes datos del titular:
Esther Butenschoen
Solutions Institute
Calpe, España
esther@solutions.institute
Responsable del contenido: Esther Butenschoen, Calpe, España
| Identidad | Esther Butenschoen: Solutions Institute |
|---|---|
| CIF / NIF | [CIF / NIF] |
| Domicilio | Calpe, España |
| Teléfono | - |
| esther@solutions.institute | |
| Sitio web | Solutions Institute |
Ejercicio de derechos: esther@solutions.institute (o por correo postal a la dirección indicada, adjuntando copia de NIF/NIE/Pasaporte).
Para cada tratamiento de datos se indica la finalidad, la base jurídica que lo legitima y el plazo de conservación:
Finalidad: Atender consultas y solicitudes de información.
Base jurídica: Consentimiento del interesado (art. 6.1.a RGPD).
Conservación: Hasta que se resuelva la consulta; después, hasta 3 años para acreditar el cumplimiento de nuestras obligaciones.
Datos tratados: Nombre, email, teléfono (si se facilita), contenido del mensaje.
Finalidad: Gestión, ejecución y seguimiento de reservas, pedidos y membresías.
Base jurídica: Ejecución de contrato (art. 6.1.b RGPD).
Conservación: Durante la relación contractual y, una vez finalizada, durante 6 años por obligación fiscal (Ley General Tributaria).
Datos tratados: Nombre, email, teléfono, datos de la reserva/pedido, historial de transacciones.
Finalidad: Tramitar el cobro de reservas, pedidos y membresías.
Base jurídica: Ejecución de contrato (art. 6.1.b RGPD).
Conservación: Los datos de pago no son almacenados por el Titular. Son tratados directamente por el proveedor de pago (Stripe) como encargado del tratamiento, sujeto a su propia política de privacidad.
Datos tratados: Nombre del titular, datos de la tarjeta/cuenta (gestionados exclusivamente por la pasarela de pago), importe, referencia de transacción.
Finalidad: Envío de comunicaciones comerciales, promociones y novedades.
Base jurídica: Consentimiento expreso del interesado (art. 6.1.a RGPD y art. 21 LSSI-CE).
Conservación: Hasta que el usuario retire su consentimiento. La retirada del consentimiento no afectará a la licitud del tratamiento previo.
Datos tratados: Email, nombre (si se facilita), preferencias de comunicación.
Con carácter general, los datos no serán cedidos a terceros salvo obligación legal. No obstante, para la prestación del servicio se utilizan los siguientes proveedores que actúan como encargados del tratamiento:
| Herramienta | Proveedor | País | Datos transferidos | Garantía |
|---|---|---|---|---|
| Stripe | Stripe, Inc. | EE.UU. | Datos de pago, nombre del titular, referencia de transacción | Cláusulas contractuales tipo UE (art. 46 RGPD) |
| SendGrid (Twilio) | Twilio Inc. | EE.UU. | Email, nombre (emails transaccionales y de confirmación) | Cláusulas contractuales tipo UE (art. 46 RGPD) |
| Google Tag Manager | Google LLC | EE.UU. | IP (gestión de etiquetas; no recoge datos propios) | Cláusulas contractuales tipo UE (art. 46 RGPD) |
| Meta Pixel (previsto) | Meta Platforms, Inc. | EE.UU. | IP, comportamiento de navegación, conversiones (pendiente de activación; requiere consentimiento previo) | Cláusulas contractuales tipo UE (art. 46 RGPD) |
Las transferencias a países fuera del Espacio Económico Europeo (EEE) se realizan amparadas en cláusulas contractuales tipo aprobadas por la Comisión Europea (art. 46 RGPD) o en la decisión de adecuación correspondiente.
Le informamos de que puede ejercer los siguientes derechos sobre sus datos personales:
Ejercicio de derechos: Puede ejercer los derechos que le asisten mediante escrito a la dirección postal o correo electrónico indicados al inicio de este documento, adjuntando copia de su NIF/NIE/Pasaporte o documento análogo que acredite su identidad.
El Titular adopta las medidas técnicas y organizativas necesarias para garantizar la seguridad de los datos personales y evitar su alteración, pérdida, tratamiento o acceso no autorizado.
En caso de producirse una violación de seguridad que suponga un riesgo para los derechos y libertades de los interesados, el Titular lo notificará a la AEPD en el plazo máximo de 72 horas desde que tenga conocimiento de ella, conforme al art. 33 RGPD. Si la brecha supone un alto riesgo para los afectados, también se les notificará directamente.
El Responsable utiliza los siguientes proveedores externos con sede fuera del Espacio Económico Europeo (EEE), todos ellos actuando como encargados del tratamiento bajo cláusulas contractuales tipo aprobadas por la Comisión Europea (art. 46 RGPD):
El Responsable no realiza decisiones automatizadas ni elaboración de perfiles con efectos jurídicos o significativos para el Usuario (RGPD art. 22).
El Responsable podrá actualizar esta Política de Privacidad para adaptarla a cambios legales o en los tratamientos realizados. La versión publicada en el Sitio Web con su fecha de actualización será siempre la versión vigente.
Last updated: August 2026 · Solutions Institute
This privacy policy complies with Regulation (EU) 2016/679 (GDPR), Organic Law 3/2018 (LOPDGDD) and other applicable legislation. Personal data is processed lawfully, fairly and transparently, with appropriate technical and organisational security measures.
Booked sessions, lessons or programmes may be cancelled or rescheduled free of charge up to 24 hours before the agreed appointment.
In the event of a later cancellation or a no-show, the appointment will be charged in full and cannot be made up.
In accordance with applicable law, the following details of the owner are provided:
Esther Butenschoen
Solutions Institute
Calpe, Spain
esther@solutions.institute
Responsible for content: Esther Butenschoen, Calpe, Spain
| Identity | Esther Butenschoen: Solutions Institute |
|---|---|
| Tax ID (CIF / NIF) | [CIF / NIF] |
| Address | Calpe, Spain |
| Phone | - |
| esther@solutions.institute | |
| Website | Solutions Institute |
Exercising your rights: esther@solutions.institute (or by post to the address indicated above, attaching a copy of your ID/NIE/Passport).
For each processing activity, the purpose, legal basis and retention period are indicated below:
Purpose: To respond to enquiries and information requests.
Legal basis: Data subject consent (Art. 6.1.a GDPR).
Retention: Until the enquiry is resolved; thereafter, up to 3 years to demonstrate compliance with our obligations.
Data processed: Name, email, phone (if provided), message content.
Purpose: Management, execution and follow-up of bookings, orders and memberships.
Legal basis: Performance of a contract (Art. 6.1.b GDPR).
Retention: For the duration of the contractual relationship and, once ended, for 6 years due to tax obligations (Spanish General Tax Law).
Data processed: Name, email, phone, booking/order details, transaction history.
Purpose: To process payment for bookings, orders and memberships.
Legal basis: Performance of a contract (Art. 6.1.b GDPR).
Retention: Payment data is not stored by the Controller. It is processed directly by the payment provider (Stripe) as a data processor, subject to its own privacy policy.
Data processed: Cardholder name, card/account data (handled exclusively by the payment gateway), amount, transaction reference.
Purpose: Sending commercial communications, promotions and news.
Legal basis: Express consent of the data subject (Art. 6.1.a GDPR and Art. 21 LSSI-CE).
Retention: Until the user withdraws consent. Withdrawal does not affect the lawfulness of prior processing.
Data processed: Email, name (if provided), communication preferences.
As a general rule, data will not be disclosed to third parties except where required by law. However, the following providers acting as data processors are used to deliver the service:
| Tool | Provider | Country | Data transferred | Safeguard |
|---|---|---|---|---|
| Stripe | Stripe, Inc. | USA | Payment data, cardholder name, transaction reference | EU Standard Contractual Clauses (Art. 46 GDPR) |
| SendGrid (Twilio) | Twilio Inc. | USA | Email, name (transactional and confirmation emails) | EU Standard Contractual Clauses (Art. 46 GDPR) |
| Google Tag Manager | Google LLC | USA | IP (tag management; does not collect data itself) | EU Standard Contractual Clauses (Art. 46 GDPR) |
| Meta Pixel (planned) | Meta Platforms, Inc. | USA | IP, browsing behaviour, conversions (pending activation; requires prior consent) | EU Standard Contractual Clauses (Art. 46 GDPR) |
Transfers to countries outside the European Economic Area (EEA) are carried out under EU Standard Contractual Clauses approved by the European Commission (Art. 46 GDPR) or the relevant adequacy decision.
You may exercise the following rights regarding your personal data:
Exercising your rights: You may exercise your rights by writing to the postal or email address indicated at the beginning of this document, attaching a copy of your ID/NIE/Passport or equivalent proof of identity.
The Controller adopts the technical and organisational measures necessary to ensure the security of personal data and prevent unauthorised alteration, loss, processing or access.
In the event of a security breach that poses a risk to the rights and freedoms of data subjects, the Controller will notify the AEPD within 72 hours of becoming aware of it, in accordance with Art. 33 GDPR. If the breach poses a high risk to those affected, they will also be notified directly.
The Controller uses the following external providers based outside the European Economic Area (EEA), all acting as data processors under EU Standard Contractual Clauses approved by the European Commission (Art. 46 GDPR):
The Controller does not carry out automated decision-making or profiling with legal or similarly significant effects for the User (GDPR Art. 22).
The Controller may update this Privacy Policy to reflect legal changes or changes in processing activities. The version published on the Website with its update date will always be the current version.
Letzte Aktualisierung: August 2026 · Solutions Institute
Die vorliegende Datenschutzerklärung entspricht der Verordnung (EU) 2016/679 (DSGVO), dem spanischen Organic Law 3/2018 (LOPDGDD) und der übrigen geltenden Rechtslage. Personenbezogene Daten werden rechtmäßig, fair und transparent verarbeitet, mit angemessenen technischen und organisatorischen Sicherheitsmaßnahmen.
Bereits gebuchte Sitzungen, Unterrichtsstunden oder Programme können bis spätestens 24 Stunden vor dem vereinbarten Termin kostenfrei abgesagt oder verschoben werden.
Bei einer späteren Absage oder Nichterscheinen wird der Termin voll berechnet und kann nicht nachgeholt werden.
In Erfüllung der geltenden Vorschriften werden die folgenden Angaben zum Verantwortlichen mitgeteilt:
Esther Butenschoen
Solutions Institute
Calpe, Spanien
esther@solutions.institute
Verantwortlich für den Inhalt: Esther Butenschoen, Calpe, Spanien
| Identität | Esther Butenschoen: Solutions Institute |
|---|---|
| CIF / NIF | [CIF / NIF] |
| Anschrift | Calpe, Spanien |
| Telefon | - |
| esther@solutions.institute | |
| Website | Solutions Institute |
Ausübung der Rechte: esther@solutions.institute (oder per Post an die oben angegebene Anschrift, mit Kopie von Ausweis/NIE/Reisepass).
Für jede Verarbeitung werden Zweck, Rechtsgrundlage und Speicherdauer angegeben:
Zweck: Beantwortung von Anfragen.
Rechtsgrundlage: Einwilligung der betroffenen Person (Art. 6 Abs. 1 lit. a DSGVO).
Speicherung: Bis zur Klärung der Anfrage; danach bis zu 3 Jahre zum Nachweis unserer Pflichten.
Verarbeitete Daten: Name, E-Mail, Telefon (falls angegeben), Inhalt der Nachricht.
Zweck: Verwaltung, Durchführung und Nachverfolgung von Buchungen, Bestellungen und Mitgliedschaften.
Rechtsgrundlage: Vertragserfüllung (Art. 6 Abs. 1 lit. b DSGVO).
Speicherung: Für die Dauer der Vertragsbeziehung und danach 6 Jahre aufgrund steuerlicher Pflichten.
Verarbeitete Daten: Name, E-Mail, Telefon, Buchungs-/Bestelldaten, Transaktionshistorie.
Zweck: Abwicklung der Zahlung für Buchungen, Bestellungen und Mitgliedschaften.
Rechtsgrundlage: Vertragserfüllung (Art. 6 Abs. 1 lit. b DSGVO).
Speicherung: Zahlungsdaten werden vom Verantwortlichen nicht gespeichert. Sie werden direkt vom Zahlungsdienstleister (Stripe) als Auftragsverarbeiter verarbeitet.
Verarbeitete Daten: Name des Karteninhabers, Karten-/Kontodaten (ausschließlich über das Zahlungsportal), Betrag, Transaktionsreferenz.
Zweck: Versand von Informationen, Angeboten und Neuigkeiten.
Rechtsgrundlage: Ausdrückliche Einwilligung (Art. 6 Abs. 1 lit. a DSGVO und Art. 21 LSSI-CE).
Speicherung: Bis zum Widerruf der Einwilligung. Der Widerruf berührt nicht die Rechtmäßigkeit der vorherigen Verarbeitung.
Verarbeitete Daten: E-Mail, Name (falls angegeben), Kommunikationspräferenzen.
Daten werden grundsätzlich nicht an Dritte weitergegeben, außer bei gesetzlicher Pflicht. Zur Leistungserbringung werden folgende Auftragsverarbeiter eingesetzt:
| Tool | Anbieter | Land | Übermittelte Daten | Garantie |
|---|---|---|---|---|
| Stripe | Stripe, Inc. | USA | Zahlungsdaten, Name, Transaktionsreferenz | EU-Standardvertragsklauseln (Art. 46 DSGVO) |
| SendGrid (Twilio) | Twilio Inc. | USA | E-Mail, Name (transaktionale E-Mails) | EU-Standardvertragsklauseln (Art. 46 DSGVO) |
| Google Tag Manager | Google LLC | USA | IP (Tag-Verwaltung) | EU-Standardvertragsklauseln (Art. 46 DSGVO) |
| Meta Pixel (geplant) | Meta Platforms, Inc. | USA | IP, Nutzungsverhalten, Conversions (noch nicht aktiv; nur mit Einwilligung) | EU-Standardvertragsklauseln (Art. 46 DSGVO) |
Übermittlungen in Länder außerhalb des EWR erfolgen auf Grundlage der von der Europäischen Kommission genehmigten Standardvertragsklauseln (Art. 46 DSGVO) oder eines Angemessenheitsbeschlusses.
Sie können folgende Rechte in Bezug auf Ihre personenbezogenen Daten ausüben:
Ausübung der Rechte: Schriftlich an die zu Beginn dieses Dokuments angegebene Post- oder E-Mail-Adresse, mit Kopie von Ausweis/NIE/Reisepass oder einem gleichwertigen Identitätsnachweis.
Der Verantwortliche trifft die erforderlichen technischen und organisatorischen Maßnahmen, um die Sicherheit der personenbezogenen Daten zu gewährleisten und unbefugte Veränderung, Verlust, Verarbeitung oder Zugriff zu verhindern.
Bei einer Sicherheitsverletzung, die ein Risiko für die Rechte und Freiheiten betroffener Personen darstellt, benachrichtigt der Verantwortliche die AEPD innerhalb von 72 Stunden nach Kenntniserlangung gemäß Art. 33 DSGVO. Bei hohem Risiko werden die Betroffenen zusätzlich direkt informiert.
Der Verantwortliche setzt folgende externe Anbieter mit Sitz außerhalb des EWR ein, die als Auftragsverarbeiter unter EU-Standardvertragsklauseln tätig sind:
Der Verantwortliche trifft keine automatisierten Entscheidungen und erstellt kein Profiling mit rechtlicher oder ähnlich erheblicher Wirkung für die Nutzerin oder den Nutzer (Art. 22 DSGVO).
Der Verantwortliche kann diese Datenschutzerklärung anpassen, um rechtliche Änderungen oder Änderungen der Verarbeitung abzubilden. Maßgeblich ist stets die auf der Website veröffentlichte Fassung mit ihrem Aktualisierungsdatum.