Privacy Policy
1. General Information and Controller
Pursuant to Article 13 of the Swiss Federal Constitution and the federal data protection provisions, in particular the Federal Act on Data Protection (FADP), every person has the right to protection of their privacy and protection against misuse of their personal data.
The protection of your personal data is important to me. I process your personal data confidentially and in accordance with the applicable data protection provisions and this Privacy Policy.
The controller responsible for processing your personal data is:
Angela Hofstetter – Training & Therapie
Josefstrasse 130
8005 Zürich
E-Mail: mail@angelahofstetter.ch
If you have any questions regarding data protection, you may contact me at any time.
2. Processing of Personal Data
Personal data is information relating to an identified or identifiable person. This includes, for example, names, contact details and dates of birth. Health data and data relating to physiotherapy treatment are considered particularly sensitive personal data.
I process personal data in particular when you:
- visit my website;
- contact me by email, telephone or via a contact form;
- book an appointment or service via a booking platform;
- use physiotherapy, training or course services.
The processing is carried out in particular for the organisation and provision of my services, communication with you, appointment scheduling, proper documentation, invoicing, and the provision and improvement of my website.
3. Patient and Health Data
As part of physiotherapy treatments, I process personal and medical data to the extent necessary for providing treatment, properly documenting the course of treatment, organising the practice and issuing invoices.
The data processed may include, in particular, basic and contact information, information about your state of health, complaints, findings, diagnoses, prescriptions, treatment documentation and other information relevant to physiotherapy treatment.
Your data will be treated confidentially. Data is generally disclosed to third parties only if you have consented, if there is a legal basis or obligation, or if disclosure is permissible and necessary as part of the treatment. Only the data required for the respective purpose will be disclosed. Possible recipients include, in particular, insurance companies, doctors, other healthcare professionals and commissioned service providers within the scope of their respective duties.
Physiotherapy documentation is maintained throughout the treatment process and serves to ensure traceability of the assessment, treatment and course of therapy.
4. Electronic Invoicing and Communication
If you agree, invoices, copies of invoices, in particular in connection with the Tiers-payant system (TP), Tiers-garant invoices (TG), and payment reminders may be sent to you electronically by email.
For transmitting confidential or particularly sensitive data, I use secure and encrypted communication via HIN. Secure transmission via HIN requires the recipient to have the necessary technical requirements. Physioswiss and the FDPIC point out that patient data transmitted by email must be protected by appropriate measures such as encryption.
5. Website Access and Server Log Files
When you visit my website, data may be collected by the hosting provider or technical service providers and stored in so-called server log files. This may include, in particular:
- IP address;
- date and time of access;
- pages and files accessed;
- browser used;
- operating system used;
- referrer URL, i.e. the website visited previously;
- other technical information required for the operation and security of the website
This data is processed in particular to ensure the technical operation, security and stability of the website and for error analysis.
6. Contact
If you contact me by email, telephone or via a contact form, I process the information you provide, in particular your name, contact details and the content of your message.
This data is used to the extent necessary to process your enquiry, communicate with you, or prepare for or perform a contractual relationship.
Please do not submit confidential health data or other particularly sensitive personal data via the contact form.
For transmitting sensitive health data, you can contact me via my HIN email address: angela.hofstetter@hin.ch
7. External Booking Platforms
My website contains links to external booking platforms (tbooking and Eversports). If you click on such a link, you leave my website and are redirected to the website of the respective provider.
The processing of personal data on these platforms is governed by the privacy policies of the respective providers. I have no influence over data processing by these external providers.
Copyright
The copyright and all other rights to content, images, photographs or other files on the website belong exclusively to the operator of this website or to the specifically named rights holders. Written consent from the copyright holder must be obtained in advance for the reproduction of any files.
Anyone who infringes copyright without the consent of the respective rights holder may be subject to criminal liability and may also be liable for damages.
8. Communication via WhatsApp Business
For general communication, appointment scheduling or organisational matters with clients and patients, I may use WhatsApp Business verwenden. If you contact me via WhatsApp, WhatsApp processes, in particular, your telephone number, profile name, the messages you send and other communication data.
Please note that WhatsApp is a service provided by an external provider and that data processing by WhatsApp is outside my direct control.
Please do not transmit confidential health data or other particularly sensitive personal data via WhatsApp. For transmitting sensitive information, secure communication channels, in particular my HIN email address, are available to you: angela.hofstetter@hin.ch
Further information on data processing by WhatsApp can be found in the privacy policy of WhatsApp.
9. Payment Processing with TWINT
For payment of my services, I also offer TWINT as a payment option on site.
When you pay via TWINT, the data required for payment processing is processed by the payment service providers involved. Depending on the TWINT solution used, transaction data may be processed. Which personal data is actually transmitted to me as the recipient of the payment depends on the payment method and the respective TWINT solution. With certain QR code solutions, payments are generally made without transmitting information about the person making the payment, while other solutions may collect additional information such as name, address or payment purpose.
The processing of personal data by TWINT and other parties involved in payment processing is carried out in accordance with their respective privacy policies.
Further information can be found in the privacy policy of TWINT.
10. Cookies
This website uses cookies. Cookies are small text files stored on your device that may be used to provide certain website functions and to analyse and improve website usage.
Depending on the type of cookie used, information about website usage, pages visited or technical settings may be stored.
This website uses Google Analytics 4 to analyse website usage and improve its content and user-friendliness. Cookies or similar technologies may be used for this purpose.
You can configure your browser to notify you when cookies are set, to allow cookies only on a case-by-case basis, or to reject them altogether. Please note that some website functions may not work fully if cookies are disabled.
11. Google Analytics
This website uses Google Analytics 4, a web analytics service provided by Google. Google Analytics helps me understand how visitors use my website so that I can improve its content and functions.
This may involve processing information about website usage, pages visited, approximate geographic region, browser and device. Google Analytics uses cookies or similar technologies for this purpose.
Depending on the configuration, data may be transmitted to and processed on Google’s servers. Further information on data processing by Google can be found in Google’s privacy policy.
12. Embedded Content and External Services
My website may embed content or services from third parties, such as maps, videos, social media content or other external content.
When such content is accessed, the respective third-party provider may process technical data, in particular your IP address and information about your browser and device.
Data processing by such third-party providers is governed by their respective privacy policies.
13. Disclosure of Data to Third Parties
I disclose personal data only to the extent necessary to provide my services, if you have consented, if there is a legal basis or obligation, or if disclosure is permissible in the individual case.
Recipients may include, in particular:
- insurance companies and other payers;
- doctors and other healthcare professionals;
- service providers for practice administration, invoicing and IT;
- hosting and booking service providers;
- authorities or other bodies where there is a legal obligation.
Particularly sensitive health data is disclosed only in compliance with applicable data protection and professional regulations. Disclosure is limited to the data required for the respective purpose.
14. Data Transfers Abroad
Depending on the service providers used, personal data may also be processed outside Switzerland.
In such cases, I ensure that the statutory requirements for such data transfers are met and that appropriate safeguards are implemented where necessary.
15. Data Retention and Security
Personal data is retained only for as long as necessary for the respective purpose or as required by statutory retention and documentation obligations.
The applicable statutory and professional retention requirements apply to patient records. Before data is deleted or destroyed, it must be determined whether a statutory retention obligation or another overriding interest prevents such deletion or destruction.
I take appropriate technical and organisational measures to protect personal data against unauthorised access, loss, misuse or manipulation.
16. Your Rights
Under applicable data protection law, you have, in particular, the right to request information about whether and which personal data concerning you is being processed.
Where the statutory requirements are met, you may also request the correction or deletion of your personal data and the disclosure of certain data.
Please note that statutory retention and documentation obligations or other legally prescribed reasons may prevent immediate deletion.
For questions or to exercise your rights, you may contact the address specified in Section 1.
17. Changes to this Privacy Policy
I may amend this Privacy Policy as necessary, for example in the event of changes to my website, my services or legal requirements.
The current version published on this website shall apply.
Last updated: August 2026