Privacy policy - Your security

Confidentiality and data protection policy

1. introduction and overview

This privacy policy is intended to inform visitors to this website about the nature, scope and purpose of the personal data we process in accordance with the Swiss Federal Act on Data Protection (FADP) and, if applicable, the European General Data Protection Regulation (GDPR).

We take the protection of your personal data very seriously. In this statement, we inform you about what data we process when you visit our website or use our services, and what rights you have.

2. responsible body

(Controller)
is responsible for the data processing on this website:

HERMANN HM AG
Alte Landstrasse 155
CH-8800 Thalwil-Zurich

+41 79 270 0539

contact@hermann-health.com

 
3. processing of personal data

3.1 Definition of personal data
Personal data is any information relating to an identified or identifiable natural person (Art. 5 lit. a FADP).

3.2 Principles of data processing
We only process personal data if the processing is lawful, carried out in good faith, is proportionate and the data is obtained for a specific purpose (Art. 6 FADP).

3.3 Data processed when visiting the website (server log files)
When you visit our website, the servers temporarily store every access in so-called server log files. The following data may be recorded:

  • IP address of the requesting computer
  • Date and time of access
  • Name and URL of the retrieved file
  • Website from which the access was made (referrer URL)
  • Browser and operating system used

The purpose of processing this data is to enable the use of the website (connection establishment), to ensure system security and stability in the long term and to enable the optimization of our website. The data is generally stored for 6 months and then deleted.

3.4 Cookies
We use cookies on our website. Cookies are small text files that are stored on your end device by the browser. They serve to increase the user-friendliness, effectiveness and security of our website.

  • Necessary cookies: These are absolutely essential for the operation of the website (e.g. for shopping baskets, login).
  • Performance/analysis cookies: These help us to analyze and improve the use of the website (e.g. [Name the tools used here, e.g. Google Analytics]).
  • Marketing cookies: These are used to display advertising that is relevant to the user.

Your options: Most browsers are set to accept cookies automatically. However, you can set your browser so that you are informed about the setting of cookies and decide individually whether to accept them or to exclude the acceptance of cookies for certain cases or in general. If cookies are deactivated, the functionality of our website may be restricted.

3.5 Contact form and e-mail contact
If you contact us via the contact form or by e-mail, the information you provide (name, e-mail address, content of the message) will be stored in order to process your request.

  • Purpose: Processing and answering your request.
  • Duration: We delete the requests when they are no longer required. Legal archiving obligations remain reserved.
 
4. third-party tools and services

We use third-party services and software on our website to optimize our website and improve user-friendliness. This may result in the transfer of personal data to these third parties.

  • Google Analytics: Analysis of user behavior on the website (IP address, device information, time spent on the site, etc.) USA (may be subject to U.S. law)
    Google Fonts Consistent font display IP address USA
  • Telegram
  • Google Maps

This website uses Google Analytics, a web analytics service provided by Google LLC, USA. Google Analytics uses cookies. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. We use the IP anonymization function so that your IP address is truncated beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area.

 
5. your rights as a data subject

In accordance with the Swiss Data Protection Act (DPA) and the GDPR, you have various rights in relation to your personal data:

  • Right to information (Art. 25 FADP): You have the right to request information about whether and what personal data about you is being processed.
  • Right to disclosure or transfer (Art. 28 FADP): You can request the disclosure of your personal data in a commonly used electronic format or the transfer to another controller.
  • Right to rectification (Art. 32 para. 1 FADP): You have the right to request the rectification of inaccurate personal data.
  • Right to erasure (Art. 32 para. 2 FADP): You can request the erasure of your personal data (provided there is no legal obligation to retain it).
  • Right to object (Art. 30 para. 2 lit. b FADP): You can object to the processing of your personal data, in particular in the case of data processing for direct marketing purposes.
  • Right to lodge a complaint: You have the right to lodge a complaint with the Federal Data Protection and Information Commissioner (FDPIC) if you believe that your data protection rights have been violated.

To assert your rights, please contact the responsible body named in section 2.

 
6. data transfer abroad (third countries)

We may transfer your personal data to countries that do not guarantee an adequate level of data protection. Such third countries are in particular the USA (see section 4).

When transferring data to countries without an adequate level of data protection, we ensure the protection of your personal data by means of suitable guarantees. These may include in particular

  • The use of standard contractual clauses (SCC) recognized by the Federal Data Protection and Information Commissioner (FDPIC).
  • The existence of appropriate data protection provisions of the recipient (e.g. US companies participating in the Data Privacy Framework).
 
7 Updating and amending this privacy policy

We reserve the right to adapt this privacy policy to the current legal requirements at any time. The current version is published on our website.

Status of this privacy policy: 16.10.2025

Privacy Policy for the Russian Federation

1. General Provisions

This Policy on the Processing of Personal Data has been developed in accordance with the requirements of Federal Law No. 152-FZ of July 27, 2006, “On Personal Data” (hereinafter: the Personal Data Law), and sets forth the procedure for processing personal data as well as the measures taken by HERMANN HM AG (hereinafter: the Operator) to ensure the security of personal data.

1.1. The primary objective and prerequisite for the operator’s activities is to safeguard the rights and freedoms of individuals and citizens in the processing of their personal data, including the protection of the right to privacy and the right to personal and family confidentiality.

1.2. This policy of the operator regarding the processing of personal data (hereinafter: Policy) applies to all information that the operator may obtain about visitors to the website https://hermann-health.com/ru/.

2. Basic terms used in this policy

2.1. Automated processing of personal data: The processing of personal data using computer technology.

2.2. Blocking of personal data: The temporary suspension of the processing of personal data (except in cases where processing is necessary to clarify the data).

2.3. Website: The collection of graphic and informational materials, as well as computer programs and databases, that make the site available on the Internet at the web address https://hermann-health.com/ru/.

2.4. Personal Data Information System: The entirety of personal data contained in databases, as well as the information technologies and technical means that ensure its processing.

2.5. Anonymization of personal data: Measures that make it impossible to determine that personal data pertains to a specific user or another data subject without additional information.

2.6. Processing of personal data: Any action (operation) or set of actions (operations) performed on personal data, with or without the use of automated means, including collection, recording, organization, storage, clarification (updating, modification), retrieval, use, disclosure (distribution, provision, access), anonymization, blocking, erasure, or destruction of personal data.

2.7. Controller: A government agency, a municipal entity, or a legal or natural person that, either independently or jointly with others, organizes and/or carries out the processing of personal data and determines the purposes of the processing, the scope of the data to be processed, and the operations performed on the data.

2.8. Personal Data: Any information that relates directly or indirectly to an identified or identifiable user of the website https://hermann-health.com/ru/.

2.9. Personal data whose disclosure has been authorized by the data subject: Personal data to which an unlimited number of persons have been granted access after the data subject has given consent to its processing and disclosure in accordance with the procedures set forth in the Personal Data Act (hereinafter: personal data authorized for disclosure).

2.10. Users: Any visitor to the website https://hermann-health.com/ru/.

Data Protection in the Russian Federation

 Privacy Policy

1. General Provisions

This Personal Data Processing Policy has been prepared in accordance with the requirements of Federal Law No. 152-FZ of July 27, 2006, No. 152-FZ “On Personal Data” (hereinafter referred to as the “Personal Data Law”) and defines the procedure for processing personal data and the measures taken by HERMANN HM AG (hereinafter referred to as the “Operator”) to ensure the security of personal data.

1.1. The operator considers respect for human and civil rights and freedoms—including the right to privacy and the right to personal and family confidentiality—to be its primary objective and a prerequisite for conducting its business when processing personal data.

1.2. This Operator’s policy regarding the processing of personal data (hereinafter referred to as the “Policy”) applies to all information that the Operator may obtain about visitors to the website https://hermann-health.com/ru/.

2. Key Terms Used in the Policy

2.1. Automated processing of personal data—the processing of personal data using computer technology.

2.2. Blocking of personal data — the temporary suspension of the processing of personal data (except in cases where processing is necessary to verify the accuracy of the personal data).

2.3. A website is a collection of graphic and informational materials, as well as computer programs and databases, that make them accessible on the Internet at the web address https://hermann-health.com/ru/.

2.4. A personal data information system is a collection of personal data stored in databases, together with the information technology and technical resources used to process that data.

2.5. Anonymization of personal data—actions that make it impossible to identify a specific User or other data subject without using additional information.

2.6. Processing of personal data—any action (operation) or set of actions (operations) performed with or without the use of automated means on personal data, including the collection, recording, organization, storage, clarification (updating, modification), retrieval, use, transfer (distribution, disclosure, access), anonymization, blocking, deletion, and destruction of personal data.

2.7. Operator—a government agency, municipal authority, legal entity, or individual that, either independently or jointly with others, organizes and/or carries out the processing of personal data, as well as determines the purposes of such processing, the scope of personal data to be processed, and the actions (operations) performed on the personal data.

2.8. Personal data means any information relating directly or indirectly to an identified or identifiable user of the website https://hermann-health.com/ru/.

2.9. Personal data authorized by the data subject for disclosure is personal data to which an unlimited number of persons are granted access by the data subject through the provision of consent to the processing of personal data authorized by the data subject for disclosure in accordance with the procedure established by the Personal Data Act (hereinafter referred to as “personal data authorized for disclosure”).

2.10.

A user is any visitor to the website https://hermann-health.com/ru/.