Legal

Privacy Policy

1. Who we are

This Privacy Policy explains how Christen Coaching & Consulting GmbH ("we", "us", "our") collects, uses, stores, shares and protects personal data. We act as the data controller responsible for your personal data.

Controller: Christen Coaching & Consulting GmbH (CHE-440.477.155)
Address: Sumpfstrasse 18, 6312 Steinhausen, Switzerland
Email: lisa@lisachristen.com

We process personal data in accordance with the Swiss Federal Act on Data Protection (FADP) and, where it applies, the EU General Data Protection Regulation (GDPR).

2. Scope

This policy applies to personal data we collect through our websites (including lisachristen.com and christenconsulting.ch), in the course of providing advisory, coaching, training and related services, through our mailing lists and social media, and through any other contact with website visitors, clients, prospective clients, subscribers and other individuals we deal with. By using our website or engaging our services, you acknowledge the practices described here.

3. The personal data we collect

Depending on how you interact with us, we may collect:

4. How we collect your data

We collect personal data directly from you (when you contact us, complete a form, subscribe, or engage our services), automatically when you visit our website, and occasionally from third parties such as your employer or a person who refers you to us.

5. Why we process your data, and our legal bases

We process personal data only where we have a lawful basis to do so. Depending on the circumstances, we rely on one or more of the following:

6. Sensitive personal data

Advisory and coaching work can touch on sensitive matters. Where you choose to share sensitive personal data with us in the course of an engagement, we process it only as necessary to deliver the agreed work and on the basis of your explicit consent or another applicable legal ground. We treat such information with particular care and strict confidentiality.

7. Third-party services and processors

We use a number of trusted third-party providers to operate our business and website. These providers process personal data on our behalf or as independent controllers, and each is governed by its own privacy policy. We share only the data necessary for the relevant service. Our current providers, grouped by function, are:

Where calls, meetings or sessions are recorded or transcribed through these services, this is done only with the awareness of the participants involved. We do not enter confidential client material into third-party tools beyond what is necessary to deliver the agreed work. We exercise no control over these third-party providers' own privacy practices, and we encourage you to review their privacy policies.

8. International data transfers

Some of our providers are based outside Switzerland and the European Economic Area, including in the United States. Where we transfer personal data abroad, we rely on a lawful transfer mechanism: a destination country recognised by the Swiss Federal Council and/or the European Commission as providing adequate protection; the Swiss–US and EU–US Data Privacy Frameworks for certified US recipients (the Swiss–US framework has been recognised by Switzerland since 15 September 2024); or appropriate contractual safeguards such as the Standard Contractual Clauses, together with additional measures where needed. You may request further information about the safeguards we apply.

9. Cookies and website data

The lisachristen.com website is a static site that does not use analytics or advertising cookies, and its fonts are served from our own servers rather than loaded from any third-party font provider. Our WordPress site (christenconsulting.ch) uses cookies and similar technologies to function correctly, to keep the site secure, and to understand how it is used; some are essential, while others are used only with your consent, which you can give, decline or change at any time through the cookie banner on that site.

10. How long we keep your data

We keep personal data only for as long as necessary for the purposes described in this policy. Client and engagement records are retained for the duration of our relationship and afterwards for as long as we have a legitimate business or legal reason to do so. Accounting and invoicing records are kept for the statutory retention period required under Swiss law (currently ten years). When data is no longer needed, we delete or anonymise it.

11. Security

We take appropriate technical and organisational measures to protect your personal data. Information submitted through our website is encrypted in transit. Access to personal data is limited to those who need it to perform their work, and the systems and premises on which we store personal data are kept in a secure environment. No method of transmission or storage is completely secure, but we work to protect your data and to address any incident appropriately.

12. Your rights

Subject to applicable law, you have the right to:

To exercise any of these rights, contact us at lisa@lisachristen.com. You also have the right to lodge a complaint with a supervisory authority — in Switzerland, the Federal Data Protection and Information Commissioner (FDPIC); in the EEA, your local data protection authority.

13. Automated decision-making

We do not make decisions producing legal or similarly significant effects about you based solely on automated processing.

14. Children

Our website and services are intended for professionals and are not directed at children. We do not knowingly collect personal data from children.

15. Changes to this policy

We may update this Privacy Policy from time to time. We will post any changes on this page and update the date above. We encourage you to review it periodically.

16. How to contact us

If you have any questions about this Privacy Policy or how we handle your personal data, please contact Lisa Christen at lisa@lisachristen.com.