Privacy Policy

Privacy Policy

Scope of application:

Scope of application:

This privacy policy applies to the processing of personal data on the website https://www.sonjapiontek.com by Sonja Piontek GmbH, headquartered at Am Rehbühel 6, 6370 Kitzbühel, Austria.

This privacy policy applies to the processing of personal data on the website https://www.sonjapiontek.com by Sonja Piontek GmbH, headquartered at Am Rehbühel 6, 6370 Kitzbühel, Austria.

Contact for data protection inquiries:

Contact for data protection inquiries:

Status:

Status:

16.01.2026

12.01.2026

1. Responsible body

1. Responsible body

The entity responsible for processing your personal data on this website is:

Sonja Piontek GmbH

At Rehbühel 6

6370 Kitzbühel

Austria

Email: [email protected]

Phone: +49 174 9162260

Data Protection Officer:

No data protection officer has been appointed, as this is not required by law.

The entity responsible for processing your personal data on this website is:

Sonja Piontek GmbH

At Rehbühel 6

6370 Kitzbühel

Austria

Email: [email protected]

Phone: +49 174 9162260

Data Protection Officer:

No data protection officer has been appointed, as this is not required by law.

2. Purposes and legal basis of data processing

2. Purposes and legal basis of data processing

We process your personal data for the following purposes:

purpose Processed data legal basis
newsletter distribution Title, first name, last name, email address, preferred language Art. 6 para. 1 lit. a GDPR (consent)
Webinars / Online formats Title, first name, last name, email address, phone number, preferred language Art. 6 para. 1 lit. a GDPR (consent)
Appointment bookings / Online calls Title, first name, last name, email address, phone number, preferred language Art. 6 para. 1 lit. a GDPR (consent)
Travel bookings / Qualification forms Salutation, first name, last name, email address, phone number, preferred language, additional qualification fields Art. 6 para. 1 lit. a GDPR (consent)
Email marketing / Offers / Podcast Title, first name, last name, email address Art. 6 para. 1 lit. a GDPR (consent)
Statistical analysis and optimization of marketing processes Email, click and usage data within GoHighLevel, visits to websites/funnel pages, completed forms, open rates, clicks on links, bounce rates, segmentation/profiling for marketing Art. 6 para. 1 lit. f GDPR (legitimate interest: optimization of marketing and service offerings)

We process your personal data for the following purposes:

purpose Processed data legal basis
newsletter distribution Title, first name, last name, email address, preferred language Art. 6 para. 1 lit. a GDPR (consent)
Webinars / Online formats Title, first name, last name, email address, phone number, preferred language Art. 6 para. 1 lit. a GDPR (consent)
Appointment bookings / Online calls Title, first name, last name, email address, phone number, preferred language Art. 6 para. 1 lit. a GDPR (consent)
Travel bookings / Qualification forms Salutation, first name, last name, email address, phone number, preferred language, additional qualification fields Art. 6 para. 1 lit. a GDPR (consent)
Email marketing / Offers / Podcast Title, first name, last name, email address Art. 6 para. 1 lit. a GDPR (consent)
Statistical analysis and optimization of marketing processes Email, click and usage data within GoHighLevel, visits to websites/funnel pages, completed forms, open rates, clicks on links, bounce rates, segmentation/profiling for marketing Art. 6 para. 1 lit. f GDPR (legitimate interest: optimization of marketing and service offerings)

Automated profiling:

Some of the usage data collected is automatically analyzed to personalize marketing campaigns and content.

Automated profiling:

Some of the usage data collected is automatically analyzed to personalize marketing campaigns and content.

3. Storage period and deletion

3. Storage period and deletion

• Your personal data will be stored until it is deleted automatically or manually.

• Automatic deletion occurs when you unsubscribe via the unsubscribe link in emails.

• Manual deletion will be carried out at your request.

Note: To optimize our marketing and communication processes, data may be stored for up to 5 years, unless you unsubscribe.

- Your personal data will be stored until it is deleted automatically or manually.

- Automatic deletion occurs when you unsubscribe via the unsubscribe link in emails.

- Manual deletion will be carried out at your request.

Note: To optimize our marketing and communication processes, data may be stored for up to 5 years, unless you unsubscribe.

4. Disclosure of data / Data transfer to third countries

4. Disclosure of data / Data transfer to third countries

Main website:

• Your data will not be shared with third parties, except for storage and processing in GoHighLevel.

• GoHighLevel stores data on servers in the United States.

• Standard contractual clauses (SCC) have been implemented for lawful transfers outside the EU/EEA.

Note: When transferring data to the USA, a slightly lower standard of data protection may apply.

Landing pages with marketing tracking

• We use Meta/Facebook pixels on our landing pages.

• This involves processing personal data such as clicks, visits, interactions with forms, or remarketing data.

• The data is transferred to Meta Platforms Ireland Ltd. and stored in the USA.

• Standard contractual clauses (SCC) apply to this data transfer. The legal basis for this processing is your consent (Art. 6(1)(a) GDPR).

The pixel is only used after you have given your express consent via the cookie consent banner. You can revoke or adjust your consent at any time.

- Your data will not be shared with third parties, except for storage and processing in GoHighLevel.

- GoHighLevel stores data on servers in the United States.

- Standard contractual clauses (SCC) have been implemented for lawful transfers outside the EU/EEA.

Note: When transferring data to the USA, a slightly lower standard of data protection may apply.

5. Cookies, third-party providers, and tools

5. Cookies, third-party providers, and tools

Only technically necessary cookies and internal system functions are used on the main website:

• GoHighLevel: For analyzing and optimizing our internal marketing and website processes (e.g., email opens, clicks, form submissions, bounce rates). This is done exclusively at the system level and serves to optimize content and communication.

• WEGLOT: Enables the website to be translated into different languages. No personal data is transferred to third parties.

• YouTube embeds: Embedded videos transfer data to YouTube when they are accessed. We recommend activating the extended data protection mode to minimize the transfer of personal data.

Marketing tracking with Meta/Facebook Pixel is also used on the landing pages:

• The Meta Pixel is only activated after explicit consent via the cookie consent banner.

• Purpose: Conversion tracking, remarketing, and optimization of marketing measures.

• Data is transferred to the USA; standard contractual clauses (SCC) are implemented.

• Legal basis: Art. 6(1)(a) GDPR (consent).

• YouTube embeds: Embedded videos transfer data to YouTube when they are accessed. We recommend activating the extended data protection mode to minimize the transfer of personal data.

No other tracking or marketing cookies are used.

- No tracking cookies are used, except for GoHighLevel's internal functions for analyzing and optimizing marketing and website processes (see section 2).

- Tools used:

YouTube videos: Embedded videos transfer data to YouTube. We recommend activating the extended privacy mode to minimize data transfer.

6. Rights of data subjects

6. Rights of data subjects

You have the following rights at any time in accordance with the GDPR:

• Information about stored personal data (Art. 15 GDPR)

• Rectification of inaccurate data (Art. 16 GDPR)

• Deletion of data ("right to be forgotten," Art. 17 GDPR)

• Restriction of processing (Art. 18 GDPR)

• Data portability (Art. 20 GDPR)

• Withdrawal of consent at any time (Art. 7(3) GDPR)

• Complaint to the data protection authority (www.dsb.gv.at)

Contact for data protection inquiries: [email protected]

You can also revoke your consent to receive marketing emails by clicking on the unsubscribe link in each email.

You have the following rights at any time in accordance with the GDPR:

- Information about stored personal data (Art. 15 GDPR)

- Rectification of inaccurate data (Art. 16 GDPR)

- Deletion of data ("right to be forgotten," Art. 17 GDPR)

- Restriction of processing (Art. 18 GDPR)

- Data portability (Art. 20 GDPR)

- Withdrawal of consent at any time (Art. 7(3) GDPR)

- Complaint to the data protection authority (www.dsb.gv.at)

Contact for data protection inquiries: [email protected]

You can also revoke your consent to receive marketing emails by clicking on the unsubscribe link in each email.

7. Changes to the privacy policy

7. Changes to the privacy policy

We reserve the right to amend this privacy policy in the event of changes to our processes or legal requirements. The current version is always available on the website.

We reserve the right to amend this privacy policy in the event of changes to our processes or legal requirements. The current version is always available on the website.

8. Note on consent in forms

8. Note on consent in forms

"I agree to receive appointment-related messages and marketing emails (e.g., newsletters, podcasts, offers). The basis for this is Art. 6 (1) (a) GDPR. You can revoke your consent at any time via the unsubscribe link."

"I agree to receive appointment-related messages and marketing emails (e.g., newsletters, podcasts, offers). The basis for this is Art. 6 (1) (a) GDPR. You can revoke your consent at any time via the unsubscribe link."

©2026 by Sonja Piontek, Kitzbühel / Singapore

©2026 by Sonja Piontek

Kitzbühel / Singapore