My Auntie Privacy Policy

Last updated: February 2026

1. Who we are

Auntie Solutions Oy ("Auntie", "we", "us") operates the MyAuntie digital platform that enables registered users to manage their Auntie wellbeing sessions, materials, and communications.

Business ID: 2734094-5
Address: Siltasaarenkatu 12 C, 00530 Helsinki, Finland
Email: dpo@auntie.fi

Our Data Protection Officer (DPO) is Saku Vainikainen, who oversees compliance and acts as your privacy contact.

2. Why we process your data

Our legitimate interest is to maintain secure, lawful and efficient service operations. We process your personal data to:
- Create and manage your MyAuntie account;
- Provide secure access to Auntie packages and session materials;
- Match you with an Auntie professional;
- Deliver wellbeing content and communications;
- Maintain and improve the platform;
- Comply with legal obligations.

If your access is provided by your employer, Auntie and your employer each act as independent data controllers. Auntie controls data needed to deliver and improve wellbeing services. Your employer only receives limited information (for example, usage reports) for contract management and never sees session content or wellbeing details.

If you opt in, we may send information and marketing about Auntie Service Platforms. You can opt out anytime.

3. What data we collect

- Account data: name, email, phone, language, time zone, chosen Auntie package.
- Session access data: log-ins, session scheduling details (never session content).
- Technical data: IP address, device and browser type, timestamps, and performance metrics.
- Usage data: completed tasks, materials viewed, progress tracking.
- Feedback data: surveys, satisfaction responses, optional comments.

This data is necessary to deliver the service; without it, use may be impossible. No session video or audio is recorded, and sensitive wellbeing data is processed only with your explicit consent.

4. Where we get data from

Data comes from you during registration and use, from your employer if the service is provided through work, and from system logs automatically generated on the platform.

5. Cookies and tracking

The platform uses functional cookies for authentication and security, and optional cookies to analyse service quality. You can manage cookies in your browser; disabling essential cookies may limit access.

6. Who processes your data

Data is processed by:
- Auntie employees providing technical and customer support;
- Auntie professionals delivering wellbeing services;
- Trusted cloud and platform providers hosting MyAuntie and related systems (e.g., Google Cloud, HubSpot).

All processors operate under written data-processing agreements ensuring confidentiality and security.

7. International transfers

Data is stored primarily within the EU/EEA. If any transfer outside this area occurs (for instance, to cloud infrastructure in the U.S.), Auntie ensures equivalent protection using standard contractual clauses and supplementary safeguards.

8. Data security

We follow an ISO 27001-certified information-security management system with:
- encryption, access controls, and monitoring;
- trained staff under confidentiality;
- regular security testing.

If a breach poses high risk to you, we will notify you without undue delay.

9. How long we keep your data

- Active users: data kept for the duration of the customer relationship;
- Inactive accounts: anonymised or deleted 24 months after last activity;
- Marketing contacts: retained until you unsubscribe or data becomes obsolete.

After deletion or anonymisation, data can no longer be linked to you.

10. Automated processing

Limited automation helps assign professionals and suggest materials but does not produce legal or significant effects.

11. Your rights

You have the right to:
- Access your data;
- Correct inaccurate information;
- Request deletion of your data where legally possible;
- Ask us to limit how your data is used;
- Receive your data in a portable format;
- Object to certain types of processing, such as marketing;
- Withdraw consent at any time if processing is based on consent;
- Lodge a complaint with a supervisory authority (https://tietosuoja.fi/en/home).

12. Accountability and cooperation

Auntie maintains internal records of processing, performs regular reviews, and cooperates with authorities on data-protection matters.

13. Updates to this policy

We may update this policy if our practices or legal obligations change. The latest version is always available within MyAuntie and on auntie.io/privacy.

14. Contact

Auntie Solutions Oy
Siltasaarenkatu 12 C, 00530 Helsinki, Finland
Email: dpo@auntie.fi