Privacy Policy

Last updated: May 2026

The Physio CEO ("we", "us") provides AI-powered business coaching for physiotherapists. We are committed to protecting your personal data and handling it in accordance with the EU General Data Protection Regulation (GDPR) and applicable Dutch privacy law.

1. Data we collect

2. How we use your data

3. AI processing

When you interact with the AI coach or generate a plan, your prompt and relevant profile context are transmitted to our AI infrastructure provider for inference. We do not allow your data to be used to train third-party foundation models.

4. Data sharing

We do not sell your personal data. We share data only with sub-processors strictly necessary to operate the platform (hosting, database, AI gateway, email delivery), all bound by GDPR-compliant data processing agreements.

5. Your rights

Under the GDPR you have the right to access, rectify, erase, restrict or port your personal data, and to object to processing. To exercise any of these rights, contact us at privacy@physioceo.app.

6. Data retention

We retain account data for as long as your account is active. On deletion, content is removed within 30 days, except where retention is required by law (e.g. tax records).

7. Security

Data is stored encrypted at rest and in transit. Access is restricted to authorised personnel and protected by row-level security policies on our database.

8. Contact

Questions or complaints? Email privacy@physioceo.app. You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).