Healing Grounds

Privacy Statement

Who We Are

Healing Grounds is a foundation registered under KVK number 94923094. We value your privacy greatly. Our website address is https://www.healinggrounds.org, and you can contact us at info@healinggrounds.org for any questions regarding your privacy.

We handle your data carefully and will only store the necessary information. Of course, we adhere to the confidentiality obligation and the General Data Protection Regulation (GDPR).

Data Collection and Use

1. Newsletter Subscription

When you subscribe to our newsletter, we collect your email address. This information is used exclusively to send you updates, news, and relevant information. You can unsubscribe at any time via the link in the footer of each newsletter.

2. Registration for Clarity Sessions

When registering for a Clarity Session through our website, we collect data necessary to facilitate these sessions. This includes:

  • Contact details: such as name, email address, and phone number.
  • Preferences and choices: during the Clarity Session, we note whether you prefer individual guidance or treatment and which therapist you prefer.
  • Use of data: this data is used exclusively to find suitable professionals and to improve our services.
  • Getting in touch with a Healing Grounds professional: we only share your details with a professional after the Clarity Session, and always in consultation with you. We discuss together how contact is made: either you get in touch yourself, or we introduce you to each other by email. In the latter case we share only the contact details needed to arrange an appointment.

3. Registration as a Professional

When you register as a professional through our website, we collect the data needed to contact you about your registration. This includes:

  • Contact details: such as name, phone number, and email address.
  • Information you share: such as details about your practice and the role you would like to take on at Healing Grounds.
  • Use of your data: this data is used exclusively to contact you about your registration as a professional.

4. Donations

When you donate through our website, we collect the data needed to process the payment and to thank you as a donor. This includes:

  • Contact details: your name and email address.
  • Donation details: the amount, the payment method you chose, the payment reference Mollie assigns to the donation, the date, and the language of the website.
  • Information you share: an optional message with your donation, and whether you indicated that you would like to support Healing Grounds more often.
  • Use of data: we use this data to process the donation, to keep our own financial records, and to contact you personally if you indicated that you would like to give more often. We do not use your details to send you newsletters or other emails you did not ask for.

We do not receive or store any payment details such as your bank account or card number. Those are handled exclusively by Mollie. The donation details listed above are stored in a file on our own server that cannot be reached through the website.

5. Contacting Us

When you get in touch with us, we receive the details you send along with your message. Exactly what that is depends on the channel you choose:

  • Phone or text: your phone number and whatever you tell or write to us.
  • WhatsApp: your phone number, your profile name and the content of your messages. We explicitly ask you not to share health information via WhatsApp.
  • Signal: your username or phone number and the content of your messages.
  • Email: your email address and the content of your message.
  • Contact form: your name, email address and the content of your message. This works the same as a regular email to us (see "Email" above and "Google Workspace" below): the message goes straight into our inbox, we do not add it to any list, and it does not trigger any automated process.

We use these details only to answer your question. We do not add your details to any mailing list and we do not pass them on to others.

Cookies

Our website uses Google Analytics to see which pages are visited. This only happens if you allow it: if you decline, Google Analytics is not loaded and no analytics cookie is placed on your device. Your IP address is shortened before it reaches Google. Your choice itself is kept in your own browser, not in a cookie. You can change that choice at any time via .

With the same consent, we also use Google Ads conversion tracking, for two specific moments: booking a Clarity Session and signing up for the newsletter. This lets us see whether our ads (which we get to run for free through Google's Ad Grant programme for non-profits) actually lead to a booking or a signup. If you consent, we send your email address along at that moment. Google hashes that address with an irreversible encryption (SHA-256) in your own browser before it is sent, so Google only ever receives the hashed version. We do not use this to follow you with ads on other websites.

Third-Party Services

1. Google Ads (for conversion tracking)

To see whether our free Google ads lead to a booking or newsletter signup, we share — only with your consent — the moment of booking or signing up with Google Ads, together with an encrypted (hashed) email address. Google's privacy policy applies to this data.

2. GoatCounter (for visitor statistics)

For our visitor statistics we use GoatCounter, an open source counter that places no cookies and stores no personal data. Your IP address is encrypted (hashed) immediately by GoatCounter and is not stored. The data is held on servers in Germany and Finland, so within the EU, and is not shared with anyone else or used for advertising.

3. Mollie (for Donations)

Healing Grounds processes donations via Mollie B.V., a Dutch payment service provider. As soon as you click to pay on the donation page, you are taken to Mollie's secure payment environment. We pass along your name, email address, the amount, and any message you wrote, so that the donation can be recognised. Mollie itself collects the details needed to carry out the payment, such as your bank account or card details. Mollie's privacy policy applies to all data collected during payment.

4. MailerLite (for Newsletters)

Our newsletters are managed via MailerLite (your data remains within the EU). When you subscribe, your email address is stored in MailerLite's secure system, and their privacy policy applies to this data.

5. WhatsApp (Meta)

You can reach us via WhatsApp Business. Meta, the company behind WhatsApp, Facebook and Instagram, cannot read the content of your messages: that content is encrypted and exists only on the phones of the people in the conversation. Meta can, however, see that your phone number was in contact with us and how often. We are unable to switch that off or prevent it.

Unlike our other suppliers, Meta does not act here as a processor working on our instructions, but as a data controller in its own right. We therefore cannot enter into a data processing agreement with Meta, nor set down what they do with that information. WhatsApp's own privacy policy applies to it. For that reason we offer WhatsApp as a choice rather than a recommendation, and we explain on a separate page what happens before you begin.

6. Signal

For a Signal account, only the date of registration and the date of the last connection are kept. Nothing is recorded about who you are in contact with, or how often.

7. Google Workspace (email, calendar and video calls)

Our email, calendar and video calls run on Google Workspace, which we use free of charge as a foundation through the Google for Nonprofits Programme. In transit that traffic is encrypted, but not end-to-end like Signal: Google holds its own key and can technically access the content. This happens under a data processing agreement: Google acts as a processor, does not use your messages for advertising, and shows no adverts. Google is, however, an American company, and the data sits on their servers.

If you book an appointment with us, it goes into our calendar and you receive an invitation for Google Meet. The call is protected on its way, though Google holds a key to it. Recording is not possible at all in our account.

Data Security

We are committed to protecting your data and have enabled two-factor authentication (2FA) for added security. All forms on the website send their data over an encrypted connection (https). To prevent automated abuse of our forms (for a while we sadly received a lot of spam through the forms), we temporarily keep track of how many submissions arrive from an IP address. The IP address is stored in encrypted form, cannot be traced back to a person by us, and is deleted automatically.

Data Retention Period

Newsletter Data

Newsletter subscription data is retained until you unsubscribe, after which it is deleted from our system.

Clarity Sessions Data

Data from Clarity Sessions is retained as long as necessary for organisational purposes (legal term) and to support you in your health journey. Inactive data is deleted after a maximum of 12 months unless you explicitly give permission for a longer retention period.

Donation Data

A donation is a financial transaction, and Dutch law requires us to keep our records of it for seven years. We do not keep your name, email address, and any message longer than necessary, and we delete them on request unless we are legally obliged to retain them.

WhatsApp Conversations

Conversations on WhatsApp disappear automatically after 90 days. We make no backup of them; they sit on one phone. If you would like us to delete a conversation and your phone number sooner, just let us know and we will.

Rights

The GDPR provides the following rights:

Right to Access

You have the right to request an export of your personal data that we store.

Right to Copy

You have the right to request a copy of your personal data that we store.

Right to Correction

If you believe that the personal information we store is inaccurate or outdated, you have the right to request a correction.

Right to Erasure

You can request data erasure, except for data that we are legally obliged to retain.

For data requests, you can contact us at info@healinggrounds.org.

Legal Disclosures

We may release your personal data to comply with legal obligations, for fraud prevention, or if legally required.

Changes to the Privacy Statement

Healing Grounds reserves the right to update this privacy statement from time to time. Any changes will be published on this page, and the revision date will be noted at the bottom of the statement.


Last updated: 27 August 2026