Last Updated: July 21, 2026
alpine-heath is committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR). This page provides specific information about how we comply with GDPR requirements and how you can exercise your rights.
Data Controller: alpine-heath
Address: 28 Merrion Square, Dublin 2, D02 X576, Ireland
Contact: [email protected]
You have the right to request confirmation of whether we process your personal data and to obtain a copy of that data. You can also request information about the purposes of processing, categories of data, and recipients of your data.
If your personal data is inaccurate or incomplete, you have the right to request that we correct or complete it without undue delay.
Under certain circumstances, you can request deletion of your personal data, including when:
You may request that we restrict processing of your personal data in certain situations, such as when you contest the accuracy of the data or object to processing.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another controller.
You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.
Where processing is based on your consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
You have the right to lodge a complaint with a supervisory authority, particularly in the EU member state of your residence, place of work, or place of alleged infringement.
In Ireland, the supervisory authority is the Data Protection Commission: www.dataprotection.ie
To exercise any of your GDPR rights, please contact us at [email protected] with the subject line "GDPR Request" and specify which right you wish to exercise.
We will respond to your request within one month of receipt. In complex cases, this period may be extended by two additional months, and we will inform you of such extension.
We process personal data based on the following legal grounds under GDPR:
If we transfer your personal data outside the European Economic Area, we ensure appropriate safeguards are in place, such as:
We retain personal data only as long as necessary for the purposes stated in our Privacy Policy or as required by law. Specific retention periods include:
We do not use automated decision-making or profiling that produces legal effects or similarly significantly affects you.
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify you without undue delay and, where required, report the breach to the relevant supervisory authority within 72 hours of becoming aware of it.
We may update this GDPR information to reflect changes in our practices or legal requirements. Significant changes will be communicated through our website.
For questions about GDPR compliance or to exercise your rights, contact us at [email protected]