Privacy Policy

Privacy Policy

Last updated: 13 October 2025

This Privacy Policy explains how Four Quadrants Coaching OÜ (“we”, “us”, “our”) collects, uses, and protects your personal data when you use https://fourquadrantscoaching.com (the “Website”), book coaching sessions, purchase digital products, subscribe to our emails, or otherwise interact with us.

We are committed to respecting your privacy and complying with the General Data Protection Regulation (GDPR) and applicable Estonian law.

1. Who we are

Business name: Four Quadrants Coaching OÜ
Business Registry Code:17268267
Address: Sõpruse pst 2, 50703, Tartu, Estonia
Email: taavi@fourquadrantscoaching.com
Website: https://fourquadrantscoaching.com

For GDPR purposes, Four Quadrants Coaching OÜ is the data controller for the processing described in this Policy. We have not appointed a Data Protection Officer.

2. What data we collect

  • Identity and contact data: name, email address, and phone number if you provide it.

  • Order and coaching data: products purchased, booking details, minimal session notes needed to deliver services, and communication history.

  • Technical and usage data: IP address, device and browser type and version, time zone, pages viewed, referral information, and clickstream collected via cookies and similar technologies.

  • Communications: messages you send via forms, email replies, or chat.

  • Marketing preferences: newsletter subscription status and consent records.

We do not collect health information or other special category data via our website forms. If such information is shared during coaching, we minimize recording of it and treat any notes as confidential.

3. How we collect your data

  • Directly from you: when you purchase, book, subscribe, or contact us.

  • Automatically: via cookies and analytics when you browse the Website. Non-essential cookies only run with your consent.

  • From service providers: payment and scheduling providers may share transaction or booking status we need to fulfill your order.

4. Why we process your data (legal bases)

  • Fulfil orders and deliver coaching/services: Contract (Art. 6(1)(b))

  • Respond to inquiries and provide support: Legitimate interests (Art. 6(1)(f))

  • Send service/transactional emails, policy updates, security notices: Legitimate interests and, where applicable, legal obligation

  • Send newsletters and marketing: Consent (Art. 6(1)(a)); you can withdraw at any time

  • Run analytics and measure marketing (Google Analytics, Meta Pixel): Consent via the cookie banner

  • Prevent fraud, ensure security, maintain the site: Legitimate interests

  • Comply with tax, accounting, and legal requests: Legal obligation (Art. 6(1)(c))

5. Email marketing

If you subscribe, we use your email to send occasional updates, offers, and content. You can unsubscribe at any time via the link in any email or by contacting taavi@fourquadrantscoaching.com. We use Smaily to manage newsletters. You can also object to direct marketing at any time.

6. Cookies, analytics, and ads

We use cookies and similar technologies to operate the Website, improve performance, and, if you consent, measure analytics and ads.

  • Consent: Non-essential cookies such as Google Analytics and Meta Pixel only load after you consent in our cookie banner.

  • Manage preferences: You can change or withdraw consent at any time via Cookie Settings on our site.

  • Analytics: We use aggregated reports to understand usage, such as page views and referrers.

  • Advertising: If you consent, we may use Meta Pixel to measure campaign performance and for retargeting.

  • Browser controls: You can block cookies in your browser. Some essential site functions may be affected.

7. Payments and financing

We do not store full card numbers. Payments are processed securely by third-party providers such as Stripe and WooCommerce, which act as independent controllers for card data.

8. Who we share your data with (processors and recipients)

We share data only with trusted providers needed to operate our services, including:

  • WooCommerce (store and order management)

  • Calendly (scheduling)

  • Smaily (email marketing)

  • Google Analytics (analytics)

  • Meta (Meta Pixel, if consented)

  • Google Workspace (email and documents)

  • Website hosting provider

  • Payment providers (Stripe)

These providers are bound by contracts to safeguard your data. We do not sell or rent your personal data.

9. International transfers

Some providers may process data outside the EEA. Where applicable, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses (SCCs) and take steps to assess the necessity and proportionality of such transfers.

10. How long we keep your data

  • Newsletter subscribers: until you unsubscribe or request deletion.

  • Coaching and order records: up to 7 years to comply with accounting and tax laws.

  • Contact and support messages: up to 24 months after the last interaction.

  • Analytics data: up to 26 months in Google Analytics settings.

  • Consent logs: retained as needed to demonstrate compliance.

When data is no longer needed, we delete or anonymize it.

11. How we protect your data

We use appropriate technical and organizational measures, including TLS/SSL encryption, access controls, least-privilege permissions, data minimization, retention limits, and processor contracts requiring confidentiality and security.

12. Security incidents

If we become aware of a personal data breach likely to result in a risk to your rights and freedoms, we will notify the competent supervisory authority and, where required, notify you without undue delay.

13. Your rights under GDPR

You have the right to access, rectify, erase, and port your personal data, and to restrict or object to certain processing. You can withdraw consent at any time, for example for marketing and cookies. This does not affect processing that took place before withdrawal. You can object to direct marketing and related profiling at any time.

To exercise your rights, contact taavi@fourquadrantscoaching.com. We may need to verify your identity. We aim to respond within one month of receiving your request.

Supervisory authority: You can lodge a complaint with the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon).

14. Children’s privacy

Our services are intended for adults aged 18 or over. We do not knowingly collect personal data from minors.

15. Automated decision-making

We do not use automated decision-making that produces legal or similarly significant effects.

16. Sources of data

We obtain personal data directly from you, automatically via cookies and analytics with your consent for non-essential cookies, and from service providers that share limited status information needed to fulfill your order or booking.

17. Changes to this Privacy Policy

We may update this Policy from time to time. The latest version will always be posted on this page. For material changes, we will post a notice on the Website or otherwise inform you.

18. Contact

Four Quadrants Coaching OÜ
Sõpruse pst 2, 50703, Tartu, Estonia
taavi@fourquadrantscoaching.com