Privacy Policy

Last updated: 24 August 2026

International Masterclass for Classical Chinese Medicine (IMCCM) (“IMCCM”, “we”, “us”, or “our”) respects your privacy and is committed to protecting your personal data.

This Privacy Policy explains how we collect and process personal data when you visit or use https://imccm.eu (the “Website”), contact us, subscribe to our newsletter, or register for an IMCCM course.

We process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable Dutch data protection legislation.

1. Who We Are

For the purposes of the GDPR, the organisation responsible for the processing of your personal data is:

International Masterclass for Classical Chinese Medicine (IMCCM)
The Netherlands
Website: https://imccm.eu

Privacy Contact

Taco van der Mark
Email: info@imccm.eu

Taco van der Mark is the privacy contact person for IMCCM. You can contact him with questions about this Privacy Policy, our processing of personal data, or your rights under the GDPR.

2. Personal Data We Collect

We collect and process personal data that you voluntarily provide to us when using our Website.

Contact Forms

When you contact us through a contact form, we may collect:

  • Your name
  • Email address
  • Telephone number or other contact details, if provided
  • The contents of your message
  • Any other information you voluntarily provide

We use this information to respond to your enquiry and communicate with you regarding your request.

Newsletter Subscriptions

When you subscribe to our newsletter, we may collect:

  • Your name, if provided
  • Email address
  • Information concerning your subscription and consent

We use this information to send you newsletters and other communications for which you have subscribed.

You can unsubscribe at any time by using the unsubscribe link included in our newsletters or by contacting us.

Course Registration

When you register for an IMCCM course, we collect the information necessary to process and administer your registration.

This may include:

  • Name
  • Email address
  • Telephone number or other contact details
  • Course selected
  • Registration information
  • Other information you voluntarily provide during registration

We use this information to administer your registration, communicate with you about the course, and provide the requested services.

Please do not provide sensitive personal information through general contact or registration forms unless specifically requested by IMCCM and necessary for the relevant purpose.

3. How We Use Personal Data

We may use personal data to:

  • Respond to enquiries
  • Process and administer course registrations
  • Communicate with course participants
  • Send newsletters where you have subscribed
  • Provide information or services you have requested
  • Operate and maintain our Website
  • Protect our Website against spam, abuse, and automated submissions
  • Maintain website security
  • Obtain statistics about the use and performance of our Website
  • Comply with legal obligations
  • Establish, exercise, or defend legal claims where necessary

We do not sell your personal data.

4. Legal Bases for Processing

Where the GDPR applies, we process your personal data on one or more of the following legal bases:

Consent — Article 6(1)(a) GDPR

Where you have given consent, for example when subscribing to our newsletter or where consent is required for certain cookies or similar technologies.

You may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing carried out before withdrawal.

Contract or Pre-Contractual Measures — Article 6(1)(b) GDPR

Where processing is necessary to process your course registration, communicate with you regarding your registration, or provide services you have requested.

Legitimate Interests — Article 6(1)(f) GDPR

Where processing is necessary for our legitimate interests, such as:

  • Operating and maintaining our Website
  • Website security
  • Preventing spam and abuse
  • Responding to enquiries
  • Improving the Website
  • Maintaining appropriate technical records

We will only rely on legitimate interests where our interests are not overridden by your rights and freedoms.

Legal Obligation — Article 6(1)(c) GDPR

Where processing is necessary for us to comply with a legal obligation.

5. Website Statistics — Burst Statistics

We use Burst Statistics, a WordPress analytics and statistics plugin, to understand how visitors use our Website and to improve its content, functionality, and performance.

Burst Statistics is provided by Really Simple Plugins B.V.

Depending on the configuration of Burst Statistics, information processed for statistical purposes may include technical and usage information such as:

  • IP address or a privacy-preserved representation of an IP address
  • Browser and device information
  • Pages visited
  • Date and time of visits
  • Referring pages
  • Interactions with the Website
  • Other information necessary to generate website statistics

We use Burst Statistics for website statistics and improvement purposes. We do not use Google Analytics.

Where consent is required under applicable law, the relevant processing will only take place after the required consent has been obtained.

Further information about Burst Statistics can be found at:

https://burst-statistics.com/privacy-statement

6. Google reCAPTCHA

We use Google reCAPTCHA to help protect our forms and Website against spam, abuse, and automated submissions.

reCAPTCHA may process technical and interaction-related information to determine whether a submission is being made by a human user or an automated system.

This may include information such as IP address, browser and device information, and information relating to your interaction with the reCAPTCHA service.

Google’s processing of information is subject to Google’s own privacy policies.

More information is available at:

https://policies.google.com/privacy

Where consent is legally required for the relevant reCAPTCHA technology, we will obtain the required consent before activating it.

7. Cookies and Similar Technologies

Our Website uses cookies and similar technologies.

These may be used for:

  • Website functionality
  • Security
  • Spam prevention
  • Remembering consent preferences
  • Website performance and optimisation
  • Website statistics

We use WP Consent to manage consent preferences.

Detailed information about the cookies and similar technologies used on our Website, their purposes, providers, and retention periods is available in our separate Cookie Policy.

Where consent is legally required, non-essential cookies and similar technologies will not be activated before the required consent has been obtained.

You can change or withdraw your cookie preferences through the consent mechanism available on our Website.

8. WordPress and Website Plugins

Our Website is built using WordPress and uses various plugins to operate, secure, optimise, analyse, and manage the Website.

These currently include:

  • WP Consent
  • Yoast SEO
  • All In One Security (AIOS)
  • WP-Optimize
  • Burst Statistics

These plugins may process technical information where necessary to provide their respective functions. The specific information processed depends on the configuration of the Website and the relevant plugin.

9. Sharing Personal Data with Third Parties

We may share personal data with service providers where necessary to operate our Website, administer our services, or provide services to you.

These may include:

  • Website hosting providers
  • Email and newsletter service providers
  • IT and technical service providers
  • Website security and spam-prevention providers
  • Providers supporting course administration
  • Other service providers acting on our behalf

Where a third party processes personal data on our behalf, we take appropriate measures to ensure that the processing complies with the GDPR.

We do not sell your personal data.

We may also disclose personal data where required by law or where necessary to establish, exercise, or defend legal claims.

10. International Transfers

Some service providers may process personal data outside the European Economic Area (EEA).

Where personal data is transferred outside the EEA and the GDPR requires safeguards for such a transfer, we will ensure that an appropriate legal transfer mechanism is used.

This may include an adequacy decision by the European Commission or appropriate contractual safeguards such as Standard Contractual Clauses.

11. How Long We Keep Personal Data

We retain personal data only for as long as necessary for the purposes for which it was collected and to meet applicable legal and administrative requirements.

In general:

  • Contact-form information is retained for as long as reasonably necessary to respond to and manage the enquiry.
  • Newsletter information is retained while you remain subscribed, unless a longer retention period is required or permitted by law.
  • Course-registration information is retained for as long as necessary to administer the registration, provide the course, maintain appropriate records, and comply with legal obligations.
  • Technical and security information may be retained for an appropriate period for security, troubleshooting, and abuse-prevention purposes.

Where a specific legal retention period applies, we will retain the relevant information for the period required by law.

12. Your Rights Under the GDPR

Subject to the conditions and limitations of the GDPR, you may have the following rights:

Right of Access

You may request information about whether we process your personal data and request a copy of your personal data.

Right to Rectification

You may request that inaccurate or incomplete personal data be corrected.

Right to Erasure

You may request deletion of your personal data in circumstances provided for by the GDPR.

Right to Restriction of Processing

You may request that we restrict the processing of your personal data in certain circumstances.

Right to Data Portability

Where applicable, you may request to receive certain personal data in a structured, commonly used, and machine-readable format.

Right to Object

You may object to certain processing based on our legitimate interests.

You have an unconditional right to object to the processing of your personal data for direct marketing purposes.

Right to Withdraw Consent

Where we process your personal data based on consent, you may withdraw that consent at any time.

Withdrawal does not affect the lawfulness of processing carried out before the withdrawal.

13. How to Exercise Your Rights

To exercise your rights or ask a question about your personal data, please contact:

Taco van der Mark
info@imccm.eu

We may request information necessary to verify your identity before processing certain requests. This is intended to protect your personal data from being disclosed to an unauthorised person.

We will normally respond to a valid request within one month of receiving it.

Where permitted by the GDPR, this period may be extended by up to two additional months if the request is complex or if we receive a large number of requests. We will inform you if such an extension is necessary.

In principle, exercising your GDPR rights is free of charge.

14. Right to Lodge a Complaint

If you have concerns about how we process your personal data, we encourage you to contact us first so that we can investigate and address your concern.

You also have the right to lodge a complaint with a data protection supervisory authority.

As IMCCM is based in the Netherlands, the relevant supervisory authority is:

Autoriteit Persoonsgegevens
Dutch Data Protection Authority
https://www.autoriteitpersoonsgegevens.nl/

You may also have the right to lodge a complaint with the supervisory authority in the EU/EEA country where you live, work, or where you believe an infringement has occurred.

15. Data Security

We take appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or unauthorised access.

However, no method of transmission or electronic storage can be guaranteed to be completely secure.

16. Automated Decision-Making and Profiling

We do not use personal data collected through our Website for automated decision-making or profiling that produces legal or similarly significant effects on individuals.

17. Children’s Privacy

Our Website is not specifically directed at children.

We do not knowingly collect children’s personal data where such collection would be prohibited by applicable law.

If you believe that a child has provided us with personal data unlawfully, please contact us.

18. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes to our Website, services, data-processing activities, or applicable legal requirements.

The latest version will always be published on this page together with the date of the latest update.

19. Contact

If you have questions about this Privacy Policy, our processing of personal data, or your rights under the GDPR, please contact:

International Masterclass for Classical Chinese Medicine (IMCCM)
The Netherlands
Privacy contact: Taco van der Mark
Email: info@imccm.eu
Website: https://imccm.eu

Cookie Policy