Last updated: 24 August 2026
International Masterclass for Classical Chinese Medicine (IMCCM) (“IMCCM”, “we”, “us”, or “our”) respects your privacy and is committed to protecting your personal data.
This Privacy Policy explains how we collect and process personal data when you visit or use https://imccm.eu (the “Website”), contact us, subscribe to our newsletter, or register for an IMCCM course.
We process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable Dutch data protection legislation.
1. Who We Are
For the purposes of the GDPR, the organisation responsible for the processing of your personal data is:
International Masterclass for Classical Chinese Medicine (IMCCM)
The Netherlands
Website: https://imccm.eu
Privacy Contact
Taco van der Mark
Email: info@imccm.eu
Taco van der Mark is the privacy contact person for IMCCM. You can contact him with questions about this Privacy Policy, our processing of personal data, or your rights under the GDPR.
2. Personal Data We Collect
We collect and process personal data that you voluntarily provide to us when using our Website.
Contact Forms
When you contact us through a contact form, we may collect:
- Your name
- Email address
- Telephone number or other contact details, if provided
- The contents of your message
- Any other information you voluntarily provide
We use this information to respond to your enquiry and communicate with you regarding your request.
Newsletter Subscriptions
When you subscribe to our newsletter, we may collect:
- Your name, if provided
- Email address
- Information concerning your subscription and consent
We use this information to send you newsletters and other communications for which you have subscribed.
You can unsubscribe at any time by using the unsubscribe link included in our newsletters or by contacting us.
Course Registration
When you register for an IMCCM course, we collect the information necessary to process and administer your registration.
This may include:
- Name
- Email address
- Telephone number or other contact details
- Course selected
- Registration information
- Other information you voluntarily provide during registration
We use this information to administer your registration, communicate with you about the course, and provide the requested services.
Please do not provide sensitive personal information through general contact or registration forms unless specifically requested by IMCCM and necessary for the relevant purpose.
3. How We Use Personal Data
We may use personal data to:
- Respond to enquiries
- Process and administer course registrations
- Communicate with course participants
- Send newsletters where you have subscribed
- Provide information or services you have requested
- Operate and maintain our Website
- Protect our Website against spam, abuse, and automated submissions
- Maintain website security
- Obtain statistics about the use and performance of our Website
- Comply with legal obligations
- Establish, exercise, or defend legal claims where necessary
We do not sell your personal data.
4. Legal Bases for Processing
Where the GDPR applies, we process your personal data on one or more of the following legal bases:
Consent — Article 6(1)(a) GDPR
Where you have given consent, for example when subscribing to our newsletter or where consent is required for certain cookies or similar technologies.
You may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing carried out before withdrawal.
Contract or Pre-Contractual Measures — Article 6(1)(b) GDPR
Where processing is necessary to process your course registration, communicate with you regarding your registration, or provide services you have requested.
Legitimate Interests — Article 6(1)(f) GDPR
Where processing is necessary for our legitimate interests, such as:
- Operating and maintaining our Website
- Website security
- Preventing spam and abuse
- Responding to enquiries
- Improving the Website
- Maintaining appropriate technical records
We will only rely on legitimate interests where our interests are not overridden by your rights and freedoms.
Legal Obligation — Article 6(1)(c) GDPR
Where processing is necessary for us to comply with a legal obligation.
5. Website Statistics — Burst Statistics
We use Burst Statistics, a WordPress analytics and statistics plugin, to understand how visitors use our Website and to improve its content, functionality, and performance.
Burst Statistics is provided by Really Simple Plugins B.V.
Depending on the configuration of Burst Statistics, information processed for statistical purposes may include technical and usage information such as:
- IP address or a privacy-preserved representation of an IP address
- Browser and device information
- Pages visited
- Date and time of visits
- Referring pages
- Interactions with the Website
- Other information necessary to generate website statistics
We use Burst Statistics for website statistics and improvement purposes. We do not use Google Analytics.
Where consent is required under applicable law, the relevant processing will only take place after the required consent has been obtained.
Further information about Burst Statistics can be found at:
https://burst-statistics.com/privacy-statement
6. Google reCAPTCHA
We use Google reCAPTCHA to help protect our forms and Website against spam, abuse, and automated submissions.
reCAPTCHA may process technical and interaction-related information to determine whether a submission is being made by a human user or an automated system.
This may include information such as IP address, browser and device information, and information relating to your interaction with the reCAPTCHA service.
Google’s processing of information is subject to Google’s own privacy policies.
More information is available at:
https://policies.google.com/privacy
Where consent is legally required for the relevant reCAPTCHA technology, we will obtain the required consent before activating it.
7. Cookies and Similar Technologies
Our Website uses cookies and similar technologies.
These may be used for:
- Website functionality
- Security
- Spam prevention
- Remembering consent preferences
- Website performance and optimisation
- Website statistics
We use WP Consent to manage consent preferences.
Detailed information about the cookies and similar technologies used on our Website, their purposes, providers, and retention periods is available in our separate Cookie Policy.
Where consent is legally required, non-essential cookies and similar technologies will not be activated before the required consent has been obtained.
You can change or withdraw your cookie preferences through the consent mechanism available on our Website.
8. WordPress and Website Plugins
Our Website is built using WordPress and uses various plugins to operate, secure, optimise, analyse, and manage the Website.
These currently include:
- WP Consent
- Yoast SEO
- All In One Security (AIOS)
- WP-Optimize
- Burst Statistics
These plugins may process technical information where necessary to provide their respective functions. The specific information processed depends on the configuration of the Website and the relevant plugin.
9. Sharing Personal Data with Third Parties
We may share personal data with service providers where necessary to operate our Website, administer our services, or provide services to you.
These may include:
- Website hosting providers
- Email and newsletter service providers
- IT and technical service providers
- Website security and spam-prevention providers
- Providers supporting course administration
- Other service providers acting on our behalf
Where a third party processes personal data on our behalf, we take appropriate measures to ensure that the processing complies with the GDPR.
We do not sell your personal data.
We may also disclose personal data where required by law or where necessary to establish, exercise, or defend legal claims.
10. International Transfers
Some service providers may process personal data outside the European Economic Area (EEA).
Where personal data is transferred outside the EEA and the GDPR requires safeguards for such a transfer, we will ensure that an appropriate legal transfer mechanism is used.
This may include an adequacy decision by the European Commission or appropriate contractual safeguards such as Standard Contractual Clauses.
11. How Long We Keep Personal Data
We retain personal data only for as long as necessary for the purposes for which it was collected and to meet applicable legal and administrative requirements.
In general:
- Contact-form information is retained for as long as reasonably necessary to respond to and manage the enquiry.
- Newsletter information is retained while you remain subscribed, unless a longer retention period is required or permitted by law.
- Course-registration information is retained for as long as necessary to administer the registration, provide the course, maintain appropriate records, and comply with legal obligations.
- Technical and security information may be retained for an appropriate period for security, troubleshooting, and abuse-prevention purposes.
Where a specific legal retention period applies, we will retain the relevant information for the period required by law.
12. Your Rights Under the GDPR
Subject to the conditions and limitations of the GDPR, you may have the following rights:
Right of Access
You may request information about whether we process your personal data and request a copy of your personal data.
Right to Rectification
You may request that inaccurate or incomplete personal data be corrected.
Right to Erasure
You may request deletion of your personal data in circumstances provided for by the GDPR.
Right to Restriction of Processing
You may request that we restrict the processing of your personal data in certain circumstances.
Right to Data Portability
Where applicable, you may request to receive certain personal data in a structured, commonly used, and machine-readable format.
Right to Object
You may object to certain processing based on our legitimate interests.
You have an unconditional right to object to the processing of your personal data for direct marketing purposes.
Right to Withdraw Consent
Where we process your personal data based on consent, you may withdraw that consent at any time.
Withdrawal does not affect the lawfulness of processing carried out before the withdrawal.
13. How to Exercise Your Rights
To exercise your rights or ask a question about your personal data, please contact:
Taco van der Mark
info@imccm.eu
We may request information necessary to verify your identity before processing certain requests. This is intended to protect your personal data from being disclosed to an unauthorised person.
We will normally respond to a valid request within one month of receiving it.
Where permitted by the GDPR, this period may be extended by up to two additional months if the request is complex or if we receive a large number of requests. We will inform you if such an extension is necessary.
In principle, exercising your GDPR rights is free of charge.
14. Right to Lodge a Complaint
If you have concerns about how we process your personal data, we encourage you to contact us first so that we can investigate and address your concern.
You also have the right to lodge a complaint with a data protection supervisory authority.
As IMCCM is based in the Netherlands, the relevant supervisory authority is:
Autoriteit Persoonsgegevens
Dutch Data Protection Authority
https://www.autoriteitpersoonsgegevens.nl/
You may also have the right to lodge a complaint with the supervisory authority in the EU/EEA country where you live, work, or where you believe an infringement has occurred.
15. Data Security
We take appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or unauthorised access.
However, no method of transmission or electronic storage can be guaranteed to be completely secure.
16. Automated Decision-Making and Profiling
We do not use personal data collected through our Website for automated decision-making or profiling that produces legal or similarly significant effects on individuals.
17. Children’s Privacy
Our Website is not specifically directed at children.
We do not knowingly collect children’s personal data where such collection would be prohibited by applicable law.
If you believe that a child has provided us with personal data unlawfully, please contact us.
18. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes to our Website, services, data-processing activities, or applicable legal requirements.
The latest version will always be published on this page together with the date of the latest update.
19. Contact
If you have questions about this Privacy Policy, our processing of personal data, or your rights under the GDPR, please contact:
International Masterclass for Classical Chinese Medicine (IMCCM)
The Netherlands
Privacy contact: Taco van der Mark
Email: info@imccm.eu
Website: https://imccm.eu