conSenso® Practice
Privacy
How we process and protect personal data on this website.

This information concerns the processing of personal data when you visit our website or contact us through the channels offered there.
This English translation is provided for convenience. In the event of any discrepancy, the German version is authoritative.
1. Controller
Marek KalbusconSenso® Practice for Integrative Osteopathy, Osteopathic Women’s Health and Body Psychotherapy
Pfalzburger Straße 43
10717 Berlin
Telephone: 030 2928111
Email: contact@marek-kalbus.de
2. General information
Personal data are information relating to an identified or identifiable person. We process such data only insofar as this is necessary for the secure operation of the website, the handling of enquiries, appointment scheduling or the performance of a treatment relationship.
The legal bases include, in particular, Article 6(1)(b) GDPR for pre-contractual measures and contracts, Article 6(1)(c) GDPR for legal obligations and Article 6(1)(f) GDPR for our legitimate interests in a secure, functional website and orderly communication. Where health data are processed, this takes place—depending on the context—on the basis of Article 9(2)(h) GDPR or your explicit consent.
This privacy policy concerns the website. Additional information about data processing within the treatment relationship is provided separately.
3. Hosting and server log data
This website is hosted by STRATO GmbH, Otto-Ostrowski-Straße 7, 10249 Berlin, Germany.
When the website is accessed, the web server processes technically necessary data. These may include the IP address, date and time of access, the file requested, the amount of data transferred, browser, operating system, the previously visited page and server status.
The processing serves the technical provision, stability and security of the website. The legal basis is Article 6(1)(f) GDPR. STRATO states that IP addresses are stored for no more than seven days for the detection and prevention of attacks. Where required, a data-processing agreement is in place with STRATO.
4. Contact by email or telephone
If you contact us by email or telephone, we process the data you provide in order to answer your enquiry, arrange an introductory consultation or appointment and, where appropriate, prepare a treatment relationship.
This may include your name, telephone number, email address, the content of the enquiry, appointment details and information about symptoms that you provide voluntarily. The legal basis is generally Article 6(1)(b) GDPR. Where health data are involved, the bases under Article 9 GDPR referred to above also apply.
Ordinary email is generally not encrypted end to end. Please send detailed findings, medical reports or other particularly sensitive health data only after prior arrangement.
5. WhatsApp Business
The website allows you to begin communication through WhatsApp Business via an external link. The provider in the European Economic Area is WhatsApp Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland.
Merely visiting our website does not transmit message data to WhatsApp through this link. Only when the link is clicked or a message is sent does WhatsApp process, among other things, the mobile number, profile data and communication data under its own terms.
Use is voluntary. You may also contact us by telephone or email. Please avoid sending detailed findings or other particularly sensitive health data via WhatsApp unless this has been agreed beforehand.
6. Online appointment booking through Doctolib
Our website contains an external link to the appointment service offered by Doctolib. Merely visiting our website does not transmit data to Doctolib. You leave our website only when you click the link.
Doctolib is responsible, under its own privacy information, for subsequent processing—for example of contact details, appointment data and, where applicable, health data. The provider is Doctolib GmbH, Mehringdamm 51, 10961 Berlin, Germany.
Use of Doctolib is voluntary. Appointments can alternatively be arranged by telephone, email or WhatsApp.
7. Profile and appointment booking through Jameda
Our website contains an external link to our profile and appointment booking on Jameda. Merely visiting our website does not transmit data to Jameda. The external service opens only when the link is clicked.
Jameda is responsible, under its own privacy information, for the processing there of contact details, appointment data, technical usage data and, where applicable, health data. Use is voluntary. Other contact options remain available.
8. Links to Google Maps
We do not embed a Google map in the website. We provide only external links to the two practice locations on Google Maps.
Google Maps opens only when you click such a link. Google may then process, in particular, the IP address, device and browser information, location data where authorised, and usage and account data. Google is responsible under its own privacy policy.
Use is voluntary. Both practice addresses are also stated directly on our website.
9. Billing through mediserv
Treatment services are billed through mediserv Bank GmbH, Am Halberg 6, 66121 Saarbrücken, Germany. To the extent required for billing and legally permitted or authorised by you, billing-related data are transmitted to mediserv.
Which data are involved, the purpose of the transmission and the applicable rights are explained separately as part of the treatment and billing process. The website itself does not transmit data to mediserv merely when it is visited.
10. Cookies, analytics and external content
Under its current technical configuration, this website does not use analytics, marketing or tracking services and does not set cookies that are not technically necessary.
- no Google Analytics
- no Meta Pixel
- no embedded Google map
- no embedded YouTube videos
- no social-media plugins
- no externally loaded fonts
- no embedded booking widgets
A consent banner is therefore not planned for the current technical setup. If additional services are integrated in future, the website will be adapted accordingly from both a technical and legal perspective.
11. Storage period
We store personal data only for as long as is necessary for the relevant purpose or as required by statutory retention obligations.
Contact and appointment enquiries are deleted once they have been fully dealt with and there are no legal or contractual grounds for further storage. Data from a treatment relationship, as well as billing and tax documents, are stored in accordance with the applicable documentation and retention obligations. Server log data are deleted or anonymised in accordance with the hosting provider’s specifications.
12. Recipients and transfers to third countries
Personal data may, to the extent necessary, be transmitted to hosting and IT service providers, appointment and communication providers, billing service providers, tax advisers, legally authorised public bodies or—with an appropriate legal basis—physicians or therapists involved in treatment.
Data are not disclosed for advertising purposes.
For external services such as Google or WhatsApp, processing outside the European Union or European Economic Area cannot be ruled out. As these services are linked rather than embedded on our website, a possible transfer of data generally begins only when you use the relevant external link.
13. Your rights
Subject to the statutory requirements, you have in particular the following rights:
- access to the data processed under Article 15 GDPR
- rectification of inaccurate data under Article 16 GDPR
- erasure under Article 17 GDPR
- restriction of processing under Article 18 GDPR
- data portability under Article 20 GDPR
- objection under Article 21 GDPR
- withdrawal of consent with effect for the future
To exercise your rights, it is sufficient to send a message using the contact details above.
14. Right to lodge a complaint
You have the right to lodge a complaint with a data-protection supervisory authority about the processing of your personal data.
Berlin Commissioner for Data Protection and Freedom of InformationAlt-Moabit 59–61
10555 Berlin
Telephone: 030 13889-0
Email: mailbox@datenschutz-berlin.de
Contact the supervisory authority
15. Data security
The published main website is provided via an encrypted HTTPS connection. In addition, we use appropriate technical and organisational measures to protect personal data against loss, alteration, unauthorised access or unauthorised disclosure.
Complete security of data transmission over the internet cannot, however, be guaranteed.
16. Updates to this policy
We update this privacy policy if the technical functions of the website, the services used or the legal requirements change.