Privacy Policy for AUMAA LTD


The event organiser, AUMAA LTD, has the legal responsibility to tell ticket buyers and event attendees how their personal information will be collected and used. You can find their Privacy Policy below or contact them to request it.


Datenschutzerklärung – Veranstaltungen der AUMAA LTD

1. Verantwortliche Stelle

AUMAA LTD, 16 Apostolou Pavlou, 8046 Paphos, Cyprus, info@aumaahealth.com, HE 474721. Bei Fragen zum Datenschutz kannst du dich jederzeit an diese Adresse wenden.

2. Welche Daten wir erheben

  • Vor- und Nachname, E-Mail-Adresse, Telefonnummer
  • Angaben zu Vorerkrankungen, Medikamenten und gesundheitlichen Einschränkungen
  • Antworten aus dem Gesundheits- bzw. Anamnesebogen
  • Kontaktdaten für den Notfall, sofern angegeben
  • Zahlungsbezogene Daten über unsere Zahlungsdienstleister

3. Besondere Kategorien personenbezogener Daten

Angaben zu Gesundheit, Vorerkrankungen und Medikamenten sind besondere Kategorien personenbezogener Daten im Sinne von Art. 9 DSGVO. Wir verarbeiten sie ausschließlich auf Grundlage deiner ausdrücklichen Einwilligung nach Art. 9 Abs. 2 lit. a DSGVO, und zwar allein zum Zweck der sicheren Durchführung der Veranstaltung und der Versorgung im Notfall. Diese Angaben sind nur der Veranstaltungsleitung zugänglich. Du kannst deine Einwilligung jederzeit mit Wirkung für die Zukunft widerrufen. Ohne diese Angaben ist eine sichere Teilnahme jedoch nicht möglich.

4. Zwecke und Rechtsgrundlagen

  • Vertragserfüllung und Organisation der Veranstaltung, einschließlich Vorgespräch und Anpassung des Ablaufs (Art. 6 Abs. 1 lit. b DSGVO)
  • Persönliche Kontaktaufnahme vor und nach der Veranstaltung per E-Mail, WhatsApp oder Telefon (Art. 6 Abs. 1 lit. b DSGVO)
  • Nutzung von Foto- und Videoaufnahmen ausschließlich auf Grundlage einer gesonderten, freiwilligen Einwilligung (Art. 6 Abs. 1 lit. a DSGVO)
  • Erfüllung gesetzlicher Aufbewahrungspflichten (Art. 6 Abs. 1 lit. c DSGVO)

5. Empfänger

Eine Weitergabe erfolgt nur, soweit dies zur Abwicklung der Veranstaltung erforderlich ist oder eine gesetzliche Pflicht besteht. Empfänger sind insbesondere: Ticket Tailor (Zimma Ltd, Buchungsplattform), Stripe und PayPal (Zahlungsabwicklung), Google (Formular für den Gesundheitsbogen), Meta Platforms (WhatsApp-Kommunikation) sowie die jeweilige Location. Mit Auftragsverarbeitern bestehen Verträge nach Art. 28 DSGVO.

6. Speicherdauer

Wir speichern deine Daten so lange, wie es für die Durchführung der Veranstaltung erforderlich ist. Gesundheitsdaten und Notfallkontakte werden spätestens drei Monate nach der Veranstaltung gelöscht. Buchungs- und Rechnungsdaten bewahren wir entsprechend den gesetzlichen Aufbewahrungsfristen auf.

7. Deine Rechte

Du hast das Recht auf Auskunft, Berichtigung, Löschung, Einschränkung der Verarbeitung, Datenübertragbarkeit und Widerspruch. Erteilte Einwilligungen kannst du jederzeit mit Wirkung für die Zukunft widerrufen. Außerdem hast du das Recht, dich bei einer Datenschutz-Aufsichtsbehörde zu beschweren. Wende dich für alle Anliegen einfach per E-Mail an uns.


Privacy policy – AUMAA LTD events (English)

1. Controller

AUMAA LTD, 16 Apostolou Pavlou, 8046 Paphos, Cyprus, info@aumaahealth.com, HE 474721. You can contact us at this address with any data protection question.

2. Data we collect

  • First and last name, email address, phone number
  • Information on pre-existing conditions, medication and health restrictions
  • Answers from the health questionnaire
  • Emergency contact details, where provided
  • Payment-related data via our payment providers

3. Special categories of personal data

Information about health, pre-existing conditions and medication are special categories of personal data under Art. 9 GDPR. We process them solely on the basis of your explicit consent under Art. 9(2)(a) GDPR, and only for the purpose of running the event safely and providing care in an emergency. This information is accessible only to the facilitator. You can withdraw your consent at any time with future effect. Without this information, safe participation is not possible.

4. Purposes and legal bases

  • Performance of the contract and organisation of the event, including the preliminary conversation and adjustments to the process (Art. 6(1)(b) GDPR)
  • Personal contact before and after the event by email, WhatsApp or phone (Art. 6(1)(b) GDPR)
  • Use of photos and video solely on the basis of separate, voluntary consent (Art. 6(1)(a) GDPR)
  • Compliance with statutory retention obligations (Art. 6(1)(c) GDPR)

5. Recipients

Data is shared only where necessary to deliver the event or where legally required. Recipients are in particular: Ticket Tailor (Zimma Ltd, booking platform), Stripe and PayPal (payment processing), Google (health questionnaire form), Meta Platforms (WhatsApp communication) and the respective venue. Data processing agreements under Art. 28 GDPR are in place.

6. Retention

We store your data for as long as it is needed to deliver the event. Health data and emergency contacts are deleted no later than three months after the event. Booking and invoicing data is kept in line with statutory retention periods.

7. Your rights

You have the right to access, rectification, erasure, restriction of processing, data portability and objection. You can withdraw consent at any time with future effect. You also have the right to lodge a complaint with a data protection supervisory authority. For any request, simply email us.