Effective Date: April 22, 2026
This GDPR Compliance Statement explains how VITASIGNS complies with the European Union General Data Protection Regulation (Regulation (EU) 2016/679, the "EU GDPR") and the United Kingdom General Data Protection Regulation (the "UK GDPR") when we process personal data of individuals in the European Economic Area or the United Kingdom.
VITASIGNS is the trade name of Vitasigns LLC, a California limited liability company headquartered in Newport Beach, California, United States. VITASIGNS does not actively offer services to or monitor the behavior of individuals in the EEA or the UK as part of its primary business. This Statement describes how we handle personal data in the limited circumstances where the EU or UK GDPR may apply.
1. Scope and Territorial Application
The EU GDPR and UK GDPR may apply to VITASIGNS where we offer services to individuals in the EEA or UK or monitor their behavior in those territories. If you are located in the EEA or UK and access vitasigns.com or communicate with us, this Statement applies to the personal data we collect from or about you.
2. Controller and Contact
For personal data subject to the EU or UK GDPR, VITASIGNS acts as the controller. Our contact information for GDPR matters:
Vitasigns LLC
Attn: Privacy Officer
3723 Birch St., Suite 10
Newport Beach, CA 92660
United States
Email: privacy@vitasigns.com
Phone: +1 (949) 200-6840
3. Personal Data We Process
In the limited circumstances where we process the personal data of individuals in the EEA or UK, the categories typically include name, email address, telephone number, professional information, and information you choose to provide in correspondence with us. Where you visit our website, we may also process technical data such as IP address and browser information.
4. Lawful Bases for Processing
We process personal data on one or more of the following lawful bases under Article 6 of the EU GDPR:
- Consent (Article 6(1)(a)). When you have given us specific, informed, and unambiguous consent.
- Contract (Article 6(1)(b)). When processing is necessary for the performance of a contract with you or to take steps at your request before entering into a contract.
- Legal obligation (Article 6(1)(c)). When processing is necessary to comply with a legal obligation.
- Legitimate interests (Article 6(1)(f)). When processing is necessary for our legitimate interests or those of a third party, except where overridden by your interests or fundamental rights. Examples include responding to your inquiries, securing our website, and pursuing business relationships.
5. Special Category Data
We do not routinely process special category data of individuals in the EEA or UK through our website. Where we do process such data, we rely on your explicit consent under Article 9(2)(a) or another permitted basis under Article 9 of the EU GDPR.
6. Your Rights Under the GDPR
If you are an individual in the EEA or UK whose personal data we process, you have the following rights:
- Right of access (Article 15). To obtain confirmation of whether we process your personal data and a copy of that data.
- Right to rectification (Article 16). To request correction of inaccurate personal data.
- Right to erasure (Article 17). To request deletion of your personal data, subject to exceptions in the GDPR.
- Right to restriction of processing (Article 18). To request that we limit our processing of your personal data.
- Right to data portability (Article 20). To receive your personal data in a structured, commonly used, and machine-readable format.
- Right to object (Article 21). To object to processing based on legitimate interests or for direct marketing.
- Right to withdraw consent (Article 7(3)). Where processing is based on consent, to withdraw that consent at any time.
To exercise any of these rights, contact us at privacy@vitasigns.com. We will respond within one month, with a possible two-month extension if reasonably necessary.
7. Right to Lodge a Complaint
If you believe our processing of your personal data infringes the EU or UK GDPR, you may lodge a complaint with a supervisory authority. In the United Kingdom, the supervisory authority is the Information Commissioner's Office (ICO), available at ico.org.uk, telephone +44 303 123 1113. In the European Economic Area, you may contact the supervisory authority of your member state. A list of EU supervisory authorities is available at edpb.europa.eu/about-edpb/board/members_en.
8. International Transfers
VITASIGNS is based in the United States. If you are in the EEA or UK and we process your personal data, that data will be transferred to and processed in the United States. We rely on the following transfer mechanisms where required: Standard Contractual Clauses approved by the European Commission, with appropriate supplementary measures; UK International Data Transfer Agreement or the UK Addendum to the Standard Contractual Clauses, as applicable; and your explicit consent to the transfer, where appropriate. To request a copy of the transfer mechanisms we rely on, contact privacy@vitasigns.com.
9. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which we collected it, including to satisfy any legal, regulatory, or contractual requirements. Detailed retention periods are described in our Privacy Policy.
10. Security
We maintain appropriate technical and organizational measures to protect personal data, including encryption in transit, access controls, employee training, vendor due diligence, and incident response procedures.
11. Automated Decision-Making
We do not engage in automated decision-making, including profiling, that produces legal effects or similarly significantly affects individuals in the EEA or UK.
12. Changes to This Statement
We may update this GDPR Compliance Statement from time to time. The most recent version is always available at vitasigns.com/gdpr with an updated Last Updated date.
13. Related Policies
For full details on how we handle personal information generally, see our Privacy Policy. For information on our use of cookies, see our Cookie Policy. For SMS communications, see our SMS and Email Disclaimers.
Last Updated: April 22, 2026