top of page

PRACTICAL INFORMATION

Privacy Policy

Last updated 24.09.2026

Data Controller

Psykolog Patrick Batiste is the data controller for the processing of personal data in connection with the website, enquiries, bookings, payment, psychological treatment and administration of the practice.

​

Psykolog Patrick Batiste
CVR: 46597079
Fredensgade 29, 1. tv.
8000 Aarhus C
Denmark
Tel.: +45 44 10 80 00
Email: kontakt@patrickbatiste.dk

​

If you have questions about the processing of your personal data or wish to exercise your data protection rights, you can contact me using the details above.

What personal data do I process?

The information processed depends on your contact with the practice.

​

This may include:

  • name and contact details, including telephone number and email address

  • date of birth, CPR number or other identification details where there is a relevant and lawful basis for the processing

  • information about bookings, appointment times, attendance and cancellations

  • payment, invoice and accounting information

  • information you provide yourself in connection with bookings or enquiries

  • health information and other sensitive personal data relevant to psychological treatment

  • information about the course of treatment, including patient record information, professional assessments and treatment-related matters

  • relevant correspondence with you

  • information about holders of parental responsibility or other relatives, where relevant

  • technical information relating to use of the website, including information about cookies and consent choices.

 

I only process information that is relevant and necessary for the specific purpose.

Where does the information come from?

Most information is received directly from you, for example when you book an appointment, contact me or participate in a course of treatment.

​

In some cases, relevant information may be received from others, for example a holder of parental responsibility, another healthcare professional, an insurance scheme or a public authority. This only takes place where there is a lawful basis for doing so and where the information is relevant to the specific purpose.

Purposes of the processing

Personal data is processed, among other purposes, in order to:

  • respond to enquiries and administer bookings

  • plan and provide psychological treatment

  • maintain and retain patient records in accordance with applicable rules

  • communicate with you before, during and after a course of treatment

  • administer payment, invoicing and accounting

  • manage cancellations, missed appointments and any payment claims

  • submit relevant information to, for example, Sygeforsikringen “danmark” where the relevant conditions are met

  • comply with legal and healthcare-related obligations

  • operate and secure the website and the systems used by the practice

  • establish, exercise or defend legal claims.

Legal basis for the processing

The processing of ordinary personal data takes place, depending on the purpose, including:

  • where processing is necessary to enter into or perform an agreement with you

  • where processing is necessary to comply with a legal obligation

  • where processing is necessary for legitimate interests in operating, administering and protecting the practice, provided that these interests are not overridden by your rights and interests.

 

Health information and other special categories of personal data are processed where necessary for healthcare and psychological treatment subject to professional confidentiality obligations.

​

The processing of clients’ health information is therefore not generally based on consent under the GDPR. Consent to healthcare treatment and consent under data protection law are two different things.

​

Where processing is specifically based on your consent, for example in relation to certain non-essential cookies or specific disclosures, you may withdraw your consent with effect for future processing.

Are you required to provide information?

It is voluntary to contact the practice and enter into a course of treatment.

​

Certain personal data is, however, necessary for me to administer a booking, communicate with you and provide treatment safely and appropriately. If the necessary information is not provided, this may in some cases mean that a booking or treatment cannot be carried out.

​

Other information is voluntary. For example, it is voluntary to describe the reason for your enquiry when booking online.

​

In some cases, I may be legally required to collect or record certain information as part of patient record keeping, bookkeeping or other statutory obligations.

Booking, client administration and patient records

The practice uses Terapeut Booking / EasyPractice for, among other things, booking, client administration and electronic patient records.

​

Information registered in connection with a booking may include contact details, the selected service, the appointment time and information that you choose to provide in connection with your enquiry.

​

Information about the reason for your initial enquiry may contain health information. Providing such information as part of the booking itself is voluntary.

​

As an authorised psychologist, I am required to maintain patient records. The patient record contains the information necessary to document and support the treatment.

Email and telephone

If you contact me by email, telephone or voicemail, the information necessary to handle your enquiry is processed.

​

If correspondence contains information relevant to your course of treatment, relevant information may be entered into your patient record.

​

I recommend that you do not send more sensitive information by ordinary email or SMS than necessary.

Online sessions

Online sessions are conducted via Microsoft Teams.

​

In connection with an online session, Microsoft may process technical information necessary to provide the service, for example information about the connection, meeting participation and technical operation.

​

The practice does not record online sessions and does not use automatic transcription as part of the treatment.

​

The same rules concerning confidentiality, patient records and the processing of personal data apply to online treatment as to treatment at the clinic.

Payment and accounting

In connection with payment and financial administration, relevant information may be processed by the payment and accounting solutions used by the practice.

​

The practice uses, among other services, EasyPay and MobilePay as well as the practice’s bank in connection with payment, invoicing and accounting.

​

Only the information necessary to complete the payment, document the transaction and comply with statutory bookkeeping and accounting requirements is processed.

Sygeforsikringen "danmark"

If you are a member of Sygeforsikringen “danmark” and wish information to be submitted for the purpose of receiving reimbursement, relevant information about treatment and payment may be submitted electronically to “danmark”.

​

Information is only submitted for clients who request it.

​

For psychological treatment without public subsidy, “danmark” requires electronic submission from the psychologist as a condition for reimbursement.

Insurance companies, public authorities and other third parties

Information about your course of treatment is generally not disclosed to employers, insurance companies, municipalities, relatives or other third parties without a relevant legal basis.

If a third party is to pay for or otherwise be involved in a course of treatment, it will be determined specifically which information is necessary to disclose and on what basis the disclosure may take place.

Information may also be disclosed where required by law or where other specific rules concerning healthcare disclosures apply.

The fact that another person pays for a course of treatment does not in itself give that person access to confidential information about the treatment.

Service providers and recipients of personal data

To operate the practice, I use a number of external service providers. Depending on their function, they may process personal data on my behalf as data processors or act as independent data controllers for parts of their processing.

Relevant providers and services include:

​

  • Terapeut Booking / EasyPractice – booking, client administration and patient records

  • Microsoft 365 and Microsoft Teams – email and online sessions

  • EasyPay and MobilePay – payment processing

  • Dinero – bookkeeping and accounting

  • Wix – operation of the website

  • Usercentrics – management of cookie choices and consent

  • Sygeforsikringen “danmark” – submission of relevant treatment and payment information where requested.

 

In addition, information may, where necessary, be processed by, for example, banks, public authorities or professional advisers.

​

Where a provider acts as a data processor, processing must take place under an agreement and instructions and in accordance with the requirements of data protection law.

Transfers of personal data outside the EU/EEA

Some of the IT and cloud providers used are international companies and may use subprocessors or carry out processing in countries outside the EU/EEA.

​

Where personal data is transferred to a country outside the EU/EEA, the transfer must take place on a valid basis under the GDPR rules on international data transfers, for example an adequacy decision or the European Commission’s Standard Contractual Clauses, where relevant.

​

The providers’ specific processing and transfer arrangements are assessed as part of the selection and use of the relevant services.

Retention and deletion

Personal data is not retained for longer than necessary for the purpose for which it was collected, unless a statutory retention obligation or another legitimate need applies.

​

Patient records are generally retained for at least five years from the date of the most recent entry.

​

Patient record material relevant to a complaint, supervisory matter or compensation case must be retained for as long as the case remains ongoing, even if the ordinary retention period has expired.

​

Accounting records are generally retained in accordance with Danish bookkeeping legislation for five years from the end of the financial year to which the material relates.

​

Enquiries, booking information and other administrative information are deleted or anonymised when there is no longer a relevant purpose for retaining them, unless the information also forms part of the patient record, accounting records or is necessary in connection with a legal claim.

Security

I take appropriate technical and organisational measures to protect personal data against, among other things, unauthorised access, loss, alteration or disclosure.

​

Access to information is limited to what is necessary, and the systems used for clinical and administrative purposes are protected by appropriate access controls and security measures.

​

External providers are selected and used with consideration for data protection and information security requirements.

​

No technical solution can be guaranteed to be completely risk-free, but personal data is processed using a level of protection appropriate to the information concerned and the risks associated with the processing.

Your rights

Under data protection law, you have a number of rights in relation to the processing of your personal data.

​

Depending on the circumstances, you may have the right to:

  • receive information about the processing

  • access the personal data processed about you

  • have inaccurate information corrected

  • have information erased in cases where the rules provide a right to erasure

  • have processing restricted

  • object to certain forms of processing

  • receive or have information transferred in cases where the rules on data portability apply.

 

These rights are not absolute. For example, information that I am legally required to maintain and retain as part of a patient record or accounting records cannot necessarily be deleted upon request.

​

If you wish to exercise your rights, you can contact me at kontakt@patrickbatiste.dk.

Automated decision-making and profiling

I do not use clients’ personal data for automated decision-making or profiling that produces legal effects or similarly significant effects for the individual.

Complaints to the Danish Data Protection Agency

If you are dissatisfied with the way your personal data is processed, you are welcome to contact me.

​

You also have the right to lodge a complaint with the Danish Data Protection Agency (Datatilsynet) regarding the processing of your personal data.

​

You can find information about complaint procedures and contact details on the Danish Data Protection Agency’s website.

Cookies and the website

The website is operated through Wix and uses cookies and similar technologies in connection with functionality, security and user experience.

​

A consent management solution from Usercentrics is used. When you first visit the website, only necessary cookies and scripts are intended to load by default. Other categories of cookies and scripts are loaded only after your choice in the cookie banner where consent is required.

​

You can choose which non-essential categories you wish to accept, and you can subsequently change or withdraw your choice through the website’s cookie settings.

​

Further information about the specific cookies, their purposes, providers and retention periods is available through the website’s cookie settings and cookie overview.

Changes to the Privacy Policy

This Privacy Policy may be updated if the practice’s processing of personal data, systems used or applicable rules change.

​

The current version will be available on the website together with the date on which it was most recently updated.

Contact

If you have questions about this Privacy Policy or about the processing of your personal data, you can contact:

Psykolog Patrick Batiste
Fredensgade 29, 1. tv.
8000 Aarhus C
Denmark
Tel.: +45 44 10 80 00
Email: kontakt@patrickbatiste.dk

Information about your rights as a patient, including confidentiality, patient records and access to records, can be found under Patient Information.

Information about booking, payment, cancellations and other commercial terms can be found under Terms and Conditions.

bottom of page