Privacy Policy

Last updated: May 2025

 

Who we are

Our website address is https://limbica.com. Limbica is operated by Monica Mazzarino, based in Munich, Germany. As a business operating within the European Union, we comply fully with the General Data Protection Regulation (GDPR).

For any privacy-related questions, contact us at info@limbica.com. We respond within 30 days.

 

What data we collect and why

When you visit limbica.com

We collect standard server logs — including IP address, browser type, pages visited, and time of visit — for security and performance monitoring. This data is retained for a maximum of 90 days and is not used for profiling or marketing.

When you complete the Deadlock Diagnostic

If you complete the Deadlock Diagnostic assessment on our site, we collect:

  • Your first name
  • Your work email address
  • Your professional role (optional, if provided)

Your diagnostic answers are processed in your browser only and are not stored on our servers. Only the contact information above is transmitted — and only when you explicitly submit the form and tick the consent checkbox.

This data is collected so we can deliver your diagnostic results and, with your explicit consent, send occasional insights related to organizational friction and executive leadership. The legal basis is your freely given, specific, and informed consent (GDPR Article 6(1)(a)).

When you book a Diagnostic Conversation

If you book a conversation via our calendar, we collect your name, email address, and any information you provide in the pre-booking questions. This is used solely to arrange and manage the appointment. The legal basis is the performance of pre-contractual steps at your request (GDPR Article 6(1)(b)).

 

Cookies

limbica.com uses a cookie consent banner. We set non-essential cookies (analytics, preferences) only after you have given explicit consent. You can withdraw consent at any time by clearing your browser cookies and reloading the page. Essential cookies required for the site to function are set automatically and do not require consent.

 

Embedded content from other websites

Pages on this site may include embedded content such as videos or maps. Embedded content from other websites behaves as if you had visited those websites directly. Those sites may collect data about you, use cookies, and monitor your interaction with the embedded content. We have no control over third-party data practices.

 

Analytics

Who we share your data with

We do not sell, rent, or trade your personal data. We share data only with the service providers necessary to operate our services:

  • Kit (formerly ConvertKit) — email delivery and subscriber management. Data is processed under GDPR-compliant Standard Contractual Clauses.
  • Google Calendar / Google Meet — appointment scheduling and video calls, used only when a conversation is booked.
  • Zoom / Microsoft Teams — video infrastructure, used only at the client’s request as an alternative to Google Meet.

All service providers are contractually bound to process your data only on our instructions and in accordance with applicable data protection law.

How long we retain your data

  • Email subscribers: retained until you unsubscribe. You may unsubscribe at any time via the link in any email we send.
  • Booking data: retained for 12 months after the appointment, then deleted.
  • Server logs: retained for a maximum of 90 days.

 

What rights you have over your data

Under GDPR, you have the right to: access the data we hold about you; request corrections; request deletion; restrict or object to processing; and receive your data in a portable format. Where processing is based on consent, you may withdraw that consent at any time.

To exercise any of these rights, email info@limbica.com. We will respond within 30 days.

If you are not satisfied with our response, you have the right to lodge a complaint with the Bayerisches Landesamt für Datenschutzaufsicht (BayLDA), the data protection supervisory authority in Bavaria.

How we protect your data

All pages on limbica.com use SSL/TLS encryption. We do not store passwords or financial information. We do not use automated decision-making or profiling. In the event of a data breach affecting your personal data, we will notify you and the relevant supervisory authority within 72 hours as required by GDPR.