Privacy Policy
Last updated 26 August 2026
This privacy policy describes how Fidova processes your personal data when you use our dog-training platform — when you create an account, book courses or facilities, communicate with trainers, and use our services. We process your data in accordance with the EU General Data Protection Regulation (GDPR). Fidova is in a test period and the service is being developed continuously. We update this policy when our processing changes.
Data controller
We and the trainer or organization you book with are each an independent controller for our own part of the processing — we are not joint controllers. Who is the controller depends on which processing is involved. Softsyde AB (company reg. no. 559598-7354), which operates Fidova, is the controller for the platform itself: your account and sign-in, the marketplace and the public pages, notifications and emails, security and audit logs, and how long data is kept, deleted and anonymized. When you book a course or a venue, the trainer or organization receives the data needed for that booking. From that point the trainer or organization is an independent controller for how the data is used in their own business — for example participant lists, training notes, bookkeeping and their contact with you. That is not something we decide. For part of the processing Softsyde AB acts as a processor on behalf of the trainer or organization, handling data on their instructions — for example when we store their participant lists and deliver their messages to you. If you have questions about how a trainer or organization uses your data, contact them first. For questions about the platform you can reach us through the contact page — and if you are unsure who to ask, you are always welcome to contact us. Our full company name, registration number and postal address are listed on our contact page at https://fidova.se/contact, where you will also find current contact details. All processing described here is carried out by Softsyde AB.
Personal data we process
We process the following categories of personal data: • Account data: name, email address, phone number, password (stored as a secure hash, not in plain text), and language preference. • Profile data: for trainers, also a bio, experience, specialties, and profile image. • Data about your dog: for example name, breed, age, and notes you enter yourself. • Booking and participation data: the courses and facilities you book, attendance, and waitlist position. • Payment status: whether a booking has been marked as paid and confirmed. We do not handle card or bank details (see the payments section of the Terms of Service). • Communications: messages, group chats, reviews, feedback, and anything you send through the contact form. • Training journal: notes and content you save about your training. • Technical information: IP address, device and browser information, logs, and error diagnostics needed for security and operation. • Visitor statistics: page views, where you came to the site from, country, device type and browser. The measurement is cookieless and is used to understand how the site is used — not to identify you. • Expression of interest: if you register interest in the test period before it opens, we keep the name, email, business name and message you supply on that form.
Purposes and legal basis
We process your data for the following purposes and on the following legal bases under the GDPR: • Providing the service — creating and managing your account, bookings, and communication. Legal basis: performance of a contract. • Sending necessary messages and notifications about your bookings and account. Legal basis: performance of a contract and legitimate interest. • Security, preventing misuse and fraud, and troubleshooting. Legal basis: legitimate interest. • Developing and improving the platform. Legal basis: legitimate interest. • Measuring how the site is used, with cookieless visitor statistics, to see what works and what needs improving. Legal basis: legitimate interest. • Meeting legal obligations, such as accounting requirements where they apply. Legal basis: legal obligation. If we ever process data for purposes that require your consent, we will ask for it separately, and you can withdraw it at any time.
Signing in with Google
You can choose to sign in with a Google account instead of an email address and password. It is optional — email and password work exactly as before, and you never need Google to use Fidova. If you choose Google, you are sent to Google to sign in there. Google therefore learns that you are signing in to Fidova, and processes that under its own privacy policy — we have no control over that processing. We never see your Google password. When you come back, we have received your email address, your name and your profile picture from Google, and stored them on your account with us. They are the same details we would otherwise have asked you to type. The legal basis is performance of a contract — we need them in order to give you an account. You can switch to email and password at any time by requesting a new password, and you delete the details held by us by closing your account. Stopping using Google sign-in does not remove anything at Google; you do that with them.
Transfers outside the EU/EEA
Some of our providers may process data in or from countries outside the EU/EEA. Where that happens, we ensure the transfer is protected by appropriate safeguards under the GDPR, such as the European Commission standard contractual clauses. Contact us if you would like more information about these safeguards.
How long we keep your data
We keep your personal data for as long as you have an active account and for as long as it is needed for the purposes described above. When you close your account it closes immediately: you are signed out and your profile leaves the public pages. Your data, however, is kept for 30 days, so you have time to change your mind and restore the account with the link we email you. Once those 30 days have passed the data is permanently anonymized and the account cannot be restored. We may be required to keep certain data longer — for example to meet accounting or other legal requirements. Logs and technical information are normally kept for a shorter period. If you register interest in the test period, those details are emailed to us and not stored in the service. We keep that email until we have chosen the first group of trainers, and you can ask us to delete it sooner at any time.
Your rights
Under the GDPR you have the right to: • access the data we process about you, • have inaccurate data corrected, • have data erased, • request restriction of processing, • object to processing based on legitimate interest, • receive and move data you have provided (data portability), and • withdraw consent where processing is based on consent. To exercise your rights, contact us via the contact page. We handle your request as soon as we can. During the test period, some requests are handled manually.
Contact and complaints
If you have questions about this policy or want to exercise your rights, reach us via the contact page at https://fidova.se/en/contact. If you believe we are processing your personal data unlawfully, you have the right to lodge a complaint with the Swedish Authority for Privacy Protection (IMY), the supervisory authority in Sweden, https://imy.se.