Apply Now

Privacy Policy

 

Last Updated: October 4, 2025

 

This Privacy Policy explains how Sven Elstermann (“I,” “me,” “my”) operating as Midlife Founders (the “Services”) collects, uses, shares, and protects your information. By using the Services, you agree to the practices described here.

 

1) Scope and audience

  

This Privacy Policy applies to:

  • Websites and pages I operate, including landing pages, forms, and funnels.

  • Email newsletters, marketing emails, and lead magnets.

  • Calls, webinars, workshops, and coaching programs, free, paid, or pro bono.

  • Customer portals and coaching workspaces hosted on third-party platforms.

This Policy does not apply to third-party websites or platforms that I do not control. Their privacy practices are governed by their own policies.

 

 

2) Children’s privacy

 

The Services are intended for adults. I do not knowingly collect personal information from anyone under 18. If you believe a minor provided personal information, please contact me and I will delete it.

 

 

3) Information I collect 

 

I collect information in three ways.

 

A) You provide it directly
  • Contact data: name, email address, phone number, location such as city and country, job title, company.

  • Account and profile data: login credentials where applicable, preferences.

  • Coaching and program data: assessments or answers you submit, goals, session notes we agree to capture, recordings if I record a call or webinar with notice, progress data, and feedback.

  • Transaction data: purchases, subscriptions, billing details processed by the payment processor, support requests.

  • Communications: emails you send, form submissions, messages in member areas or comment fields.

 

B) Collected automatically when you use the Services
  • Device and usage data: IP address, browser type, device type, operating system, time on page, pages viewed, links clicked, referring and exit pages, error logs.

  • Cookies and similar technologies: session cookies, preference cookies, and platform analytics cookies used by my hosting platform. See Section 8.

 

C) From third parties where lawful
  • Payment processors: limited transaction confirmations and fraud-prevention signals.

  • Scheduling, video, and workflow tools: basic meeting metadata such as time and attendee name or email and call recordings if recorded with notice.

  • Email marketing and CRM platform: subscription status, opens and clicks, and audience segmentation fields you submit.

  

Sensitive data: I do not require sensitive categories of data. If, in a coaching context, you choose to share sensitive information, I treat it as confidential and process it only for the agreed coaching purpose.

 

 

4) Purposes for using your information

 

I use your information to: 

  • Provide and operate the Services.

  • Deliver newsletters, updates, educational content, and resources you request.

  • Run webinars, workshops, and coaching programs, including participant communications.

  • Personalize content and offers where lawful, for example based on your stage or interests you tell me about.

  • Handle payments, billing, accounting, tax, and fraud prevention.

  • Provide support and respond to inquiries.

  • Maintain security, debug, and prevent misuse.

  • Analyze and improve performance, usability, and content.

  • Comply with laws and enforce terms.

 

Where required, I rely on your consent for example email marketing opt-in. Otherwise, I rely on contract to deliver what you requested, legitimate interests to operate and improve the Services, safeguard security, and market to subscribers, or legal obligations for accounting and compliance.

 

 

5) Email communications and marketing

 

  • You can unsubscribe from marketing emails at any time using the link in each email. Transactional or administrative emails related to purchases, service changes, or legal notices may still be sent.

  • If you reply to emails or submit forms, I will retain your message and contact details to respond and keep records consistent with this Policy.

 

 

6) Events, webinars, and recordings

 

  • If I host an event, webinar, or coaching call, I may collect registration details and participation data.

  • I will clearly indicate if a session is recorded. By attending a recorded session, you consent to the recording for program delivery, replays to attendees, and quality improvement. If you do not want to be recorded, please keep your camera off, mute your microphone, avoid chat participation, or contact me to request alternatives.

  • I may use aggregated, de-identified learnings to improve curricula and materials.

 

 

7) Payments

 

  • Payments are processed by third-party providers such as Stripe or the platform’s native checkout. I do not store full payment card numbers on my systems.

  • Processors handle card data under PCI-DSS standards. I receive limited information needed for receipts, taxes, and fraud prevention.

 

 

8) Cookies and tracking technologies

 

  • My current site and funnels are hosted on a platform that uses cookies for core functions such as page rendering, session management, checkout, login, and platform analytics.

  • I do not currently use Google Analytics on my site. Kajabi’s built-in analytics are used.

  • You can manage cookies through your browser settings. Blocking some cookies may affect site functionality, for example checkout or login.

  • Email newsletters may include pixel tracking to understand open and click activity and improve content.

  

Categories of cookies used by my hosting and email platforms 

  • Essential: required for security, login, checkout, and basic site functions.

  • Performance and analytics: help measure page performance and improve content.

  • Preferences: remember choices like language or previously viewed content.

 

If I add third-party analytics or advertising tags in the future, I will update this Policy and provide any required notices or choices.

 

 

9) How I share information

 

I do not sell or rent your personal information. I may share limited information with: 

  • Service providers and processors: site hosting, email distribution, webinar and video, scheduling, payment processing, CRM, customer support, document storage, and security services.

  • Professional advisors: auditors, accountants, legal counsel as needed for compliance and business operations.

  • Authorities: when required by law, court order, or to protect rights, safety, and security.

  • Business changes: if I incorporate, restructure, or transfer assets, your data may be transferred as part of the transaction. I will update this Policy and honor applicable rights.

 

I contractually or operationally require processors to protect personal data, use it only for my instructions, and apply appropriate security measures.

 

 

10) Social features and third-party links

 

The Services may include links to third-party sites, social media embeds, or community features. Content you post publicly may be readable by others. I am not responsible for third-party sites and their privacy practices.

 

 

11) Security

 

I use reasonable administrative, technical, and organizational safeguards to protect personal information against unauthorized access, loss, misuse, or alteration. No method of transmission or storage is completely secure. If I learn of a security incident affecting your data, I will act promptly and notify you and regulators where required.

 

 

12) Retention

  

I retain personal information for as long as needed to provide the Services, comply with legal obligations, resolve disputes, and enforce agreements. Typical retention periods:

  • Subscriber records: while active and for a reasonable period after unsubscribe for suppression and compliance.

  • Coaching notes and records: up to 24 months after the engagement unless we agree otherwise or law requires longer.

  • Transaction records: retained per tax and accounting laws.

  • Recordings: retained only as long as needed for replays to enrolled participants and program improvement.

 

 

13) Your privacy rights

  

Your rights depend on your location. I aim to honor valid requests wherever you live. 

 

A) General rights available broadly
  • Access a copy of your personal information.

  • Correct inaccurate or incomplete information.

  • Delete information, subject to legal exceptions.

  • Object to or restrict certain processing.

  • Withdraw consent where processing is based on consent.

  • Receive your data in a portable format where feasible.

 

How to make a request: Email [email protected] or the current support email on the site. I will verify your identity and respond within the time required by applicable law.

 

B) California residents CCPA and CPRA

  • Right to know the categories and specific pieces of personal information collected, sources, purposes, and categories of disclosures.

  • Right to delete personal information, with lawful exceptions.

  • Right to correct inaccurate data.

  • Right to opt out of sale or sharing of personal information. I do not sell personal information and I do not share it for cross-context behavioral advertising. If this changes, I will provide an opt-out mechanism and update this Policy.

  • Right to limit the use of sensitive personal information, not applicable in the ordinary course of my Services.

  • Right to non-discrimination for exercising these rights.

  

Opt-out preference signals such as GPC: I will treat a valid Global Privacy Control signal as a request to opt out of any sale or sharing if applicable now or in the future.

 

C) Virginia, Colorado, Connecticut, and Utah residents 
  • Rights may include access, correction, deletion, portability, and the right to opt out of targeted advertising, sale, and profiling in furtherance of decisions with significant effects. I do not sell personal information or engage in targeted advertising. You may still submit an opt-out request.

  • You may appeal a decision regarding your request by replying to my response email with Appeal in the subject.

 

D) EEA, UK, and Swiss residents GDPR, UK-GDPR, and FADP
  • Rights include access, rectification, erasure, restriction, portability, and objection.

  • Legal bases: consent, contract, legitimate interests, and legal obligations. I do not use automated decision-making producing legal or similarly significant effects.

  • Cross-border transfers: if your data is transferred outside your jurisdiction, I use lawful safeguards such as Standard Contractual Clauses and proportionate technical and organizational measures.

  • You may lodge a complaint with your local supervisory authority.

 

 

14) Do Not Track and preference signals

 

Some browsers offer Do Not Track. The Services do not respond to DNT signals. Where laws recognize Global Privacy Control or similar signals related to sale and sharing, I will honor them as set out above.

 

 

15) Coaching confidentiality

 

Coaching is confidential by default. I will not disclose coaching notes or session content without your consent, unless required by law or to prevent clear, serious, and imminent harm. If another party such as your employer sponsors coaching, I will agree with you in advance on what, if anything, is shared.

 

 

16) Changes to this Policy

 

I may update this Policy. The Last Updated date reflects the latest revision. Material changes will be highlighted on the site or by email where appropriate. Continued use of the Services after a change means you accept the updated Policy.

 

 

17) Contact

 

 

Data Controller 

Sven Elstermann

Email: sven.elstermann@gmail.com 

Postal mail: available on request

 

If a legal entity is formed, contact details will be updated here.

 

 

18) Region-specific disclosures, categories and sources similar to California style

  

To the extent required by law, the table below summarizes typical categories of personal information collected, sources, purposes, and disclosures.

 

Category examples

Sources

Business or commercial purposes

Disclosure to service providers

Identifiers such as name, email, IP address, device ID

You, device, hosting or email platforms

Account creation, communications, security, analytics

Yes

Customer records such as billing address and limited transaction data

You, payment processor

Purchases, subscriptions, tax and accounting

Yes

Commercial information such as products or services purchased

You, checkout system

Provide Services, customer support, accounting

Yes

Internet activity such as pages viewed, links clicked, time on page

Device, hosting platform

Site performance, security, content improvement

Yes

Approximate geolocation from IP

Device

Fraud prevention, performance analytics

Yes

Audio and visual such as event or webinar recordings with notice

You, conferencing tools

Program delivery, replays to participants

Yes

Inferences such as segments based on forms you submit

You

Personalizing content and follow-ups where lawful

Yes

 

Sale and sharing: I do not sell or share personal information as defined by CPRA. 

 

 

19) International users

 

 

The Services are operated in the United States. If you access the Services from outside the United States, your information may be transferred to and processed in the United States and other countries with different data protection laws. I take appropriate measures to protect cross-border transfers as described above. 

 

20) Effective date

This Privacy Policy is effective on the Last Updated date above.Â