GDPR Compliant

Cookie Policy

How GaitExo uses cookies and similar technologies on gaitexo.com

Last updated: June 2025  ·  Effective date: June 1, 2025

This Cookie Policy explains how GaitExo ("we," "us," or "our") uses cookies and similar tracking technologies when you visit our website at gaitexo.com (the "Site"). GaitExo is a B2B medical device export company headquartered in China, operating as an international trade and brand operator specializing in lower-limb exoskeleton and gait rehabilitation solutions for European healthcare markets.

This policy is designed to comply with the EU General Data Protection Regulation (GDPR), the ePrivacy Directive (Cookie Law), and applicable national implementations including the German Telecommunications-Telemedia Data Protection Act (TTDSG). By continuing to use our Site, you acknowledge this policy. Where consent is required, we will ask for it explicitly before placing non-essential cookies.

1. What Are Cookies?

Cookies are small text files placed on your device (computer, tablet, or mobile phone) when you visit a website. They are widely used to make websites work more efficiently, to provide a better browsing experience, and to give website owners information about how their site is used.

In addition to cookies, we may also use similar technologies such as:

  • Web Beacons / Pixel Tags: Tiny transparent images embedded in web pages or emails that help us understand user interactions and email open rates.
  • Local Storage: Browser-based storage that allows websites to store data locally on your device, similar to cookies but with greater capacity.
  • Session Storage: Temporary storage that is cleared when you close your browser session.

Cookie lifespan: Cookies can be either session cookies (deleted when you close your browser) or persistent cookies (remaining on your device for a set period or until you delete them).

2. Cookies We Use

Strictly Necessary Cookies

Always active -- no consent required

Required

These cookies are essential for the website to function properly. They enable core features such as security, network management, and accessibility. You cannot opt out of these cookies, as the website cannot function without them. Under the GDPR and ePrivacy Directive, these cookies do not require your consent.

Cookie Name Purpose Duration Provider
cookie_consent Stores your cookie consent preferences 12 months gaitexo.com
PHPSESSID / session_id Maintains user session state across pages Session gaitexo.com
csrf_token Protects against cross-site request forgery attacks on forms Session gaitexo.com

Analytics & Performance Cookies

Requires your consent

Consent Required

These cookies help us understand how visitors interact with our website by collecting and reporting information anonymously. We use this data to improve website performance, content relevance, and the overall user experience for our B2B audience of medical device distributors and hospital procurement managers.

Cookie Name Purpose Duration Provider
_ga Distinguishes unique users for Google Analytics reporting 2 years Google Analytics
_ga_[ID] Maintains session state for Google Analytics 4 2 years Google Analytics
_gid Distinguishes users for Analytics; expires after 24 hours 24 hours Google Analytics
_gat Throttles request rate to Google Analytics servers 1 minute Google Analytics

IP Anonymization: We have enabled IP anonymization in Google Analytics. Your full IP address is never stored; only the first three octets are retained. We have also signed a Data Processing Agreement (DPA) with Google LLC as required under GDPR Article 28.

Marketing & Advertising Cookies

Requires your consent

Consent Required

These cookies are used to deliver relevant advertisements to our target B2B audience -- primarily medical device distributors and rehabilitation hospital procurement teams in Germany and Nordic markets -- and to measure the effectiveness of our marketing campaigns on Google Ads and LinkedIn.

Cookie Name Purpose Duration Provider
_gcl_au Google Ads conversion tracking and campaign attribution 3 months Google Ads
_gcl_aw Stores last Google Ads click information for conversion tracking 3 months Google Ads
li_fat_id LinkedIn first-party ad tracking for B2B campaign measurement 30 days LinkedIn
bcookie LinkedIn browser identifier for ad frequency and relevance 1 year LinkedIn
lidc LinkedIn data center routing and load balancing 24 hours LinkedIn

Functional Cookies

Requires your consent

Consent Required

Functional cookies enable enhanced functionality and personalization. They may be set by us or by third-party providers whose services we have added to our pages. If you do not allow these cookies, some or all of these services may not function properly.

Cookie Name Purpose Duration Provider
lang_pref Remembers your language or region preference 1 year gaitexo.com
hs-messages-* HubSpot live chat session state and conversation history Session / 1 year HubSpot
hubspotutk Tracks visitor identity for HubSpot CRM form submissions 13 months HubSpot

3. Third-Party Services & Data Transfers

Some cookies on our site are placed by third-party service providers. These third parties may process your personal data on our behalf or for their own purposes. Where such processing involves transfer of data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission.

Google LLC

Google Analytics 4 and Google Ads. Data transferred to the US under EU-US Data Privacy Framework and SCCs. DPA signed per GDPR Art. 28.

Google Privacy Policy

LinkedIn Ireland

LinkedIn Insight Tag for B2B campaign tracking and retargeting of medical device distributor audiences. Data processed in Ireland (EEA).

LinkedIn Privacy Policy

HubSpot Inc.

CRM and live chat for B2B lead management. Data transferred to the US under SCCs. Used only for business contact forms and distributor inquiries.

HubSpot Privacy Policy

Cloudflare Inc.

CDN and security services. Strictly necessary for DDoS protection and performance. Sets security cookies that do not require consent under the ePrivacy Directive.

Cloudflare Privacy Policy

4. Your Choices & How to Control Cookies

Your right to withdraw consent: You may withdraw your consent to non-essential cookies at any time. Withdrawal does not affect the lawfulness of processing based on consent before its withdrawal. To manage your preferences, use our cookie consent tool or the methods described below.

4.1 Cookie Consent Manager

When you first visit our website, a cookie consent banner will appear, allowing you to accept all cookies, reject non-essential cookies, or customize your preferences by category. You can revisit and change your choices at any time by clicking the "Cookie Settings" link in the footer of our website.

4.2 Browser Settings

Most web browsers allow you to control cookies through their settings preferences. However, limiting cookies may impact your experience of our site. Instructions for managing cookies in common browsers:

4.3 Opt-Out from Specific Services

Google Analytics Opt-Out: Install the Google Analytics Opt-out Browser Add-on to prevent your data from being used by Google Analytics across all websites.

Google Ads Personalization: Manage ad personalization at Google Ad Settings.

LinkedIn Opt-Out: Manage LinkedIn ad preferences in your LinkedIn account settings or opt out of interest-based ads via the Your Online Choices portal.

Industry Opt-Out Tools: European users may use Your Online Choices (EU) or the NAI Opt-Out Tool to manage behavioral advertising preferences across participating companies.

6. Data Retention

Cookie-related data is retained only for as long as necessary to fulfill the purposes described in this policy, or as required by applicable law. Specific retention periods are listed in the cookie tables above.

Analytics data collected via Google Analytics is retained for a maximum of 14 months in our Google Analytics property, after which it is automatically deleted. Aggregate, anonymized statistical data may be retained indefinitely for business analysis purposes.

Your cookie consent records (what you consented to and when) are retained for 3 years as evidence of compliance, in accordance with GDPR accountability requirements under Article 5(2).

7. Your Data Protection Rights

If you are located in the European Economic Area, you have the following rights under the GDPR with respect to personal data processed through cookies:

Right of Access (Art. 15)

Request a copy of the personal data we hold about you collected via cookies.

Right to Erasure (Art. 17)

Request deletion of personal data collected through cookies, where no overriding legitimate grounds exist.

Right to Withdraw Consent (Art. 7)

Withdraw consent for non-essential cookies at any time via our consent manager or browser settings.

Right to Object (Art. 21)

Object to processing based on legitimate interests, including profiling for direct marketing.

Right to Data Portability (Art. 20)

Receive your data in a structured, commonly used, machine-readable format where technically feasible.

Right to Lodge a Complaint

Lodge a complaint with your local supervisory authority (e.g., Germany's BfDI or Landesbeauftragter für Datenschutz).

8. Updates to This Policy

We may update this Cookie Policy from time to time to reflect changes in technology, regulation, our business practices, or for other operational, legal, or regulatory reasons. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you via a banner on our website or by email if you are a registered contact.

We encourage you to review this policy periodically to stay informed about our use of cookies. Your continued use of our website after any changes constitutes your acknowledgment of the updated policy. Where changes require fresh consent (e.g., introduction of new non-essential cookies), we will re-present our consent banner.

9. Contact Us

If you have any questions, concerns, or requests regarding this Cookie Policy or our data processing practices, please contact our data privacy team. We will respond to all legitimate requests within 30 days in accordance with GDPR Article 12.

Data Controller

GaitExo

International Trade & Brand Operations

People's Republic of China

Privacy Contact

Email: privacy@gaitexo.com

Website: gaitexo.com

For urgent GDPR requests, please include "GDPR Request" in your email subject line.

Supervisory Authority: If you are unsatisfied with our response, you have the right to lodge a complaint with the relevant data protection supervisory authority in your EU member state. For Germany, this is the Bundesbeauftragter für den Datenschutz und die Informationsfreiheit (BfDI).

© 2025 GaitExo. This Cookie Policy is effective as of June 1, 2025.

Privacy Policy Terms of Service