Privacy Policy
Last updated: September 2026
Human Age Labs respects the privacy of website visitors, customers, business contacts and persons submitting analytical testing requests.
This Privacy Policy explains how personal information is collected, used, shared and protected when you visit humanagelabs.com, contact Human Age Labs, submit an analytical testing request or use our report and Certificate of Analysis verification services.
1. Data controller
The entity responsible for personal-data processing relating to Human Age Labs is:
Larissa Bubka
Lozovetska St, 13,
Ternopil, Ternopil Oblast,
Ukraine, 46002
Operating as: Human Age Labs
Email: contact@humanagelabs.com
2. Applicable data-protection law
Human Age Labs processes personal information in accordance with applicable Ukrainian data-protection legislation, including the Law of Ukraine “On Personal Data Protection”.
Where the General Data Protection Regulation (GDPR) applies to particular processing activities, Human Age Labs will also process personal data in accordance with the GDPR.
3. Role of Human Age Labs
Human Age Labs is an analytical testing coordination platform.
Human Age Labs does not operate an analytical laboratory.
Where analytical testing is requested, Human Age Labs may coordinate the analysis with an independent third-party laboratory and receive analytical data and documentation produced by that laboratory.
Only information reasonably necessary for coordinating the requested service should be shared with third parties.
4. Website access and technical information
When you access humanagelabs.com, certain technical information may automatically be processed by the website, hosting infrastructure or security systems.
This may include:
- IP address;
- date and time of access;
- requested page or URL;
- referring page;
- browser type and version;
- device information;
- operating system;
- HTTP status information;
- technical error information;
- security-related information.
This information may be processed to:
- deliver the website;
- maintain website functionality;
- detect errors;
- prevent spam and abuse;
- protect the website and administrative systems;
- investigate security incidents.
Where the GDPR applies, such processing may be based on Article 6(1)(f) GDPR and our legitimate interest in operating a secure and functional website.
5. Contact enquiries
When you contact Human Age Labs through a website form or by email, we may process information including:
- name;
- email address;
- company or organisation;
- country;
- message content;
- other information voluntarily provided.
This information is used to respond to the enquiry and administer related communications.
Where the GDPR applies and the enquiry concerns a potential or existing contractual relationship, processing may be based on Article 6(1)(b) GDPR.
Other business communications may be processed on the basis of Article 6(1)(f) GDPR.
6. Analytical testing requests
When you request analytical testing coordination, Human Age Labs may process information including:
- name;
- business email address;
- company or organisation;
- country;
- requested analytical method;
- number of samples;
- sample identifiers;
- sample description;
- requested testing scope;
- shipping or submission information;
- report requirements;
- laboratory coordination information;
- quotation or payment-related information where applicable.
The information is used to:
- assess the request;
- identify a suitable analytical laboratory;
- coordinate sample submission;
- communicate analytical requirements;
- coordinate third-party laboratory analysis;
- receive analytical results;
- prepare standardized Human Age Labs documentation;
- provide report verification;
- respond to technical or administrative questions.
Submitting a request does not by itself mean that Human Age Labs has accepted the requested analysis.
7. Data minimisation
Human Age Labs seeks to limit the personal information supplied to independent laboratories.
Where reasonably possible, laboratory submissions should be associated with:
- a sample identifier;
- a Human Age Labs reference;
- technical sample information;
- requested analytical methods;
rather than personal customer information.
Laboratories should receive only the information reasonably necessary to perform the requested analysis.
8. Independent laboratory partners
Analytical testing is performed by independent third-party laboratories.
For the purpose of coordinating an analysis, Human Age Labs may provide the relevant laboratory with information including:
- sample reference;
- sample description;
- requested analytical methods;
- technical requirements;
- requested reporting parameters;
- other information necessary to perform the analysis.
Customer names, private addresses, personal email addresses and other personal contact information should not normally be shared with the laboratory unless required for the requested service, transport or another legitimate operational purpose.
Depending on the specific relationship and processing activity, a laboratory or other service provider may act as an independent data controller or as a processor.
9. Analytical results and Human Age Labs reports
Independent laboratories generate the underlying analytical measurements and results.
Human Age Labs may receive:
- analytical values;
- chromatograms;
- spectra;
- purity results;
- identity findings;
- laboratory reports;
- analytical metadata;
- other technical documentation.
Human Age Labs may organize and reproduce this laboratory-generated information in a standardized Human Age Labs report or Certificate of Analysis format.
Human Age Labs does not change the underlying laboratory-reported analytical values or findings when transferring them into its standardized reporting format.
10. Public Certificate of Analysis and report verification
Human Age Labs may operate a public report or Certificate of Analysis verification system.
A unique verification reference may allow a user to access or confirm analytical documentation associated with that reference.
Publicly accessible analytical documentation should not contain unnecessary personal information such as:
- customer names;
- private addresses;
- personal email addresses;
- telephone numbers;
- payment information;
- identification documents.
Public verification is intended to confirm the correspondence of analytical documentation and not the identity of the person or organisation that submitted the sample.
11. Sensitive and medical information
Human Age Labs does not request patient data, medical records, health information or other special-category personal information through its ordinary website forms.
Please do not submit:
- patient information;
- medical histories;
- health information;
- identifiable clinical information;
- identifiable human biological material;
- unnecessary sensitive personal information.
Human Age Labs is not a clinical or diagnostic laboratory service.
12. Email communications
Emails may contain:
- names;
- email addresses;
- company information;
- sample references;
- report references;
- message content;
- attachments;
- timestamps;
- technical delivery information.
This information may be processed for communication, testing coordination, business administration, documentation and security purposes.
13. Service providers
Human Age Labs may use third-party providers for functions including:
- website hosting;
- email hosting;
- website administration;
- information security;
- cloud storage;
- laboratory services;
- accounting;
- payment administration where applicable;
- professional legal or tax services.
Information is shared only to the extent reasonably necessary for the relevant purpose and subject to applicable legal requirements.
14. Cookies and similar technologies
Human Age Labs does not currently use behavioural advertising pixels or advertising tracking technologies.
Technically necessary cookies or comparable technologies may be used where required for:
- website functionality;
- security;
- administration;
- session management;
- abuse prevention.
If analytics, advertising or other non-essential technologies are introduced in the future, this Privacy Policy and any legally required consent mechanism will be updated accordingly.
15. Security and abuse prevention
Human Age Labs may process technical information for purposes including:
- spam prevention;
- bot detection;
- fraud prevention;
- attack prevention;
- unauthorised-access detection;
- system integrity;
- investigation of security incidents.
Where the GDPR applies, such processing may be based on Article 6(1)(f) GDPR and our legitimate interest in protecting our website, systems and users.
16. Retention
Personal information is retained only for as long as reasonably necessary for the purpose for which it was collected or where continued retention is required by applicable law.
Retention periods may vary according to the type of information involved.
For example:
- unsuccessful or general enquiries may be deleted when no longer required;
- analytical coordination records may be retained where necessary for technical traceability;
- report and verification references may be retained to preserve report authenticity and verification functionality;
- contractual and accounting information may be retained where required by applicable law;
- security information may be retained where necessary to investigate or document security incidents.
When information is no longer required, it may be deleted, anonymised or otherwise handled in accordance with applicable law.
17. International processing and transfers
Human Age Labs is operated from Ukraine.
Independent laboratories, hosting providers and other service providers may be located in Ukraine, the European Economic Area or other jurisdictions.
Information may therefore be processed outside the country in which the person submitting the information is located.
Where applicable law requires safeguards for an international transfer, Human Age Labs will use appropriate legal safeguards.
Where the GDPR applies, transfers of personal data will be handled in accordance with applicable GDPR requirements.
18. Rights concerning personal data
Depending on the law applicable to the processing, individuals may have rights including the right to:
- obtain information concerning the processing of personal data;
- request access to personal data;
- request correction of inaccurate information;
- request deletion where applicable;
- request restriction of processing where applicable;
- object to certain processing;
- request data portability where applicable;
- withdraw consent where processing is based on consent.
Requests may be submitted to:
Human Age Labs may request information reasonably necessary to verify the identity of the person making the request.
19. GDPR rights
Where the GDPR applies, individuals may exercise the rights provided by the GDPR subject to the conditions and limitations contained in applicable law.
Where processing is based on legitimate interests, individuals may have the right to object to such processing.
Where processing is based on consent, consent may be withdrawn at any time without affecting processing lawfully carried out before withdrawal.
20. EU representative
Where Human Age Labs is required to appoint a representative in the European Union pursuant to Article 27 GDPR, the appointed representative’s details will be published below:
EU Representative:
Larissa Bubka
This section does not indicate that an EU representative has already been appointed unless actual representative details are provided.
21. Complaints
Individuals may have the right to complain to the competent data-protection authority.
In Ukraine, data-protection matters fall within the applicable Ukrainian supervisory framework, including the powers of the Ukrainian Parliament Commissioner for Human Rights.
Where the GDPR applies, individuals may also have the right to lodge a complaint with the competent supervisory authority in the European Union.
22. Automated decision-making
Human Age Labs does not currently use automated decision-making producing legal or similarly significant effects in connection with ordinary analytical testing requests.
23. Security
Human Age Labs uses reasonable technical and organisational measures designed to protect information against:
- unauthorised access;
- accidental loss;
- misuse;
- disclosure;
- alteration;
- destruction.
Access to administrative systems and customer-related information is limited according to operational requirements.
24. Changes to this Privacy Policy
Human Age Labs may update this Privacy Policy to reflect changes in:
- services;
- laboratory relationships;
- website functionality;
- service providers;
- legal requirements;
- technical infrastructure.
The current version will be published on this page.
25. Contact
Questions concerning privacy or personal information may be sent to:
Information handling
Inquiries are stored in the website’s restricted administration area and an email notification is sent to the configured recipient. Website and email providers process data needed to operate these services. Information needed to coordinate testing may be shared with the relevant laboratory partner after scope review.
Cookies and technical data
This website does not include advertising pixels or analytics trackers in this version. WordPress uses necessary cookies for signed-in administrators. Short-lived hashed network identifiers are used for abuse prevention; infrastructure providers may keep operational server logs.
Retention and requests
Information should be kept only as long as necessary to handle the request and meet applicable obligations. Contact Human Age Labs to request access, correction or deletion of your information, or to ask about its handling.
Public certificates
Published Certificates of Analysis are accessible to people who know their reference or PDF link. Only reports cleared for public release should be uploaded.
HUMAN AGE LABS
