Privacy Policy
At Reshape U Clinic, accessible from https://reshapeuclinic.co.uk, one of our primary concerns is the privacy of our visitors. This Privacy Policy document outlines the types of personal data we collect, how we process and protect that data, and your rights as a user under applicable privacy regulations.
We take your privacy seriously and are committed to safeguarding your personal information. This Privacy Policy explains our practices concerning your data, including collection, use, storage, and protection measures. It also describes your rights in relation to your personal information.
​
1. Who We Are
Reshape U Clinic is a health and wellness clinic specializing in aesthetic treatments. Our website (https://reshapeuclinic.co.uk) allows users to learn about our services, book appointments, and contact us for inquiries. Our company is based in the United Kingdom, and we comply with the UK Data Protection Act 2018 and the General Data Protection Regulation (GDPR).
For the purposes of applicable data protection laws, the data controller of your personal information is Reshape U Clinic. If you have any questions about this Privacy Policy, you can contact us via the information provided below.
1.1 What We Do
Treatment of Disease, Disorder, or Injury
-
This encompasses private outpatient consultations for hair restoration surgery, physical assessments, prescription of medications, and referrals to other healthcare professionals as needed.
Surgical Procedures
-
We perform day-case surgical treatments for hair restoration, including Follicular Unit Extraction (FUE) using local anaesthesia.
Diagnostic and Screening Procedures
-
Our diagnostic services include referrals to specialists when necessary. As a leading hair transplant clinic, we are dedicated to ensuring the privacy and security of the personal data we process on your behalf.
2. Personal Data We Collect
We collect and process personal data in various ways. This can include information you provide to us directly, data we collect through your use of the website, or data collected through third-party services.
2.1 Data You Provide
When you use our services, you may provide personal data directly. This includes:
-
Contact Information: Name, phone number, email address, postal address.
-
Appointment Details: Date, time, type of service requested, medical information related to the service.
-
Payment Information: Card details and billing address when making payments.
-
Health Information: Medical history or other relevant information provided in consultation forms or during appointments (this is classified as special category data under GDPR).
-
Feedback/Inquiry Information: Any personal data shared when contacting us through forms, emails, or calls.
2.2 Data We Automatically Collect
When you visit our website, we may collect certain technical data automatically. This includes:
-
Device and Usage Data: IP address, browser type, operating system, referral source, pages visited, time spent on site, and date/time stamps.
-
Cookies: We use cookies to enhance your browsing experience.
2.3 Third-Party Data
We may also receive personal data from third-party services we use to enhance the user experience or for marketing purposes. These may include:
-
Analytics Providers: Services like Google Analytics may collect anonymized usage data to help us understand how visitors interact with our website.
-
Advertising Partners: If you interact with our social media accounts or ads, personal data (e.g., profile data) may be shared with us based on your privacy settings.
3. How We Use Your Data
We process personal data for various purposes to provide you with the best possible service. This includes:
3.1 To Provide Our Services
-
Booking and managing appointments.
-
Administering treatments and health services.
-
Communicating with you about your treatments and any related inquiries.
3.2 For Marketing and Promotions
-
Sending promotional emails and newsletters with your consent.
-
Displaying relevant advertisements based on your browsing behavior.
-
Conducting surveys and feedback to improve services.
3.3 For Legal and Administrative Purposes
-
Complying with legal obligations, such as maintaining medical records.
-
Processing payments securely.
-
Investigating and addressing any issues or disputes that arise.
3.4 To Improve Our Website and Services
-
Analyzing website traffic and user behavior to improve the website's functionality.
-
Personalizing your experience based on your preferences and interests.
4. Legal Basis for Processing Your Data
Under GDPR, we must have a lawful basis to process your personal information. We rely on the following legal grounds:
-
Consent: Where you have provided explicit consent for specific uses (e.g., marketing emails).
-
Contractual Necessity: When processing is necessary for the performance of a contract, such as when you book an appointment.
-
Legal Obligation: When processing is required to comply with a legal obligation, such as keeping medical records.
-
Legitimate Interests: Where processing is in our legitimate business interests (e.g., to improve services), and we have balanced these interests with your rights and interests.
5. How We Share Your Data
We do not sell your personal data. However, we may share it with trusted third parties to help deliver our services:
-
Service Providers: We may share data with third parties who provide operational services, such as IT providers, payment processors, and analytics services.
-
Healthcare Professionals: If necessary, we may share medical data with healthcare professionals involved in your treatment.
-
Legal and Regulatory Authorities: We may disclose data to comply with legal or regulatory requirements.
-
Business Transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred as part of the business transaction.
6. How We Protect Your Data
We implement a variety of security measures to protect your personal data from unauthorized access, use, or disclosure. These measures include:
-
Encryption: Sensitive data, such as payment information, is encrypted during transmission.
-
Access Controls: Only authorized personnel have access to your personal information.
-
Data Minimization: We only collect the data we need to provide our services.
-
Regular Monitoring: We continuously monitor our systems for vulnerabilities and breaches.
While we take every measure to safeguard your data, no transmission over the internet is completely secure, and we cannot guarantee absolute security.
7. Data Retention
We retain personal data only for as long as is necessary for the purposes outlined in this Privacy Policy, including:
-
Medical Data: Retained for a period necessary to comply with legal obligations, such as the UK’s medical records retention requirements.
-
Contact Information: Retained for the duration of your relationship with us or as required for legal and legitimate business purposes.
-
Marketing Data: Retained until you withdraw consent.
Once data is no longer needed, we will securely delete or anonymize it.
8. Your Rights
Under GDPR, you have several rights concerning your personal data. These include:
-
Right of Access: You can request access to the personal data we hold about you.
-
Right to Rectification: If your personal data is inaccurate, you can request it to be corrected.
-
Right to Erasure: You can request that we delete your personal data under certain circumstances.
-
Right to Restriction: You can request that we restrict the processing of your data in specific cases.
-
Right to Data Portability: You can request to receive your personal data in a commonly used format to transfer it to another service provider.
-
Right to Object: You have the right to object to the processing of your data in some circumstances, such as for direct marketing purposes.
-
Right to Withdraw Consent: If you have given consent for the processing of your personal data, you can withdraw it at any time.
To exercise these rights, please contact us at privacy@reshapeuclinic.co.uk.
9. Cookies and Tracking Technologies
We use cookies to improve your browsing experience and collect information about how you use our website. Cookies help us provide a more personalized experience and track website traffic.
10. Children's Privacy
Our website is not intended for children under 16, and we do not knowingly collect personal data from children. If we become aware that we have inadvertently collected personal information from a child without proper consent, we will delete it as soon as possible.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or industry standards. When we update the policy, we will revise the "Effective Date" at the top and notify you of any significant changes.
12. Contact Us
If you have any questions, concerns, or requests about this Privacy Policy, you can contact us using the following information:
-
Email: info@reshapeuclinic.co.uk