Privacy Notice
Therapist Name: Rhiannon King
​
Therapist (Data Controller) Contact Details:
-
Telephone Number: 07730 786 727
-
Email Address: rkholistictherapy@gmail.com
Information Collected About You
In order to provide a professional service, I will need to ask for and keep information about you. I will only use this information for informing your treatment and any advice I give as a result of your treatment. I collect and store the following information about you:
​
-
Personally Identifiable Information (PII) including your name, address, contact details and, where appropriate, age when you book your first treatment
-
Medical Data including your medical history and other health-related information relevant to the treatment which I will collect during your first consultation
-
Treatment Data including your treatment details and related notes which I will take after each follow up consultation
​
I also collect and store information relating to your use of this website, including:
​
-
Transaction Data such as booking details and any follow up communication when you book a treatment
-
Payment Data such as PayPal details when you pay for a treatment
-
General Data you provide such as comments, feedback, reviews and recommendations on the website
-
Technical Data such as the Internet protocol (IP) address used to connect your computer to the Internet; e-mail address; computer and connection information and purchase history. I may use software tools to measure and collect session information, including page response times, length of visits to certain pages, page interaction information, and methods used to browse away from the page when on the website
Lawful Basis of Processing
As a full member of the Complementary Therapists Association (CThA), I abide by the CThA Code of Practice. The lawful basis under which I hold and use your information is:
​
-
Consent for direct marketing via email when you subscribe to my newsletter.
-
Legitimate interest for example for my requirement to retain the information in order to provide you with the best possible treatment options and advice and to use marketing analytics tools to measure the performance of my website.
-
Legal obligation:
-
Professional Indemnity insurance​
-
Laws regarding children's records
-
CThA and insurance requirements to retain information
-
-
​As I hold special category data (i.e. health related information), the Additional Condition under which I hold and use this information is for me to fulfil my role as a health care practitioner bound under the CThA as defined in the CTha Code of Practice.
How Long I Retain Your Information
I will keep your personally identifiable, medical, treatment and transaction data for the following periods:
​
-
claims occurring insurance: records to be kept for 5 years after last treatment
-
law regarding children's records: records to be kept until the child is 25 or if 17 when treated then 26
-
CThA requirements to retain information for 7 years
​
I will keep your payment data only for as long as fulfilling a payment.
I will keep your general and technical data for 12 months.
I will keep your contact data indefinitely unless you ask me otherwise.
​
Your data will not be transferred outside the UK without your consent.
Disclosure of Your Data
I will NOT share your medical, treatment or transaction information with anyone else (other than within my own practice, or as required for legal process) without explaining why it is necessary, and getting your explicit consent.
​
I will share your payment data with my payment provider in order to process the transaction.
​
Any feedback or comments that you post on my blog will be public but I will not share them anywhere other than my website. I will ask your permission if you have provided positive feedback following a treatment and I wish to display it on my website.
​
I use Google Analytics to monitor and analyse my website. Google Analytics is a web analytics service offered by Google that tracks and reports website traffic. Google uses the data collected to track and monitor your use of my website. This data is shared with other Google services. Google may use the collected data to contextualise and personalise the ads of its own advertising network. You can opt-out of having made your activity on my website available to Google Analytics by installing the Google Analytics opt-out browser add-on. The add-on prevents the Google Analytics JavaScript (ga.js, analytics.js and dc.js) from sharing information with Google Analytics about visits activity. For more information on the privacy practices of Google, please visit the Google Privacy & Terms web page: https://policies.google.com/privacy
​
I also use Google AdSense & DoubleClick Cookie. Google, as a third party vendor, uses cookies to serve ads on our Service. Google's use of the DoubleClick cookie enables it and its partners to serve ads to you based on your visit to my website and other websites on the Internet. You may opt out of the use of the DoubleClick Cookie for interest-based advertising by visiting the Google Ads Settings web page: http://www.google.com/ads/preferences/
​
Protection of Your Data
I am committed to ensuring that your personal data is secure. In order to prevent unauthorised access or disclosure, I have put in place appropriate technical, physical and managerial procedures to safeguard and secure the information I collect from you. Unfortunately, the internet is not a 100% secure medium for communication and, accordingly, I cannot guarantee the security of any information you send to me via the internet.
​
I will contact you using the contact details and preferences you have provided me in relation to:
-
Appointment confirmation and cancellations
-
Treatment information or information related to your health
-
Special offers, promotions and newsletters (if you choose to opt-in, you can opt-out at any time)
Your Rights
-
Right to Information: You have a right to know what Personal Data I hold about you and how I use it.
-
Right to Access: You have a right to be provided with a copy of your Personal Data (subject to certain restrictions). Please submit a message via the contact form if you would like to see your records.
-
Right to Rectification: You have a right to update any incomplete or inaccurate Personal Data I hold about you. Please submit a message via the contact form if you need to update your Personal Data or let me know in person.
-
Right to Erasure (Right to be Forgotten): You have a right to request that I delete your Personal Data. I might not always be able to (for example if I need to keep it by law) but please submit a message via the contact form if you would like to request erasure of your Personal Data.
-
Right to Restrict Processing: You have a right to request limits on how I use your Personal Data. Please submit a message via the contact form if you want to request limiting the use of your Personal Data.
-
Right to Request Data Portability: Under certain circumstances, you can request a copy of Personal Data held electronically so you can reuse it in other systems.
-
Right to Object: You have a right to tell me you don't want to use certain parts of your Personal Data, or only use it for certain purposes (for example, direct marketing).
-
Right to Withdraw Consent at Any Time: You have the right to withdraw your consent at any time where I am relying on consent to process your Personal Data.
-
Rights in relation to automated decision-making or profiling
-
Right to lodge a complaint with the Information Commissioner's Office
​
You will not usually be required to pay a fee to exercise your rights unless your request is manifestly unfounded or excessive.
I may need to confirm your identity before fulfilling your request. This is a security measure to ensure that Personal Data is not disclosed to any person who has no right to receive it.
If you are not satisfied with my response or believe I am processing your personal data not in accordance with the law you can make a complaint to the UK Supervisory Authority, the Information Commissioner’s Office (ICO). You can contact the ICO through their website: https://ico.org.uk/concerns/ or by telephone: 0303 123 1113.
Important to Know
-
If you don't agree to your therapist keeping records of information about you and your treatments, or if you don't allow them to use the information in the way they need to for treatments, the therapist may not be able to treat you.
-
Your therapist has to keep your records of treatment for a certain period as described above, which may mean that even if you ask them to erase any details about you, they might have to keep these details until after that period has passed
-
Your therapist can move their records between their computers and IT systems, as long as your details are protected from being accessed by others without your permission
Last Updated: Sep 2024