PRIVACY POLICY

THE DATA WE COLLECT AND WHAT WE USE IT FOR

In order to provide you with our products or services, we process the below information. We process your personal data either (i) because it is necessary for us to perform our contract with you, (ii) because we have a legitimate business interest that does not override your rights (for example, maintaining accurate records or improving our services), or (iii) where required, on the basis of your explicit consent - particularly in relation to direct marketing communications sent to individual consumers.

●      Personal Information: Name, date of birth, address, phone number, email

●      Medical Information: Medical history, current medications, allergies, treatment records, consultation notes

●      Photographs: Before-and-after images for treatment records (with consent)

●      Payment Information: Billing address, partial card details (if applicable)

●      Digital Data: IP address, website usage data (cookies), appointment booking records

THIS INFORMATION HELPS US TO:

●      Provide safe, appropriate, and tailored medical aesthetic treatments

●      Conduct medical consultations and assessments

●      Maintain accurate treatment and medical records

●      Manage appointment bookings and payments

●      Send appointment reminders and post-treatment care advice

●      Comply with our legal and regulatory obligations

We also may utilize your contact details and analyze web/email/survey analytics to perform marketing activities. We utilize either your consent for this where appropriate, or legitimate interests otherwise (like for business to business advertising) to help us best communicate with and provide relevant content to you.

Separately, we may obtain the following on the basis of our legitimate interests:

●      Business contact information from third-parties for the purposes of communicating with potential customers

●      Job application and resume/CV submissions to help you explore working with us

Our services are intended for adults aged 18 and over. We do not knowingly collect or process personal data relating to individuals under 18 years of age. If we become aware that we have collected data from a minor, we will delete it promptly.

Data transfer and sharing

We do not share or transfer your information with any third-parties other than for the purposes of enabling trusted service providers (such as cloud storage providers, payment processors, IT support, and marketing platforms) to support us in delivering our services. These providers act only under our instructions and do not use your data for their own purposes.

Any transfers of information sourced from the European Economic Area (EEA) or the UK to outside these regions will only be done under adequate and compliant measures, utilizing standard contractual clauses, transfer impact assessments, sufficient technical and organizational controls, and/or other adequacy measures. 

In the case of a company acquisition or similar scenario, your data may be transferred to the new entity, for which you will be notified where required.

Data security and retention

We have put into place robust technical and organizational security measures (such as encryption of data at rest and in transit, need-to-know access controls, and physical security measures) to prevent your personal data from being accidentally lost, used or accessed in an unauthorized way, altered or disclosed.

Personal data is stored in the EU and only kept as long as necessary to provide the requested services, maintain our customer leads fulfillment, and comply with any legal, regulatory, or tax requirements. Typically this is 8 years from the time of your last treatment for clinical data. For more information on retention specifics, please contact us.

Cookies and Tracking Technologies

We may use various technologies to collect information, and this may include sending cookies to your computer or mobile device. Cookies are small data files stored on your device that help us to improve the Services and your experience. We may also collect information using web beacon files (also known as “tracking pixels”), which may be used in the Services, website, or emails to help deliver cookies, count visits, understand usage and campaign effectiveness, and determine whether an email has been opened and acted upon.

You can edit your cookie preferences by using our cookie banner. Please note that if you choose to remove or reject cookies, this may affect the availability and functionality of the Services.

Your rights

You always have the right to withdraw your consent and, you also may have the right to the below requests. To exercise these rights, please see our contact details below.

●      Access, correct, delete, object or restrict the use of, and obtain a list of third-parties who have access to your personal data

●      Opt-out of the sale or sharing of your information to third-parties

●      Opt-out of automated-decision making, profiling, marketing, and targeted advertising

●      Right to not being discriminated against for not allowing your data to be shared 

Contact Us

For any questions or concerns on the processing of your personal data, to reach our data protection officer, or additional information on this privacy notice please contact us at info@drjoneydesouza.com.