Auburn Aesthetics – Privacy Policy
1. Introduction
This Privacy Policy explains how Auburn Aesthetics Limited (“Auburn Aesthetics“, “we”, “our”, “us”) collects, uses, stores, and protects your personal information.
We are committed to safeguarding your privacy in accordance with the UK GDPR and the Data Protection Act 2018.
2. Data We Collect
We may collect the following personal data from you:
- Full name, address, telephone number, email address.
- Date of birth and age.
- Medical history and treatment information.
- Payment information (processed securely via third-party providers; we do not store card details).
- Consent forms and photographs taken for treatment records.
3. How We Use Your Data
We process your personal data for the following purposes:
- To provide and manage your treatments.
- To contact you regarding appointments, aftercare, and follow-up.
- To comply with legal, regulatory, and insurance requirements.
- To send promotional offers, newsletters, or updates (only with your explicit consent).
4. Lawful Basis for Processing
We process your personal data under the following legal bases:
- Contract – to fulfil your treatment booking.
- Legal obligation – to comply with regulations and insurance requirements.
- Consent – for marketing and use of images.
- Legitimate interest – for managing and improving our services.
5. Age Requirement
You must be 18 years or older to receive treatments at Auburn Aesthetics. We do not knowingly collect or store personal data from individuals under 18.
6. Marketing & Consent
- We will only send you marketing communications if you have opted in.
- You may withdraw your consent at any time by emailing us.
- Any photographs used for marketing purposes will only be published with your explicit written consent.
7. Sharing Your Data
We will never sell your personal data.
We may share your information with:
- Regulatory bodies if required by law.
- Insurance providers for claims purposes.
- Third-party service providers (e.g., booking system, payment processors) who act under our instructions and comply with data protection laws.
8. Cookies
Our website uses cookies to improve your browsing experience and analyse site traffic. You can manage your cookie preferences in your browser settings.
9. Data Retention
We will retain your treatment and medical records for a minimum of 7 years after your last visit, in line with healthcare record retention guidelines. After this period, your data will be securely deleted.
10. Data Security
We take all reasonable measures to protect your data, including encrypted storage, password-protected systems, and restricted staff access.
11. Your Rights
Under the UK GDPR, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data (where legally possible).
- Withdraw consent for marketing.
- Object to processing in certain circumstances.
Requests should be sent to hello@auburn-aesthetics.co.uk.
12. Complaints
If you are unhappy with how we handle your data, please contact us in writing.
You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO): www.ico.org.uk
13. Changes to This Policy
We reserve the right to update this Privacy Policy at any time. The latest version will always be available on our website.
14. Contact Us
If you have any questions about this policy or your data, please contact:
hello@auburn-aesthetics.co.uk