In order to give professional reflexology and Indian Head Massage treatments, I will need to ask for and keep information about your health. I will only use this for informing reflexology and Indian Head Massage treatments and any advice I give as a result of your treatment. The information to be held is:
Most of the personal information I process is provided to me directly by you verbally or by filling in a consultation form (including your medical history) for one of the following reasons:
I use the information that you have given me in order to:
I may share this information with your GP, or emergency response team in case of medical emergency.
The remaining personal information I process is provided to me directly and indirectly through my website. I use a third party service, Webhealer, to help maintain the security and performance of the website. To deliver this service, it processes the IP addresses of visitors to it. This information is processed in a way which does not identify anyone.
The website is hosted and run by Webhealer. I use a standard Webhealer service to collect anonymous information about users’ activity on the site, e.g. the number of users viewing particular pages, to monitor and report on the effectiveness of the website and to enable me to improve it.
Under the UK General Data Protection Regulation (UK GDPR), the lawful basis we rely on for processing this information are:
(a) Your consent. You are able to remove your consent at any time. You can do this by contacting me on greenlotusreflex@gmail.com
(b) I have a contractual obligation
(c) I have a legal obligation:
1.1. ‘Claims occurring’ insurance: (records to be kept for 7 years after last treatment)
1.2. Law regarding children’s records (records to be kept until the child is 25 or if 17 when treated, then 26)
1.3. CNHC requirements to retain information for 8 years
(d) I have a vital interest
(e) I need it to perform a public task
(f) I have a legitimate interest (i.e. my requirement to retain the information in order to provide you with the best possible treatment options and advice)
As I hold special category data (i.e. health related information), the additional condition under which I hold and use this information is: for me to fulfil my role as a health care practitioner bound under the AoR Confidentiality as defined in the AoR Code of Practice and Ethics.
Your personal data is securely stored, manually and digitally. I keep your contact details, medical history and other health-related information, treatment records and related notes for 8 years after your last treatment. I will then dispose of your information by deleting your records from my systems, and securely destroying all paperwork.
Under data protection law, you have rights including:
You are not required to pay any charge for exercising your rights. If you make a request, I have one month to respond to you.
Please contact me at greenlotusreflex@gmail.com if you wish to make a request.