Legal Notice & Privacy Policy

Why we collect your personal data and what is done with it ?
 

When you supply your personal data to Dorchester Aesthetics Centre Ltd they are stored and processed for the below reasons:

  • We need to collect some personal information about you and your health in order to make sure there are no contraindications to your treatment, and legal requirements. You can of course, refuse to provide the information, however unfortunately we would have to refuse your treatment as this form is a legal requirement for our insurance.
  • Provided we have your consent, we may occasionally send you emails with our latest news and offers.
  • We have a legal obligation to retain your records for seven years after your most recent appointment. After this time, your records will be destroyed in a method compliant with GDPR.
    Records retained on paper, which is locked in a cabinet within the salon, is only accessible by staff of Dorchester Aesthetics Centre Ltd.
  • Records recorded on the salon’s software, which only accessible by staff of Dorchester Aesthetics Centre Ltd, is password protected
  • Your phone number and email may be used electronically for appointment reminders or occasional offers.If you wish to opt out, please let us know.
  • If you wish to contact us via social media, this is password protected but for historic issues with privacy associated with social media sites, you may wish to think about what you send us.
  • This website may, from time to time, provide links to other websites. Dorchester Aesthetics Centre Ltd has no control over such websites and is no way responsible for the content thereof. This policy does not extend to your use of such websites. Users are advised to read the privacy policy or statement of other websites prior to using them.
  • We will never share your data with anyone who does not need access without your consent. Only the manager and staff of Dorchester Aesthetics Centre Ltd will have access to your data.
  • You have the right to see what personal data of yours we hold and you can also ask the owner of Dorchester Aesthetics Centre Ltd to correct any factual errors. Provided the legal minimum period has elapsed, you may also ask the business to erase your records.
  • We would like you to be absolutely confident that we treat your personal data responsibly and that we do everything we can to make sure that only people who can access that data have a genuine need to. If you feel we have mishandled your data in some way, you have the right to make a formal complaint.

Policy statement

Dorchester Aesthetics Centre is committed to a policy of protecting the rights and privacy of individuals, Independent professionals, staff and others in accordance with The Data Protection Act 2018. The policy applies to all staff, independent professionals and customers of Dorchester Aesthetics Centre. Any breach of The Data Protection Act 2018 is considered to be an offence and in that event, disciplinary procedures apply.

As a matter of good practice, the Independent professionals working with the Centre, and who have access to personal information, will be expected to have read and comply with this policy.

Legal Requirements

Data are protected by the Data Protection Act 2018, which came into effect on 25 May 2018. Its purpose is to protect the rights and privacy of individuals and to ensure that personal data are not processed without their knowledge, and, wherever possible, is processed without their consent.

The Act requires us to register the fact that we hold personal data and to acknowledge the right of ‘subject accesses – customers, Independent professionals and staff must have the right to copies of their own data.

Managing Data Protection

We will ensure that our details are registered with the Information Commissioner.

Purpose of data held by Dorchester Aesthetics Centre

Data may be held by us for the following purposes:

  1. Staff Administration
  2. Customer booking management
  3. Customer care in treatments received.
  4. Accounts & Records of customers
  5. Trends and reports of treatments and products sold
  6. Advertising and Marketing

 

Data Protection Principles

In terms of the Data Protection Act 2018, we are the ‘data controller’, and as such determine the purpose for which, and the manner in which, any personal data are, or are to be, processed. We must ensure that we have:

  • Fairly and lawfully processed personal data

We will always put our logo on all paperwork, stating their intentions on processing the data. Data will be kept on file for a minimum of five years to comply with legal obligations and customer care.

  • Processed for limited purpose

We will not share any data with third parties. Data is solely used between staff and independent professionals for customer care and to keep the customer informed.

  • Adequate, relevant and not excessive

We will monitor the data held for our purposes, ensuring we hold neither too much nor too little data in respect of the individuals about whom the data are held. If data given or obtained are excessive for such purpose, they will be immediately deleted or destroyed.

  • Accurate and up-to-date

Personal data and treatment notes are kept up to date by the staff and Independent professionals. Individuals should notify us of any changes to medical information, to enable personnel records to be updated accordingly. It is the responsibility of Dorchester Aesthetics Centre to act upon notification of changes to data, amending them where relevant.

  • Not kept longer than necessary

We discourage the retention of data for longer than it is required. Data will be kept on file for a minimum of five years to comply with legal obligations of our industry and customer care.

  • Processed in accordance with the individual’s rights        

All individuals that Dorchester Aesthetics hold data on have the right to:

  1. Be informed upon the request of all the information held about them within 30 days.
  2. Prevent the processing of their data for the purpose of direct marketing.
  3. Compensation if they can show that they have been caused damage by any contravention of the Act.
  4. The removal and correction of any inaccurate data about them.
  • Secure
    Appropriate technical and organisational measures shall be taken against unauthorised or unlawful processing of personal data and against accidental loss or destruction of data.

All devices with access to the secure booking system have a log in system and our Contact Database is password protected, which allow only authorised staff to access personal data. Passwords on all computers are changed frequently.

 

Legal Notice

Directors

Lisa Ryall

Registered in England and Wales No.9931251

Registered Office

4a Trinity street

Dorchester

DT11TT

Contact Details:

Mobile: 07810438472

Tel: 01305568646

E-mail: dorchesteraesthetics@yahoo.co.uk

E-mail: oursecretpmu@yahoo.co.uk

Regulatory Authority:
Enviromental Health

-Dorchester

-Weymouth

-Purbeck

-Poundbury

REG: TAP006 and TAP007

We need your consent to load the translations

We use a third-party service to translate the website content that may collect data about your activity. Please review the details in the privacy policy and accept the service to view the translations.