Privacy Policy
Priors Medical Essex Ltd (“we”, “us”, “our”) is committed to safeguarding the privacy of visitors to our website.
This policy explains how we collect, use, store, and protect your personal information in line with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Scope
This policy applies to all visitors to the DrMediSpa Clinic websites,
including prospective and current patients, clients, or general visitors.
Who We Are
Data Controller: Priors Medical Essex Ltd
Company Registration Number: 12525179
Registered Office: 8 Forest Road, IG10 1DX
Email: hello@drmedispa.com
We are responsible for deciding how and why your personal data is used.
Information We Collect
We may collect the following personal data when you use our website:
- Name, contact details (email, phone, address) submitted via enquiry or booking forms
- Information you provide about your treatment interests or medical concerns (if you choose to share this)
- Technical information such as IP address, browser type, and cookies
- Marketing preferences
How We Use Your Data
We only use your personal data where we have a lawful basis under UK GDPR:
- To respond to enquiries and provide information about our services (lawful basis: contract and legitimate interest)
- To manage bookings and consultations (lawful basis: contract)
- For marketing communications if you consent or if you are an existing client and have not opted out (lawful basis: consent or legitimate interest)
- To comply with legal and regulatory obligations (lawful basis: legal obligation)
- To protect our legal rights in case of fraud, misuse, or disputes (lawful basis: legitimate interest)
- We will not use your personal data for purposes unrelated to those described in this policy without notifying you.
Sharing Your Data
We may share your information:
- Where required by law or regulation
- In connection with legal proceedings or defending our legal rights
- With trusted service providers (e.g., website hosting, email platforms, payment processors) who act under our instructions and are bound by confidentiality and data protection obligations
- With fraud prevention or credit reference agencies if necessary
- We will never sell your personal information to third parties.
International Data Transfers
If we use service providers located outside the UK (e.g., website hosting, email marketing, analytics),
we ensure your data is protected by appropriate safeguards such as ICO-approved international data transfer agreements or UK adequacy decisions.
Data Retention
We keep your personal data only for as long as is necessary:
- Enquiry data: up to 2 years after last contact
- Marketing data: until you withdraw consent or opt out
- Patient records: in line with medical and legal record-keeping requirements
When data is no longer needed, it will be securely deleted or anonymised.
Security of Your Data
We use technical and organisational measures to protect your data against loss, misuse, or alteration.
- Data is stored on secure servers with restricted access
- We encrypt communications where appropriate
- While we take precautions, transmission of information over the internet can never be guaranteed as completely secure
Your Rights
Under UK GDPR, you have the following rights:
- Access to your personal data (a “data subject access request”)
- Rectification of inaccurate or incomplete data
- Erasure (“right to be forgotten”) in certain circumstances
- Restriction of processing in certain circumstances
- Data portability, where applicable
- To object to processing, including marketing
- To withdraw consent at any time (where processing is based on consent)
- To lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk
- To exercise your rights, email us at hello@drmedispa.com.
Cookies and Tracking
Our website may use cookies or similar technologies to:
- Improve website functionality
- Analyse visitor behaviour
- Deliver targeted advertising (where you consent)
- You can control cookies through your browser settings.
Third-Party Websites
Our website may include links to external sites.
Once you leave our website, we are not responsible for how those sites handle your personal information. Please review their privacy policies.
Media, Testimonials & Results Disclaimer
- All images, videos, and testimonials on our website are provided voluntarily by patients/clients with their explicit consent.
- Media has not been altered, other than for size or format.
- Results vary between individuals and are based on personalised treatment plans.
Updates to This Policy
We review this policy at least annually or sooner if required by law.
The latest version will always be available at the bottom of our website pages.
Contact Us
If you have any questions about this policy or how we handle your personal data, please contact us at: hello@drmedispa.com.