UK GDPR Compliance
This page explains how Bolton Beauty Clinic complies with the UK General Data Protection Regulation (UK GDPR), which governs the protection of personal data in the United Kingdom. Although our website is informational and does not require user registration or store personal data in a database, we are committed to transparency and respecting your rights under UK GDPR.
Scope and Applicability
The UK GDPR applies to the processing of personal data of individuals in the UK. While Bolton Beauty Clinic does not collect personal data through user accounts or forms on this website, we may process limited personal data automatically through website analytics, server logs, and cookies to improve user experience and ensure site functionality. This processing is limited to non-identifiable or pseudonymised data where possible.
Your Rights Under UK GDPR
Under the UK GDPR, you have the following rights in relation to your personal data:
- Right of access – You may request confirmation of whether we hold any of your personal data and receive a copy of it.
- Right to rectification – You may request correction of any inaccurate or incomplete personal data we hold about you.
- Right to erasure – You may request deletion of your personal data, subject to legal obligations.
- Right to restrict processing – You may request limitation on how your data is used.
- Right to data portability – You may request your data in a structured, commonly used format.
- Right to object – You may object to processing based on legitimate interests, including profiling or analytics.
- Right not to be subject to automated decision-making – This includes profiling.
How We Comply
We comply with UK GDPR by:
- Minimising data collection to only what is necessary for website operation.
- Using cookies only with prior consent, where required, and providing clear cookie controls.
- Ensuring third-party service providers (e.g., analytics tools) are GDPR-compliant.
- Regularly reviewing our data handling practices.
- Not storing personal data beyond what is technically required.
Data We Process
The personal data we may process includes:
- IP addresses (anonymised where possible)
- Browser type and device information
- Pages visited and time spent on site
- Cookies and similar tracking technologies (opt-in only where required)
No names, email addresses, phone numbers, or other identifiable information are collected unless you voluntarily contact us via our contact form or email.
Legal Basis for Processing
Our processing of personal data is based on legitimate interest for the following purposes:
- Ensuring website functionality and security
- Improving user experience through analytics
- Maintaining compliance with legal obligations
Where consent is required (e.g., for non-essential cookies), we obtain it through clear, affirmative action before any data is collected.
How to Exercise Your Rights
To exercise any of your rights under UK GDPR, please contact us at the email address below. Include:
- Your full name
- A description of the right you wish to exercise
- Any relevant details (e.g., date of visit, IP address if known)
We will verify your identity before responding to ensure the security of your data.
Response Timeframes
We are required by UK GDPR to respond to your request without undue delay and within one month of receipt. In complex cases, we may extend this period by two additional months and will inform you within one month if this is necessary.
No Discrimination Policy
We will not deny you services, charge different prices, or provide a different quality of service because you have exercised your rights under UK GDPR. Your rights are protected, and we respect your choices.
Updates and Changes
We may update this page from time to time to reflect changes in law or our practices. Any material changes will be posted here with an updated effective date. We recommend reviewing this page periodically.
Contact Information
If you have any questions about this compliance page or wish to exercise your rights under UK GDPR, please contact our Data Protection Officer:
Elara Hemming
Email: [email protected]
Address: 22 Ponsonby Road, Ponsonby, Auckland 1021, New Zealand
You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO), the UK’s supervisory authority for data protection. Visit ico.org.uk for more information.