Legal Information
Privacy Policy
Your privacy is important to us. This policy explains how we collect, use, and protect your personal information.
Introduction
This Privacy Policy explains how we collect, use, disclose, transfer, and store any personal information that we collect from you or that you provide to us through www.harleystreetmedical.co.uk (the "Website") or when contacting us in relation to our services.
It is important that you read this privacy notice together with any other privacy notice or fair processing notice we may provide you from time to time so that you are fully aware of how and why we are using your data. This privacy notice supplements any other notices we provide and is not intended to override them.
Data Controller Contact Details
We are Harley Street Medical, at 104 Harley St, London W1G 7JD, UK. We are the data controller for the Website and in relation to information you provide in relation to our services.
You can contact us by telephoning us at 020 7310 8458, via WhatsApp at +44 7770 337581, or by writing to us at info@health-clinic.com and Harley Street Medical, 104 Harley St, London W1G 7JD, UK.
What Personal Information We Collect
When you contact us through the Website, correspond with us or otherwise use our services, we may collect a range of personal data:
- Identity Data, including first name, last name, username or similar identifier, title, date of birth and gender.
- Contact Data, including address, email address and telephone numbers.
- Medical Data, including information about your physical and mental health, symptoms and treatments.
- Financial and Transaction Data, including payment details and other information about services you have purchased from us.
- Technical Data, including internet protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform and other technology on the devices you use to access the Website and our services.
- Usage Data, including information about how you use the Website and our services.
- Marketing and Communications Data, including your preferences in receiving marketing from us and our third parties and your communication preferences.
- Direct interactions, such as you filling in forms on the Website or corresponding with us by post, phone, email or otherwise, or when our representatives meet with you in person.
- Automated technologies or interactions. As you interact with our Website, we may automatically collect Technical Data about your equipment, browsing actions and patterns.
We use different methods to collect data from and about you including through:
- Direct interactions, such as you filling in forms on the Website or corresponding with us by post, phone, email or otherwise, or when our representatives meet with you in person.
- Automated technologies or interactions. As you interact with our Website, we may automatically collect Technical Data about your equipment, browsing actions and patterns.
How We Use Your Personal Information
We will only use your personal data when the law allows us to. Most commonly, we will use your personal data in the following circumstances:
- Where we need to perform a contract we are about to enter into or have entered into with you.
- Where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests.
- Where we need to comply with a legal or regulatory obligation.
- Where it is necessary in order to protect vital interests which is essential for your life or the life of another person.
Generally we do not rely on consent as a legal basis for processing your personal data, other than in relation to sending third party direct marketing communications to you via email or text message. You have the right to withdraw consent to marketing at any time.
We use your personal information to respond to your enquiries, operate the Website, deliver the services you have requested and pursue breaches of the terms of use and other policies. We may also use it to develop and improve our products and services as well as for internal purposes, such as auditing, data analytics and research. We will not sell, rent or lease the data we capture to third parties, but we may disclose it in the circumstances set out below in "Disclosure to third parties".
Lawful Basis for Processing
We have set out below the purposes for which we use your personal data and the lawful basis for processing:
- To respond to enquiries about our services - Necessary for our legitimate interests (to respond to potential sales enquiries) - Retained for 10 years
- To provide you with medical services - Performance of a contract - Retained for 10 years
- To provide reports to your GP and other medical professionals - Performance of a contract - Retained for 10 years
- To report concerns about your vital interests to other medical professionals - To protect your vital interests - Retained for 10 years
- To administer and protect our business, services and Website - Necessary for our legitimate interests and to comply with legal obligations - Retained for 10 years
- To use data analytics to improve our Website, products/services, marketing and customer experiences - Necessary for our legitimate interests - Retained for 10 years
- To make suggestions and recommendations about services that may interest you - Necessary for our legitimate interests - Retained for 10 years
Collection and Use of Non-Personal Information
We also collect information that is not directly associated with any specific individual, such as company information, location, time zone and other information relating to activities on our Website. We may use this non-personal information so that we can better understand users' behaviour and improve our products and services. We may also aggregate this information to help us provide more useful information to our users.
If we combine non-personal information with personal information the combined information will be treated as personal information for the purposes of this Privacy Policy for as long as it can identify an individual.
Where We Store Your Personal Data
It may sometimes be necessary to transfer personal information outside the territory in which it was collected. When this is needed information may be transferred to countries or territories around the world. Any transfers made will be in full compliance with all aspects of applicable privacy and data protection law.
If you are based in the EEA, whenever we transfer your personal data out of the EEA, we ensure a similar degree of protection is afforded to it by ensuring at least one of the following safeguards is implemented:
- We will only transfer your personal data to countries that have been deemed to provide an adequate level of protection for personal data by the European Commission.
- We may use specific contracts approved by the European Commission which give personal data the same protection it has in Europe.
- Where we use providers based in the US, we may transfer data to them if they are part of the Privacy Shield which requires them to provide similar protection to personal data shared between Europe and the US.
Cookies
The Website uses "cookies" to help you personalise your online experience.
Cookies are small text files that are stored on your computer or mobile device when you visit a website. They allow the website to recognise your device and store some information about your preferences or past actions.
We use cookies to enhance your experience on our Website, analyse how our Website is used, and for marketing purposes. You can choose to accept or decline cookies through your browser settings.
Disclosure to Third Parties
We may share your personal information with your GP and other medical professionals unless you tell us not to do so.
We may also share your medical information with your GP or other medical professionals even if you tell us not to, provided it is in your vital interests to do so. We will always discuss the position with you before taking this step, unless the situation is urgent or the discussion might harm your vital interests.
We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.
We may also disclose your personal information to third parties:
- In the event that we sell or buy any business or assets, in which case we may disclose your personal data to the prospective seller or buyer of such business or assets.
- If our company, or substantially all of our assets, are acquired by a third party, in which case personal data held by us about our customers will be one of the transferred assets.
- If we are under a duty to disclose or share your personal data in order to comply with any legal obligation; or in order to enforce an agreement with you; or to protect the rights, property, or safety of us, our customers, or others.
Protection of Personal Information
We take precautions — including administrative, technical, and physical measures — to safeguard your personal information against loss, theft, and misuse, as well as against unauthorised access, disclosure, alteration, and destruction.
Although we will do our best to protect your personal information, we cannot guarantee the security of your data transmitted to the Website by virtue of the unsecure nature of the internet and any transmission is at your own risk. Once we have received your personal information, we will use strict procedures and security features to try to prevent unauthorised access.
Your Rights
You have the right to:
- Request access to your personal data (commonly known as a "data subject access request"). This enables you to receive a copy of the personal data we hold about you and to check that we are lawfully processing it.
- Request correction of the personal data that we hold about you. This enables you to have any incomplete or inaccurate data we hold about you corrected, though we may need to verify the accuracy of the new data you provide to us.
- Request erasure of your personal data. This enables you to ask us to delete or remove personal data where there is no good reason for us continuing to process it.
- Object to processing of your personal data where we are relying on a legitimate interest and there is something about your particular situation which makes you want to object to processing on this ground.
- Request restriction of processing of your personal data. This enables you to ask us to suspend the processing of your personal data in specific scenarios.
- Request the transfer of your personal data to you or to a third party.
- Withdraw consent at any time where we are relying on consent to process your personal data.
If you wish to exercise any of the rights set out above, please contact info@health-clinic.com.
You will not have to pay a fee to access your personal data (or to exercise any of the other rights). However, we may charge a reasonable fee if your request is clearly unfounded, repetitive or excessive.
We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data. This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it.
We try to respond to all legitimate requests within one month. Occasionally it may take us longer than a month if your request is particularly complex or you have made a number of requests. In this case, we will notify you and keep you updated.
Privacy Policy Changes
Our Privacy Policy may change from time to time. We will post any privacy policy changes on this page and, if the changes are significant, we will provide a more prominent notice (including, if appropriate, by email).
Third-Party Links
The Website may include links to third-party websites, plug-ins and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements. When you leave our Website, we encourage you to read the privacy notice of every website you visit.
Your Questions or Comments
To contact us regarding this Privacy Policy or any privacy-related matters, please email info@health-clinic.com or contact us at:
Harley Street Medical
104 Harley St, London W1G 7JD, UK
Phone: 020 7310 8458
WhatsApp: +44 7770 337581