Privacy Policy

We are:

Pure indulgence by the Sea Ltd
Registered in England & Wales No. 8060214
Registered Office: 1 The Links, Achieving Clairty, Herne Bay, United Kingdom, CT6 7GQ
Email: info@purebythesea.co.uk

We are committed to protecting the Privacy of our website visitors and customers.

What Personal data do we collect?

We need to obtain and process your personal data to provide you with our products, services and treatments and to fulfil our business and legal obligations. Typically, this may include the following Data:

Your name
Email
Telephone No
Address
Your age and date of birth

We may also have Technical data such as your IP address and details of how you engaged with our website.

This information may have been provided by you when;

  • you purchased products or services on our website,
  • completed an online form,visited our business premises
  • attended an event in which we have been involved.
  • during a telephone call
  • in an email
  • on social media
  • a competition entry
  • or posted on our website

Special Category Data

Special category data is personal data which the GDPR says is more sensitive, and so needs more protection. This data will include health, medical and treatment details. Health and medical questions are asked before you commence a treatment in order to perform the agreed services safely and appropriately and potentially highlight treatments that may have a negative effect on your health due to medication you are taking or a condition you have.

This data is initially collected during a consultation prior to your first treatment with us and in accordance with the privacy policy outlined on the reverse of the client record which you sign/signed.

How do we collect your Data

Data may be collected in a number of ways, including data you provide when completing forms, sending emails or making contact through social media. You may also supply data when speaking with us during visits to our business premises, events or exhibitions where we are present.
When you visit our website data may also be collected via cookies and similar technologies.

Data may also be provided by external organisations such as Google and Facebook who are providers of analytical and advertising services. Other sources of data may include technical, payment and delivery services.

Collecting Special Category data

Where we request health or medical data we will always ask for Explicit consent through a signature without which we cannot obtain and process your health information.

At any time after giving consent, you can withdraw you consent, subject to legal, insurance and contractual restrictions. Your privacy is very important to us and we only use this information for determining your suitability for the treatment.

How we use your Data

We may use your data to process payment for goods and services, to fulfil and deliver orders and to keep records of those transactions and to handle queries.

We may send you information relevant to products and services that you have purchased and about events that you may find interesting.

Data may also be used in protecting and analysing our business and website and to meet our legal and regulatory commitments, including identity check to prevent fraud.

We may use your data to help us manage our business which may include analysing the success of our advertising and to deliver more relevant website and social media content.

We will send you appointment reminders via email and/or text message to inform you of appointments you have made with ourselves. These are deemed necessary to us as a business operation.

Who Processes my Data

Pure indulgence by the Sea Ltd are the data controller and processes your personal information for the purposes laid out in this privacy notice.

We do process sensitive data on our online booking system, ‘Salon Iris’. Salon Iris Ltd, acts as data processor on our behalf and have access to personal information only ​ in cases that customer support or troubleshooting is required by Pure indulgence. Further, they must process the personal information in accordance with this Privacy Notice and as permitted by applicable data protection laws.

When you place a provisional booking through our website, we use ‘Bookly’ software created and operated by Ladela Limited. We have a processor agreement in place with Ladela, where we are the data controllers. In providing this service Ladela comply fully with the provisions of GDPR. The information collected during booking does NOT include any Special Category Data.

Lawful Grounds for Processing Data

If you have purchased goods or services, we need to process that data for the performance of a contract. We also have a legitimate interest in informing you of product and service updates and in keeping proper records and performing as a responsible business.

If you have enquired about products or services on or off line, data may be processed to respond to your enquiry prior to entering into a contract and as a legitimate interest keeping proper records and performing as a responsible business.

If you signed up to receive free or special offers, then you will have been asked and have given your consent and data may be processed to respond to your enquiry as a legitimate interest which will include keeping proper records and performing as a responsible business.

Any Technical data we may analyse on the grounds of legitimate interest because it will enable us to better operate our website and improve the service that we provide and grow our business.

If required by a government authority, we may process data on the grounds of complying with a legal obligation.

Your special category health and medical data is processed in order to comply with legal and statutory obligations and in the performance of a contract. You can always choose not to provide personal information; however, we will be unable to provide certain products, services and treatments in these instances.

Email and Text Marketing

If you have purchased goods or services, and providing you have not since opted out of receiving such material, we may send you marketing communication on the lawful grounds of legitimate interest, to grow our business.

We may also send you marketing communication provided we have your explicit consent, and this has not been withdrawn.

We may send you marketing materials without your consent if you are a Limited Company. However, you may still opt out of receiving such material at any time.

Disclosure of your personal Data

The personal information you provide to us may have to be shared with the following third parties.

IT, specialist software and other technical service providers and system administration services.

Our professional advisors including lawyers, bankers, accountants, auditors and insurers.

All third parties only have access for specific purposes and are required to respect the security of your data as the law requires.

Data Security

To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed. Our employees and partners only have access to your personal data on a need to know basis and in accordance with our instructions. They are required to keep all personal information confidential.

In the event of a data breach, we have procedures in place to notify you and the appropriate regulator.

Data Retention

We retain personal data only for as long as necessary to provide the Services you have requested and thereafter for a variety of legitimate legal or business purposes. These might include retention periods:

  • mandated by law, contract, or similar obligations applicable to our business operations;
  • for preserving, resolving, defending, or enforcing our legal/contractual rights; or
  • needed to maintain adequate and accurate business and financial records.

Your Data Rights

Under EU data protection laws, you have a number of rights

The right to be informed, the right of access, the right to rectification, the right to erasure, the right to restrict processing, the right to data portability, the right to object, rights in relation to automated decision making and profiling.

More details are available at:

https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/individual-rights/

Should you wish to exercise any of these rights, or if you have any questions concerning our privacy policy, please email:  info@purebythesea.co.uk

If you have any concerns about our use of your information, you also have the right (as a UK resident) to make a complaint to the Information Commissioner’s Office, which regulates and supervises the use of personal data in the UK, via their helpline on 0303 123 1113