
Privacy Policy
Privacy Policy
Privacy Policy - Effective date: 2025
This Privacy Policy explains how The Hertfordshire Wellness Studio (“we”, “us”, or “our”), a sole trader registered in the UK, collects, uses, and protects your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Contact Details
For any questions about this policy or your data rights, contact:
The Hertfordshire Wellness Studio
Email: hertswellnessstudio@gmail.com
Website: www.hertswellnessstudio.co.uk
2. Data We Collect
We collect and process the following personal data when you create an account, make a booking, or communicate with us:
-
Name
-
Email address
-
Phone number
-
Payment details (processed securely via Stripe or SumUp – we do not store full card details)
-
Health information relevant to class or treatment suitability
3. How We Collect Data
We collect personal data:
-
Directly via our website (www.hertswellnessstudio.co.uk)
-
Through email communications with you
4. Purpose of Processing
We process your personal data for the following purposes:
-
Managing bookings and payments
-
Providing account access and customer support
-
Maintaining records for legal and business purposes
5. Lawful Basis for Processing
We process your personal data based on:
-
Contract – to provide the services you have booked
-
Consent – for collecting health information to ensure your safety during sessions
-
Legal obligation – to comply with financial record-keeping laws
6. Data Sharing
We share your data with trusted third parties only for business purposes:
-
Wix – website hosting and account management
-
Stripe & SumUp – secure payment processing
We do not sell or rent your data to third parties.
7. Data Retention
We retain your personal data for the lifetime of your account. You may request deletion at any time, subject to our legal obligations.
8. Your Rights
Under UK GDPR, you have the right to:
-
Access the personal data we hold about you
-
Request correction of inaccurate data
-
Request deletion of your data
-
Withdraw consent for specific processing activities
-
Complain to the Information Commissioner’s Office (ICO) at www.ico.org.uk
9. Data Security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse.
10. Changes to This Policy
We may update this policy from time to time. Any changes will be posted on our website with an updated “Effective Date”.