What data we will collect from you
Home address, Phone number (mobile and/or landline), Email address, Date of birth, Health information, Delivery address, Order Details, Payment Details (Payment details are processed by iZettle/PayPal)
We will collect this data from you in the following ways
Website, Phone, Email, Contact form, In Person, Social Media.
How we process your data
Your privacy and what we do with your data is important to us. We will never sell or give your data to any third party for marketing purposes without your consent from which you are free to opt out of at any time. We need to obtain and process your personal data to provide you with our services and treatments and to fulfil our business and legal obligations. We will only collect personal data from you that is required for us to provide our services to you. We will only hold your data for a maximum of two years following your last appointment. We require health information to assess your health suitability prior to undertaking any treatments on you for the purpose of insurance that covers both us and you.
Your data will be held electronically and/or on paper.
How we contact you and sharing your data with third parties
When we send you a text message to remind you about your appointment, and if you reply to this reminder text, we use a third-party service provider with whom we have a GDPR compliant contract to facilitate this service.
All of our third-party service providers are required to take appropriate security measures to protect your personal data. We only permit our third-party service providers to process your personal data for specified purposes and in accordance with our instructions.
By booking a future appointment with us, we take this as your consent to contact you regarding your appointment whether it be to remind you of your appointment or to contact you regarding making an amendment to your appointment and for this purpose we will contact you via phone, text message or email.
We will only use email as a method to contact you as a means of replying to an email or a message submitted through the contact form on our website where you have provided us with an email address.
If you provide us with an alternative contact method through either a telephone call, voicemail, email, contact form on our website or text message, then we may use these details to contact you for the sole purpose of responding to your enquiry.
If you like, follow or contact us through social media or like, share or comment on one of our posts then you are agreeing for your data you provided within your interaction to be transferred to the social media company.
When placing an order through our website, your order details including items purchased, name, billing address, delivery address, phone/mobile number, email address and card details will be shared with iZettle/PayPal and you delivery details including name, address, email and mobile number will be shared with our courier.
Your legal rights as the customer
You legally hold rights to the data we hold on you:
To be informed of how your personal data will be used before we collect it.
To access a copy of your personal data and information on how we use it.
To have your personal data corrected if it is inaccurate, incomplete or is out of date.
To request us to remove or delete your personal data when there is no longer a business purpose for us to hold it.
To restrict or block processing of your personal data.
To data portability, having your data moved, copied or transferred from our organisation to another organisation in an easily readable format.
To opt out of direct marketing from us. (we do not currently use your details for marketing)
Data relating to children’s treatments
We do not collect the personal data of any child under the age of 13 without parental or guardian consent and will request the contact details of the parent or guardian and use these to contact the parent or guardian regarding the appointment or in the event of an emergency.
Keeping your data protected
We have put in place appropriate security measures to prevent your personal information from being accidently lost, used or accessed in an unauthorised way, altered or disclosed. In addition, we limit access to your personal information to only those staff and third parties who have a business need to know. They will only process your personal information on our instructions and they are subject to a duty of confidentiality.
We have put in place procedures to deal with any suspected data security breach and will notify you and any applicable regulator of a suspected breach where we are legally required to do so.
Accessing the information we hold on you
If you wish to make a complaint about how your data is gathered, used, processed or transferred, then you have a legal right to submit a complaint directly with the Data Protection Commissioner and Sparkle Beauty Salon Limited’s Data Protection Officer.
Details listed below:
Data Protection Commissioner, Information Commissioner’s Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF.
0303 123 1113
Laura Cox, Spa.rkle Beauty Salon, 165 Lower Church Road, Burgess Hill, RH15 9AA
For the purpose of this policy:
Where we have mentioned
‘Us’ or ‘We’ refers to Spa.rkle Beauty Salon Limited, trading as Spa.rkle Beauty Salon.
‘you’ refers to the Customer. ‘Salon’ or ‘Business’ refers to Spa.rkle Beauty Salon Limited.
‘Website’ refers to sparklebeautysalon.co.uk
The latest version of this policy can be viewed on our website, alternatively a printed version of this policy is available in the salon or we can email you a PDF copy upon your request.