Privacy Policy
Your privacy and data protection are our top priorities
Last Updated: December 2025
GDPR Compliant
Full compliance with UK and EU data protection regulations
Secure Storage
Your data is encrypted and stored securely with restricted access
Transparency
Clear information about how we collect, use, and protect your data
1. Introduction
MediGlow Clinic ("we", "our", or "us") is committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our services, or interact with us.
This policy applies to all personal data we process about you, whether you are a patient, website visitor, or someone making an enquiry about our services.
2. Data Controller
MediGlow Clinic is the data controller for the personal information we hold about you. Our registered address is:
MediGlow Clinic
123 Harley Street
London, W1G 6BA
United Kingdom
Email: privacy@mediglowclinic.co.uk
Phone: +44 (0) 20 7123 4567
3. Information We Collect
3.1 Personal Information
We may collect the following types of personal information:
- Contact Information: Name, email address, phone number, postal address
- Medical Information: Medical history, treatment records, consultation notes, photographs
- Identification: Date of birth, identification documents for age verification
- Financial Information: Payment details, billing information
- Communication Records: Emails, phone calls, appointment notes
3.2 Technical Information
When you visit our website, we automatically collect:
- IP address and browser information
- Pages visited and time spent on our website
- Referring website and search terms used
- Device information and operating system
4. How We Use Your Information
We use your personal information for the following purposes:
4.1 Medical Care and Treatment
- Providing medical consultations and treatments
- Maintaining medical records and treatment history
- Monitoring treatment progress and outcomes
- Ensuring continuity of care
4.2 Administrative Purposes
- Scheduling and managing appointments
- Processing payments and billing
- Responding to enquiries and providing customer service
- Maintaining accurate patient records
4.3 Legal and Regulatory Compliance
- Complying with medical regulations and standards
- Meeting professional body requirements
- Responding to legal requests and investigations
- Maintaining records as required by law
5. Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: Where you have given explicit consent for specific processing activities
- Contract: To fulfill our contractual obligations in providing medical services
- Legal Obligation: To comply with medical regulations and legal requirements
- Vital Interests: To protect your health and safety in emergency situations
- Legitimate Interests: For administrative purposes and improving our services
6. Data Sharing and Disclosure
We may share your personal information with:
- Healthcare Professionals: Other medical practitioners involved in your care
- Service Providers: Third-party companies that help us operate our business
- Regulatory Bodies: Medical councils and regulatory authorities when required
- Legal Authorities: When required by law or to protect rights and safety
- Insurance Companies: With your consent for insurance claims
We never sell your personal information to third parties for marketing purposes.
7. Data Security
We implement appropriate technical and organizational measures to protect your personal data:
- Encryption of data in transit and at rest
- Secure access controls and authentication
- Regular security assessments and updates
- Staff training on data protection and confidentiality
- Secure disposal of physical and electronic records
8. Data Retention
We retain your personal data for different periods depending on the type of information:
- Medical Records: Minimum 8 years after last treatment (or longer if required by law)
- Financial Records: 7 years for tax and accounting purposes
- Marketing Consent: Until you withdraw consent or we no longer need it
- Website Analytics: 26 months maximum
9. Your Rights
Under data protection law, you have the following rights:
- Right of Access: Request copies of your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data (subject to legal requirements)
- Right to Restrict Processing: Request limitation of how we use your data
- Right to Data Portability: Request transfer of your data to another organization
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent for specific processing activities
To exercise any of these rights, please contact us using the details provided in this policy.
10. Cookies and Website Analytics
Our website uses cookies to improve your browsing experience:
- Essential Cookies: Required for website functionality
- Analytics Cookies: Help us understand how visitors use our website
- Preference Cookies: Remember your settings and preferences
You can control cookie settings through your browser preferences. However, disabling certain cookies may affect website functionality.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any significant changes by posting the updated policy on our website and updating the "Last Updated" date.
12. Contact Us
If you have any questions about this Privacy Policy or how we handle your personal data, please contact us:
Data Protection Officer
Postal Address
MediGlow Clinic
123 Harley Street
London, W1G 6BA
United Kingdom
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe we have not handled your personal data appropriately. Visitwww.ico.org.uk for more information.
Discover your glow today – Book a Consultation
Take the first step towards your aesthetic goals with a personalized consultation.
Book an Appointment