Privacy Policy

Last updated 22/10/2024

Introduction

Welcome to Physier’s Privacy and Data Protection Policy (“Privacy Policy”). At Physier (“we,” “us,” or “our”), we are committed to protecting and respecting your privacy and Personal Data in compliance with the United Kingdom General Data Protection Regulation (“GDPR”), the Data Protection Act 2018, and all other mandatory laws and regulations of the United Kingdom. This Privacy Policy explains how we collect, process, and secure your data. It also outlines your privacy rights, details how the law protects you, and serves as a guideline for our employees in managing data responsibly.

We may collect data from the following individuals:

  • Customers and prospective clients
  • Suppliers and service providers
  • Business contacts and affiliates
  • Employees and staff members
  • Other third parties associated with our customers

This Privacy Policy applies to all Personal Data processed by us, whether collected through our website, services, or interactions with individuals.

Data Controller and Data Protection Officer

Physier acts as the Data Controller, meaning we are responsible for your Personal Data. For any inquiries or requests regarding this Privacy Policy, please contact us directly: info@physier.com.

You may also contact the Information Commissioner’s Office (ICO) if you have concerns. However, we would appreciate addressing any issues directly with us first.

Legal Basis for Data Collection

Under GDPR, we only collect Personal Data when there is a lawful basis for doing so. The main bases we rely on are as follows:

  • Consent: For specific situations, such as when you agree to receive marketing updates, we require explicit consent. You can withdraw consent at any time.
  • Contractual Obligations: We process data as needed to fulfil a contract with you, such as completing a booking or providing physiotherapy services.
  • Legal Compliance: In some cases, we are required by law to collect data, for example, in cases related to fraudulent activity.
  • Legitimate Interests: We collect data for legitimate business interests, as long as it does not override your rights and freedoms. For example, we may retain your contact details for follow-up care.

How We Use Your Personal Data

We will only use your Personal Data for purposes specified below, ensuring compliance with legal obligations and promoting legitimate business functions. Examples of use include:

  • Identity and Contact Data: Used to verify your identity, keep records, and maintain contact.
  • Medical Data: Essential for assessing your health to provide effective treatment and recommendations.
  • Transactional Data: Necessary for processing payments, refunds, and other financial transactions.
  • Marketing Communications: With your consent, we may send information on services, promotions, and industry insights.

Change of Purpose

We will not use your data for purposes unrelated to the original reason for collection without notifying you and providing the legal basis for the new use.

Your Rights and How We Protect You

Under data protection law, you have several rights regarding your Personal Data. These include the right to access, correction, erasure, and more. If you wish to exercise any of these rights, please contact us.

  1. Right to Access: Obtain a copy of your Personal Data.
  2. Right to Rectification: Request corrections to any inaccuracies.
  3. Right to Erasure: Request deletion of data where it’s no longer necessary.
  4. Right to Restrict Processing: Temporarily or permanently limit data processing.
  5. Right to Object: Discontinue processing based on legitimate interest, particularly for marketing.
  6. Right to Data Portability: Receive or transfer your data in a structured format.

For full details or to make a request, please contact us. We may request identity verification to ensure data security.

Data Sharing with Third Parties

In certain cases, we may share Personal Data with third parties, such as:

  • Service Providers: We work with trusted providers who support our services, bound by confidentiality obligations.
  • Legal Authorities: In cases where we are required by law to disclose information.
  • Business Transfers: If Physier undergoes a merger or sale, your data may be transferred, with protection measures applied in compliance with this Privacy Policy.

Data Retention Period

We retain Personal Data only for as long as necessary to fulfil its purpose or to meet legal, accounting, or reporting requirements. Data may be retained longer if required by law or in cases of ongoing dispute or litigation.

Security Measures

Physier uses industry-standard security measures to protect your data against unauthorized access, loss, or damage. These measures include restricted data access, secure protocols, and encryption.

Please be aware, however, that data transmitted over the internet cannot be guaranteed as 100% secure. If you suspect a data breach, please notify us immediately.

Opting Out of Marketing

You may opt out of marketing communications by contacting us or following the unsubscribe instructions in any emails. We will continue to retain necessary Personal Data for essential services and legal purposes, irrespective of marketing preferences.

Age Requirement

Our services are not intended for individuals under 18. If we discover that data of a minor has been provided without consent, we will promptly delete it.

International Data Transfers

While we primarily process data within the UK, international data transfers may occur. When data is transferred outside the UK, we ensure equivalent protection through appropriate safeguards.

Updates and Acceptance

Physier may update this Privacy Policy periodically. By using our services, you consent to data collection and use as described. Continued use implies acceptance of any updates.

Effective Date: 22 December 2024