Privacy Policy

Date updated 21/11/2024

Welcome to Mint Wellbeing’s Privacy Notice

Mint Wellbeing respects your privacy and is committed to protecting your personal data. This privacy notice explains how we collect, use, and protect your personal data when you engage with our services, visit our website, or otherwise interact with us. It also outlines your privacy rights and how the law safeguards you.

Purpose of This Privacy Notice

This privacy notice provides information on how we collect and process your personal data, including any data you provide during your interactions with us. It supplements other notices we may provide on specific occasions and is not intended to override them.

Who We Are

 

Controller:
Mint Wellbeing, registered in England and Wales (company number: 10218465), is the controller responsible for your personal data (referred to as “we,” “us,” or “our” in this notice).

 

Data Protection Officer (DPO):
We have appointed a Data Protection Officer to oversee compliance with this privacy notice. For any questions or requests regarding your personal data, please contact our DPO:

 

  • Name: Amy Gasson
  • Email: amygasson@mintwellbeing.co.uk
  • Phone: 02089878026

You have the right to raise concerns with the Information Commissioner’s Office (ICO), the UK’s data protection authority, at www.ico.org.uk. However, we encourage you to contact us first to address your concerns.

The Data We Collect About You

 

We may collect, use, store, and transfer various categories of personal data, including:

 

  • Identity Data: Name, date of birth, and gender.
  • Contact Data: Address, email address, and phone number.
  • Medical Data: Information about your health and wellbeing, required for providing healthcare services. This includes details of your medical history, treatments, and consultation notes.
  • Financial Data: Payment details for services.
  • Marketing and Communication Data: Your preferences for receiving marketing and communication.

Special category data (e.g., health information) is processed in line with the UK GDPR requirements for providing healthcare services.

How We Collect Your Data

 

We collect data through:

 

  1. Direct Interactions: Information you provide by completing patient forms, making inquiries, or engaging in consultations.
  2. Automated Technologies: Technical data collected through cookies on our website.
  3. Third Parties: Data from referrals (e.g., GPs or consultants) or diagnostic service providers involved in your care.

How We Use Your Personal Data

 

We only use your data when legally permitted, such as:

 

  • To perform a contract for healthcare services.
  • To comply with a legal obligation.
  • Where necessary for our legitimate interests, provided your rights do not override these interests.

Special category data (e.g., health information) is processed under conditions that enable us to provide healthcare services.

Marketing Preferences

 

We may send marketing communications if you have if you have used our services. You can opt out at any time by:

 

Sharing Your Data

 

We may share your personal data with:

 

  • Healthcare professionals involved in your care
  • Third-party diagnostic service providers
  • Your insurers, where you instruct us or they are the instructing party
  • Regulatory authorities, where legally required

We will not sell or rent your information to third parties.

We will not share your information with third parties for marketing purposes.

Data Security

 

We have robust measures to protect your data against unauthorised access, loss, or misuse. Access is limited to those with a legitimate business need. Any suspected breach will be managed in line with regulatory requirements, including notifying you and the ICO if necessary.

Data Retention

 

We retain your personal data only for as long as necessary, including:

 

  • Medical records adult: Eight years from the date of last treatment
  • Medical records children: Eight years after their 18 birthday or until 25 years of age
  • Financial records: Retained for seven years to comply with tax regulations.

When retention is no longer required, your data will be securely deleted or anonymized.

Your Legal Rights

 

Under the UK GDPR, you have rights regarding your personal data, including:

 

  1. Access: Request a copy of your data.
  2. Correction: Request correction of incomplete or inaccurate data.
  3. Erasure: Medical records for adults and children are held by us for 7 years.
  4. Objection: Object to data processing based on legitimate interests.
  5. Restriction: Request suspension of processing in specific situations.
  6. Data Portability: Request transfer of your data to another provider.

To exercise these rights, please contact our DPO.

Cookies

 

Our website uses cookies to improve functionality and your experience. You can manage cookie preferences through your browser settings. Note that disabling cookies may impact website functionality.

 

How we may use the information we collect

 

  • To provide you with information and/or services that you request from us;
  • To administer our site including troubleshooting and statistical purposes;
  • To improve our site to ensure that content is presented in the most effective manner for you and for your computer;
  • For security and debugging as part of our efforts to keep our site safe and secure.
  • This information is collected anonymously and is not linked to information that identifies you as an individual. We use Google Analytics to track this information. Find out how Google uses your data at https://support.google.com/analytics/answer/6004245.

Changes to This Privacy Policy

 

We may update this policy periodically. The latest version will always be available on our website. Please check back regularly for updates.

Contact Us

 

For any questions or concerns, contact us at:

 

Mint Wellbeing

 

Email: info@mintwellbeing.co.uk
Phone: 020 8987 8026