Privacy Policy
Effective Date: 8/7/25
Rochester Holistic Massage is committed to safeguarding the privacy of our clients, visitors, and users. This policy explains how we collect, use, and store your personal information and your rights under UK data protection law.
1. Who We Are
Business Name: Rochester Holistic Massage
Address: 18 Wallace Road, Rochester, Kent, ME1 2TA
Email: michael@rochester-holistic.co.uk
Phone: 07402 602 358
Data Controller: Michael Sullivan-Stanley
2. What Data We Collect
We may collect the following personal information from you:
- Full name
- Phone number
- Email address
- Home address
- Health and medical information (e.g. medical history, medication, GP details)
- Payment details (e.g. card information)
- IP address, browser data, and cookie identifiers
- Booking and appointment history
- Newsletter preferences
3. How We Collect Your Data
We collect data in the following ways:
- Via our online booking system
- Through contact forms or newsletter sign-ups
- During initial consultations and treatments
- When you communicate with us (e.g. email, phone, WhatsApp)
- Automatically via cookies and website analytics
4. Why We Use Your Data
We collect and process your personal data to:
- Book and manage appointments
- Send confirmations and reminders
- Understand your health history to tailor treatments safely
- Travel to your home for mobile massage appointments
- Maintain accurate treatment records
- Fulfil legal and insurance obligations
- Process payments and deposits
- Send marketing emails (only if you opt-in)
- Improve website performance and user experience
5. Lawful Bases for Processing
Under UK GDPR, we rely on the following lawful bases:
- Consent – for marketing communications and obtaining sensitive health data
- Contract – to provide massage services and manage appointments
- Legal Obligation – to comply with tax, insurance, and health record-keeping requirements
- Legitimate Interests – to operate and grow our business effectively and safely
6. How Long We Keep Your Data
We retain client treatment records and health-related data for 7 years from the date of your last appointment, as per UK industry regulations. After this period, your data will be securely deleted.
Marketing data will be retained until you unsubscribe or withdraw your consent.
7. Sharing Your Data
Your data may be shared securely with the following third parties:
- Dropbox – secure cloud storage for records
- Heidi Health – secure digital note-taking system
- SumUp – card payment processing
- Google (Gmail) – for communication
- WhatsApp – for appointment-related messages
- Website host & analytics tools – for performance and diagnostics
We never sell or rent your data.
8. Cookies and Website Tracking
Our website uses cookies and analytics to:
- Understand visitor behaviour
- Improve our website experience
- Track marketing effectiveness
You can manage or disable cookies through your browser settings. We may use tools like Google Analytics for this purpose.
9. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate or incomplete data
- Request deletion of your data (where legally permissible)
- Withdraw consent for marketing
- Object to or restrict processing in certain cases
- Lodge a complaint with the Information Commissioner’s Office (ICO)
ICO contact: www.ico.org.uk | 0303 123 1113
10. Contact Us
For questions, concerns, or to exercise your data rights, contact:
Michael Sullivan-Stanley
Email: michael@rochester-holistic.co.uk
Phone: 07402 602 358