Privacy Policy
At Fiona's Newmarket Therapy, I understand that the privacy of your personal information is deeply important, especially when you are seeking support. This policy explains how I collect, protect, and manage your data in accordance with the UK General Data Protection Regulation (GDPR). Fiona's Newmarket Therapy is the 'data controller' for the information provided to this practice, and I am committed to handling your details with the utmost care, transparency, and warmth.
Our Data Commitment
To provide you with the best possible care at Fiona's Newmarket Therapy, I need to collect and process certain personal information. I handle all your data with the utmost sensitivity and warmth, ensuring your privacy is protected at every step.
What I collect:
• Website Enquiries: Information you provide when contacting me via email, such as your name and contact details.
• Contact Details: Your phone number and address to manage our appointments and communication.
• Session Notes: Brief, professional reflections from our time together to support your therapeutic journey.
• GP Details: Information about your doctor, which I typically only use if there is a significant risk to your wellbeing.
Lawful Bases for Processing:
I process your data primarily to fulfil our therapeutic contract. For sensitive health information, I rely on the provision of health or social care. In rare circumstances, I may process data to protect your vital interests or to meet legal obligations.
Storing Your Information Safely
The trust you place in me during our sessions extends to how I look after your personal data. I take the security of your information very seriously and use a variety of measures to ensure it remains confidential and protected. Any digital information, such as email correspondence or contact details, is stored on encrypted, password-protected devices that only I can access. This ensures that your digital footprint within my practice is kept behind modern security walls.
For any handwritten session notes, I use a physical locking system within a secure cabinet in my private office. In accordance with UK professional standards and insurance requirements, I retain your records for a period of 7 years after our final session. After this time, all physical documents are securely shredded and digital files are permanently deleted, ensuring your privacy is respected even long after our therapeutic journey has concluded.
Your Rights Under GDPR
Right of Access
You have the right to request a copy of the personal information I hold about you and to know how it is being used.
Right to Rectification
You have the right to ask me to correct any information you believe is inaccurate or incomplete.
Right to Erasure
In certain circumstances, you can request that I delete your personal data from my records.
Right to Object
You have the right to object to my processing of your data or ask to restrict how your information is used.