top of page

TERMS & CONDITIONS

At FACE Aesthetics, we take your privacy seriously. This policy explains how we collect, use, store, and protect your personal information when you interact with us,  whether as a website visitor, someone making an enquiry, booking a consultation, or receiving aesthetic services.

FACE Aesthetics is a medical aesthetics clinic based in Shirwell, Barnstaple. We are committed to handling your personal data with care and in compliance with UK GDPR and the Data Protection Act 2018.

We act as the data controller for your information, meaning we determine how and why your data is processed.

Contact: Catherine (Kate) Smith  Tel: 07929179862

What information we collect

We may collect and process the following:

Personal information

  • Full name, date of birth, contact details (phone, email, address)

  • Appointment history

  • Marketing preferences

Health & Clinical information

  • Medical history and treatment notes (for safety and care)

  • Photographs if necessary for clinical records

Website & digital data

  • IP address, browser type, pages visited, and cookies when using our website

Communication records

  • Emails, web form enquiries, and messages between you and the clinic

We keep your medical records for the length of time required by law and professional standards. Other personal data (e.g., marketing preferences) will be kept only as long as necessary to provide services or meet legal obligations.

How we use and share your information

We use your information to:

  • Provide and manage safe, personalised aesthetic care

  • Communicate with you about consultations, bookings, and care

  • Complete clinic administrative tasks (treatment notes, records)

  • Process payments and booking confirmations

  • Comply with legal, regulatory, and professional obligations

  • Send marketing only with your consent, which you can withdraw at any time

We will only process your data where we have a lawful basis such as legitimate interest (for clinic care and administration), contractual necessity (to fulfil your booking), or consent (for marketing).

We do not sell your data.

We may share your information with:

  • Clinicians involved in your care

  • Trusted third‑party service providers (e.g., secure booking software)

  • Regulatory bodies where required by law

  • IT and administrative partners who support secure service delivery

All third parties are required to protect your privacy and only use your data for the purposes we specify.

Your rights under UK GDPR

You have the right to:

  • Access the personal data we hold about you

  • Request correction of inaccurate or incomplete data

  • Request deletion of your data (where lawful)

  • Withdraw consent where processing is based on consent

  • Request restriction or objection to processing

  • Request data transfer to another provider

To exercise any rights, please contact us at face.katesmith.

If you are not satisfied with our response, you have the right to raise concerns with the Information Commissioner’s Office (ICO).

Cookies and Website usage

 

Our website may use cookies to improve your browsing experience and analyse usage. You can control cookie settings through your browser preferences.

Changes to this policy

We may update this policy from time to time to reflect changes in law or our services. Updated versions will be published on our website.

bottom of page