Women’s Physiotherapy Reigate respects your privacy and is committed to protecting your personal data. This privacy notice informs clients how their personal data is processed and stored. Women’s Physiotherapy Reigate is registered with the Information Commissioners Office ZB373474. All information is handled in accordance with the General Data Protection Regulations (GDPR).
Name: Women’s Physiotherapy Reigate
Data controller: Jessica Higton
Postal address: 23 Wray Park Road, Reigate, RH2 0DF
Clinic address: as above
Phone Number: 07810 656217
The type of personal information collected
The following information is collected:
Identity data; name, title, date of birth, address, GP details
Contact data; billing address, email address, telephone numbers
Financial data; bank account and payment card details
Transaction data; details about payments to and from you
Technical data; includes internet protocol (IP) address, your login data, browser type and version, time setting and location, browser plug-in types and versions, operating system and platform and other technology on the devices you use to access this website
Usage data; includes information about how you use the website
Special Categories of Personal Data; information about your current problem and/or reasons for your seeking treatment at Women’s Physiotherapy Reigate, past medical history, social history and any medications you may be taking
How is personal information collected?
Personal information is collected through:
The client may give Women’s Physiotherapy Reigate their identity, contact and financial data by filling in forms or by corresponding with Women’s Physiotherapy Reigate by post, phone, email or otherwise. This includes personal data provided:
When the client and the physiotherapist complete the initial assessment form
During the course of the examination and treatment
When booking an appointment online or over the telephone
When the client gives feedback
Automated technologies or interactions
As the client interacts with the website, technical data may be collected about the clients equipment, browsing actions and patterns. This data is collected by using cookies, server logs and other similar technologies.
Why is personal information collected?
Personal information is collected;
For the purposes of contacting the client, for example to send appointment reminders, to send information regarding the clients treatment
For the purposes of the client’s treatment
How is personal information used?
The information provided is used for the clients treatment. A variety of information is used to both rule in and rule out various conditions. If the client is unsure as to why a particular piece of information is relevant to their treatment they must ask. Personal information is also used in order to process client bookings, carry out obligations arising from contracts entered into by the client and Women’s Physiotherapy Reigate, to seek clients views or comments on the services provided, to notify the client of changes to services and send clients information that may be relevant to their treatment.
Women’s Physiotherapy Reigate will not share personal information with anyone without the clients consent. Women’s Physiotherapy Reigate will not sell or rent clients information to third parties and will not share clients information with third parties for marketing purposes. Women’s Physiotherapy Reigate will not contact clients for marketing purposes by email, phone, text message or post.
Security precautions in place to protect the loss, misuse or alteration of clients information
When clients give Women’s Physiotherapy Reigate personal information, Women’s Physiotherapy Reigate take steps to ensure that it’s treated securely. Details (clients email address etc.) are transmitted normally over the internet, and this can never be guaranteed to be 100% secure. Women’s Physiotherapy Reigate cannot guarantee the security of any information clients transmit to Women’s Physiotherapy Reigate, and clients do so at their own risk. Once clients information is received, Women’s Physiotherapy Reigate makes its best effort to ensure its security on their systems.
Under the UK General Data Protection Regulation (UK GDPR), Women’s Physiotherapy Reigate is required to hold information to fulfil its legal obligations. By law Women’s Physiotherapy Reigate has to keep information about its clients in order to maintain accurate physiotherapy records. For clients over the age of 18 Women’s Physiotherapy Reigate have to legally keep the clients information for eight years.
How is personal information stored?
All the personal information is stored on specific software (RehabGuru) designed for recording therapy notes. The personal information held by RehabGuru is protected with encryption both at rest and in transit. RehabGuru vets their sub-processors and infrastructure vendors for ISO27001 and SOC2 certification. Clients personal information is secured by password and cannot be accessed by anyone outside of Women’s Physiotherapy Reigate. Any third party reports brought in by a client are scanned and uploaded to their notes and then either returned to the client or destroyed.
Client data protection rights
Under data protection law, client rights include:
Right of access -the right to ask Women’s Physiotherapy Reigate for copies of their personal information.
Right to rectification - the right to ask Women’s Physiotherapy Reigate to rectify personal information they think is inaccurate. Clients also have the right to ask Women’s Physiotherapy Reigate to complete information they think is incomplete.
Right to erasure - the right to ask Women’s Physiotherapy Reigate to erase their personal information in certain circumstances.
Right to restriction of processing - the right to ask Women’s Physiotherapy Reigate to restrict the processing of their personal information in certain circumstances.
Right to object to processing - the right to object to the processing of their personal information in certain circumstances.
Right to data portability - the right to ask that Women’s Physiotherapy Reigate transfer personal information given to them to another organisation, or to the client, in certain circumstances.
The client is not required to pay any charge for exercising their rights. If the client makes a request, Women’s Physiotherapy Reigate has one month to respond.
Please contact Jessica Higton, Women’s Physiotherapy Reigate at email@example.com, 07810 656217 to make a request.
Links to other websites
Women’s Physiotherapy Reigate website contains links to other websites run by other organisations. This privacy notice applies only to the Women’s Physiotherapy Reigate, so the client is encouraged to read the privacy notices on other websites visited. Women’s Physiotherapy Reigate cannot be responsible for the privacy policies and practices of other sites even if the client accesses them using links from this website.
In addition, if a client links to Women’s Physiotherapy Reigate website from a third-party site, Women’s Physiotherapy Reigate cannot be responsible for the privacy policies and practices of the owners and operators of that third party site and recommends the client checks the policy of that third party site.
How to complain
If a client has any concerns about Women’s Physiotherapy Reigate use of their personal information, they can make a complaint to Women’s Physiotherapy Reigate but contacting Jessica Higton [firstname.lastname@example.org, 07810 656217].
Clients can also complain to the ICO if they are unhappy with how Women’s Physiotherapy Reigate have used their data.
The ICO’s address:
Information Commissioner’s Office
Helpline number: 0303 123 1113
ICO website: https://www.ico.org.uk
Review of this policy
Women’s Physiotherapy Reigate keeps this policy under regular review. This policy was last updated in September 2023.