Privacy Policy & Data Protection
The General Data Protection Regulations (GDPR) of 2018 governs the way personal information is protected.
My Data Protection Promise:
As the ‘Data Controller’ of your personal data, I take my role in the protection of your data very seriously. As such, I promise to:
​
-
Only collect data from you that is relevant to your treatment.
-
Not pass on your personal data to any third-parties for marketing purposes.
-
Contact you and get your consent if I need to communicate with other health professionals (such as your doctor) about your care.
-
Use paper notes for your treatment records which are kept securely under lock and key.
-
I maintain registration with the Information Commissioner’s Office, the UK’s independent body set up to uphold information rights.
Should you have any concerns about your personal data or you wish to have information about the personal data I hold about you, you can contact me at hannah.shadbolt@epionebodyworks.com
Your Data Protection Rights under the GDPR you have the right to:
​
-
Access any of the information that I collect plus any other content that forms part of your patient record, including notes and expect to be able to read them and understand what they mean without expert medical knowledge.
-
Know if your personal information has been forwarded to a third-party (such as a fellow healthcare professional, consultant or GP.)
-
Have any invalid information about you corrected.
-
Have your personal data deleted by me if you decide to switch to another practitioner.
-
Prevent further use (or processing) of your information.
-
Ask your therapist to send you (or your new therapist) your personal information in an open electronic format like a .csv file or text file.
-
Request that your therapist stops sending you any marketing information.
-
Ensure that any profiling that is undertaken using your personal data is fair, appropriate, statistically valid and transparent.
-
Expect your therapist to take appropriate measures to protect your data.
-
Be notified if critical information about you was inappropriately accessed and was deemed to be a critical breach.
-
Not to have your personal information transferred outside the EU.
-
Know how your personal information is being used by your therapist.