Privacy Policy
Contents
- Important information and who we are
- The types of personal data we collect about you
- How is your personal data collected?
- How we use your personal data
- Disclosures of your personal data
- International transfers
- Data security
- Data retention
- Your legal rights
- Contact details
- Complaints
- Changes to the privacy policy and your duty to inform us of changes
- Third-party links
1. Important Information and Who We Are
This privacy policy explains how Harriet Frank collects and uses your personal information through this website, including when purchasing counselling services. The website is not designed for children, and we do not intentionally gather data about minors.
Controller: Harriet Frank is responsible for your personal data (referred to as “we,” “us,” or “our”).
2. Types of Personal Data We Collect About You
Personal data means any information identifying an individual. We collect and process:
- Identity Data: first name, last name, previous names, username, marital status, title, date of birth, gender
- Contact Data: billing address, delivery address, email address, telephone numbers
- Financial Data: bank account and payment card details
- Transaction Data: payment details and purchase history
- Usage Data: information about website and service interactions
- Marketing and Communications Data: marketing preferences and communication choices
We also collect aggregated, non-identifying statistical or demographic data for analysis purposes.
3. How Is Your Personal Data Collected?
We gather data through:
- Your interactions: filling forms, correspondence by post, phone, email, or other means
- Automated technologies: cookies and similar technologies track equipment, browsing actions, and patterns
- Third parties or public sources: we receive information from various third-party sources
4. How We Use Your Personal Data
Legal Basis
We rely on one or more of these legal foundations:
- Performance of contract: fulfilling agreements with you
- Legitimate interests: conducting business and pursuing legitimate objectives, including fraud prevention and security
- Legal obligation: complying with applicable law
- Consent: your active agreement for specified purposes (e.g., newsletter subscriptions)
Purposes for Using Your Data
| Purpose | Data Types | Legal Basis | Retention |
|---|---|---|---|
| Customer registration | Identity, Contact | Performance of contract | 5 years |
| Process and deliver orders | Identity, Contact, Financial, Transaction | Contract performance; legitimate interests | 2 years |
| Manage relationship | Identity, Contact, Profile, Marketing | Contract performance; legal obligation; legitimate interests | 2 years |
| Business administration and protection | Identity, Contact, Technical | Legitimate interests; legal obligation | 2 years |
| Website content and advertising | Identity, Contact, Profile, Usage, Marketing, Technical | Legitimate interests | 2 years |
| Data analytics improvement | Technical, Usage | Legitimate interests | 2 years |
| Marketing communications and recommendations | Identity, Contact, Technical, Usage, Profile, Marketing | Legitimate interests | 2 years |
5. Disclosures of Your Personal Data
We may share your personal data with third parties where required by law, where it is necessary to administer the working relationship with you, or where we have another legitimate interest in doing so.
6. International Transfers
We do not routinely transfer your personal data outside the UK. If any transfer is necessary, we will ensure appropriate safeguards are in place in accordance with data protection law.
7. Data Security
We implement appropriate security measures to prevent accidental loss, unauthorised access, alteration, or disclosure of your personal data. Access is limited to employees, agents, contractors, and third parties with legitimate business needs. All are subject to confidentiality obligations.
We maintain procedures for managing suspected data breaches and will notify you and applicable regulators where legally required.
8. Data Retention
Retention periods are detailed in the purposes table above.
By law, we retain basic customer information (Contact, Identity, Financial, Transaction Data) for six years after customer relationships end for tax purposes.
You may request deletion in certain circumstances (see section 9). We may anonymise data for research or statistical purposes and use it indefinitely without further notice.
9. Your Legal Rights
You have the following rights regarding your personal data:
- Request access to receive a copy of personal data and verify lawful processing
- Request correction of incomplete or inaccurate information
- Request erasure in certain circumstances, including when processing is unlawful or consent is withdrawn
- Object to processing where we rely on legitimate interests, including direct marketing
- Request data transfer in structured, machine-readable format (applies to automated data you consented to or that performed a contract)
- Withdraw consent where applicable (doesn't affect prior lawful processing)
- Request processing restriction to suspend processing temporarily for accuracy verification, legal disputes, or to challenge legitimate grounds
No Fee Required
Access is typically free. We may charge a reasonable fee for unfounded, repetitive, or excessive requests, or refuse to comply.
Identity Verification
We may request specific information to confirm your identity and protect your data security. We may contact you for additional information to expedite responses.
Response Timeline
We aim to respond to legitimate requests within one month. Complex requests may take longer; we'll notify you and provide updates.
10. Contact Details
For questions about this policy or to exercise privacy rights, contact us at hcounselling@outlook.com.
11. Complaints
You may lodge a complaint with the Information Commissioner's Office (ICO), the UK data protection regulator, at www.ico.org.uk. We encourage you to contact us first to address concerns.
12. Changes to the Privacy Policy
We regularly review this policy. Please keep us informed of changes to your personal data (new address, email, etc.) during your relationship with us.
13. Third-Party Links
This website includes links to third-party websites, plugins, and applications. We don't control these sites or their privacy practices. Please review their privacy policies when leaving our site.