1. The Data we collect.
As a data controller we collect a variety of data in order to deliver our services, and we will manage your personal data transparently, fairly and securely. We may ask you to provide us the following data:-
First and Last Name, Email Address, Mobile Phone Number, Home Phone Number, Home Address, Allergies, General Health
Obviously being a beauty business we also create and manage images as for the purposes of advertising our beauty abilities, style and creations.
We use the above data to:-
To be able to deliver our service to you, from the organising of your beauty requirements and appointments, to the actual appointment and afterwards to be able to deliver any required aftercare. It enables us to stay in touch by more than one method which is fail-safe in case any one of the details given are ever changed or the service that provides them ever stops.
We collect this data on the following lawful basis:- By consent to be able to arrange or fulfill a service, a Contract or to To meet a legal obligation other than a Contract
When you visit our website we also collect Cookies. These are small pieces of data that websites send to a user’s computer and are stored on the user’s web browser. They are designed to enable the website to remember information, such as what a user might have put in a shopping cart for example.
This helps us:-
Personalise your experience, Deliver our service to you and For Marketing Purposes
2. Which third parties do we share Personal Data with?
We share personal data with the following third parties:-
Shedul, the online software used to manage A Brush With Elegance business appointments, dealing and accounts. Shedul is GDPR ready and complies with the regulations.
It is also, if requested, shared with Figures Accountancy for the purposes of A Brush With Elegance’s HMRC Tax Returns.
All data shared either remains inside the European Economic Area or to the United States under protection of the EU/US Privacy Shield.
There are also certain situations in which we may share access to your personal data without your explicit consent; for example, if required by law, to protect the life of an individual, or to comply with any valid legal process, government request, rule or regulation.
3. Why do we share your Personal Data with the above?
We share your data in order to:-
Fulfill our service to you, and to be able to prove our source of income to the HMRC
We may transfer personal data to a country outside of the European Economic Area (EEA) if necessary eg if a third party we utilise could have servers located outside of the EEA. If this is the case, we will either obtain your consent or otherwise ensure that the transfer is legal and your data is secure by following the EU’s guidelines.
4. How do we keep your personal data secure?
We keep your data secure:- By following internal policies of best practice, Encryption, By using Secure Socket Layer (SSL) technology when information is submitted to us online.
All services we use to store or transfer data conforms to the Data Protection and GDPR Rules by way of using compliant services and servers
In the unlikely event of a criminal breach of our security we will inform the relevant regulatory body within 72 hours and, if your personal data were involved in the breach, we will also inform you.
6. You have the following rights:-
– the right to be informed about the collection and use of your personal data
– the right of access to your personal data and any supplementary information
– the right to have any errors in your personal data rectified
– the right to have your personal data erased
– the right to block or suppressing the processing of your personal data
– the right to move, copy or transfer your personal data from one IT environment to another
– the right to object to processing of your personal data in certain circumstances, and
– rights related to automated decision-making (i.e. where no humans are involved) and profiling (i.e. where certain personal data is processed to evaluate an individual).
We also give you the option to manage your data via:-
Writing To Us, Email and Telephone
While we do not hold personal data any longer than we need to. The duration will depend on your relationship with us, and whether it is ongoing. We may keep some of your personal data for a minimum of 7 years to comply with UK Tax/Income regulations that require us by law to hold financial records relating to our income and its source.
However after 7 years, if there has been no ongoing interest in our services your contact details will be responsibly and safely removed and deleted from our systems. Your imagery, if consent was given for use both online and in print, will remain securely stored with us and our services for the ongoing use and promotion of A Brush With Elegance as a direct asset of the business.