1. Privacy statement
2. Data Protection Regulations
3. what information do we collect from you
5. How do we use the information?
6. How do we handle your information?
7. To whom may we disclose your information?
8. How can I control use of my information?
9. Changes to privacy Statement?
10. Your right to complain
The Aesthetic Skin Clinic Limited, Aesthetic Skin Clinic (UK) Limited and Skinstation (“We”, “Us”, “Our”) Privacy Statement. This isOur Privacy Statement which details how We use your personal data (“PersonalData”) when you use Our Websites www.askinclinic.co.uk andwww.skinstation.co.uk. We take Our data protection responsibilities seriously.
1 Privacy Statement
1.1 This Website is owned by TheAesthetic Skin Clinic Limited (“ASC”) acompany registered in Guernsey at Albert House, South Esplanade, St. PeterPort, Guernsey GY1 1AJ with company number 41820. ASC’s registration numberwith the Office of the Data Protection Commissioners in Guernsey, Jersey andthe United Kingdom are 10630, 16850 and ZA240294 respectively.
1.2 The Data Protection (Bailiwickof Guernsey) Law 2017 and the new European General Data Protection Regulation(to be implemented in the UK on 25 May 2018) (the “Regulations”) set out Ourresponsibilities. We have to protect your data.
1.4 Any questions, commentsand requests you may have regarding this Privacy Statement are welcomed andshould be addressed to: Data Protection Manager, The Aesthetic Skin ClinicLimited,, Albert House, South Esplanade, Guernsey, GY1 1AJ. Telephone 01481736699.
2 DataProtection Regulations
2.1 For the purposes of thisPrivacy Statement: (a) We determine the purposes for which and the manner inwhich your personal data is, or is to be processed, and we are known as thedata controller (“Data Controller”); and (b) in submitting your data and informationto us to collect, handle and process, you will be the individual who is thesubject of the data (the “Data Subject”); and (c) in processing your data andinformation, any other parties contracted to process data by the DataController will be known as (“Data Processors”).
3. Whatinformation do We collect from you?
3.1 We may collect and processthe following data and information that you give us if you fill in the AccountRegistration Form, place an order for Goods, or if you submit content on OurWebsite or otherwise by corresponding with us by phone email or otherwise: (a)name and date of birth; (b) contact information including address, emailaddress, phone number; (c) information necessary for the purposes of submittingan order for prescription products application; (d) prescribed medication anddirections for use.
3.2 We understand that thedata collected at 3.1(c) and 3.1(d) is Sensitive Personal Data.
3.3 We will collect andprocess the following data automatically from your visit to Our Website: (a)technical information, including the internet protocol (IP) address used toconnect your computer to the Internet, your login information, browser type andversion, time zone setting, browser plug-in types and versions, operatingsystem and platform; (b) information about your visit, including the fulluniform resource locator (URL), clickstream to, through and from Our Website(including date and time), products you viewed or searched for, page responsetimes, download errors, length of visits to certain pages, page interactioninformation (such as scrolling, clicks, and mouse-overs), methods used tobrowse away from the page, and any phone number used to call Our customerservice number and any other anonymised data or metrics that identify userbehaviour and the habits of web visitors.
4.2 You may choose to acceptor decline cookies by modifying your own browser’s settings.
5. How do We usethe information?
5.1 We shall use the data andinformation you give to Us: (a) to allow you to create an account and on theWebsite; (b) to process and analyse your order(s) including dispensing anddispatching the products; (c) to keep and maintain Our internal business records;(d) for our internal training purposes; (e) if you give us express consent, toprovide you with Our own tailored marketing information that We think may suityour interests and needs.
5.2 We reserve the right toadd to the list of uses in clause 5.1. We shall not use pre-collected data andinformation for any new uses of your data without consulting you and obtainingyour express consent if we are required to do so under the Regulations.
5.3 Where you provide us withinformation for the purposes of account registration and orders describedabove, We may use such information provided in order to verify the informationprovided, process your application and order. We may also transfer the data toour Data Processors in order to fulfil or analyse your order.
5.4 We reserve the right toanonymise your data to obtain analysis while retaining your privacy.
6. How do Wehandle your information?
6.1 The data and informationWe collect from you will be transferred to and securely stored by our hostingthird party: Alternative Solutions Limited, PO Box 176, Cirrus House, GarennePark, Rue de la Gache, St Sampson, Guernsey GY1 3LQ.
6.2 We are committed toensuring that your data and information is secure. In order to preventunauthorised access or disclosure, We have put in place suitable physical,electronic and managerial procedures to safeguard and secure the information Wecollect online, including: (a) all data and information you provide to us isstored on secure servers; (b) any payment transactions will be encrypted UsingSSL technology; (c) where We have given you (or where you have chosen) apassword which enables you to access certain parts of Our Website, you areresponsible for keeping this password confidential. We ask you not to share apassword with anyone; (d) erasing of information, and destruction of any copieskept; (e) regularly updating our review procedure.
6.3 Any Sensitive PersonalData that we collect as described at clause 3.1(c) and 3.1(d) shall beprocessed in accordance with the Regulations, and only to permit Us to processyour request or enquiry. Your Sensitive Personal Data will be stored securely andwill not be passed on to third parties.
7. To whom mayWe disclose your information?
7.1 In providing us with dataand information, you agree that We may disclose such information, wherenecessary for the purposes and uses listed in clause 5, to: (a) Our employees,agents representatives and any Data Processors officially contracted to processthe data on Our behalf; (b) selected third parties including: (i) businesspartners, suppliers and sub-contractors for the performance of any contract Weenter into with you; (ii) analytic and search engine providers that assist usin the improvement and optimisation of Our Website; (c) any other third partiesWe are legally obliged to disclose your information to.
7.2 We will only disclose yourPersonal Data to parties who bear sufficient legal responsibility for itsprotection and who have sufficient privacy and security measures in place toreasonably ensure that it will be protected and handled appropriately.
8. How can Icontrol use of my information?
8.1 You may choose to restrictthe collection or use of your Personal Data in the following ways: (a) byleaving the “third party opt-in” box EMPTY on the Account Registration Form. Ifyou do not consent we shall assume that you do not want the data andinformation to be used by us or by third parties for analytical, marketing andpromotional purposes; (b) if you have previously agreed to us using yourPersonal Data for direct marketing purposes, you may change your mind at anytime by writing to us at, Data Protection Manager, The Aesthetic Skin ClinicLimited, Albert House, South Esplanade, St Peter Port, Guernsey GY1 1AJ.
8.2 The Regulations gives youthe right to access information held about you. Your right of access can beexercised in accordance with the Act. Any access request will be free. If youwould like a copy of the information held on you please write to us at DataProtection Manager, The Aesthetic Skin Clinic Limited, Albert House, SouthEsplanade, St Peter Port, Guernsey GY1 1AJ.
8.3 If you believe that anyinformation We are holding on you is incorrect or incomplete, please write toor email us as soon as possible, at the above address. We will promptly correctany information found to be incorrect.
9. Changes toPrivacy Statement
9.1 We reserve the right tomake changes to this policy without notice from time to time by updating thispage. Every time you wish to use Our Website, please check the statement toensure you understand the terms that apply at that time. 9.2 The currentstatement was made effective as of May 2018 and incorporates the requirementsof the new GDPR due in effect 25th May 2018.
10. Your rightto complain
10.1 If you believe that yourinformation held by us is not being handled properly, you have the right tocomplain to the Data Commissioner.