Privacy policy
Your privacy is very important to us. This Privacy Policy explains how Advanced Aesthetics Clinic & Apothecary collects, uses, stores, and protects your personal data in accordance with the General Data Protection Regulation (GDPR).
By using our website or booking our services, you agree to the terms outlined in this policy.
2. Data Controller
The Data Controller responsible for your personal data is:
Lorna Melay
Advanced Aesthetics Clinic & Apothecary
Location: Kildavin, Bunclody, Co. Carlow, Ireland
3. What Data We Collect
We may collect and process the following personal data:
a) Personal Information
- Name
- Contact details (phone number, email address)
- Address (for product orders)
b) Health & Treatment Information
- Medical history
- Skin conditions
- Allergies
- Medications
(This is classified as "special category data" under GDPR and is handled with strict confidentiality.)
c) Booking & Transaction Data
- Appointment history
- Purchase history
- Payment details (processed securely via third-party providers)
d) Website Usage Data
- IP address
- Browser type
- Pages visited (via cookies and analytics)
4. How We Use Your Data
We use your data to:
- Provide and manage treatments
- Process bookings and purchases
- Communicate appointment confirmations and reminders
- Provide aftercare and support
- Improve our services and website
- Comply with legal and regulatory obligations
5. Legal Basis for Processing
We process your data under the following lawful bases:
- Consent – for health-related information and marketing
- Contract – to provide booked services or products
- Legal obligation – for record-keeping and compliance
- Legitimate interest – to improve services and customer experience
6. Health Data (Special Category Data)
Health-related information is collected only where necessary and:
- Stored securely
- Accessed only by authorised personnel
- Used solely for safe and effective treatment provision
Your explicit consent will always be obtained prior to collecting this information.
7. Data Sharing
We do not sell or share your personal data with third parties except where necessary, including:
- Payment processors
- Booking systems
- Delivery providers
- Legal or regulatory authorities (if required)
All third parties are GDPR-compliant.
8. Data Retention
We retain your data only as long as necessary:
- Treatment records: retained in line with insurance and legal requirements
- Purchase data: retained for accounting purposes
- Marketing data: until you withdraw consent
9. Your Rights Under GDPR
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion ("right to be forgotten")
- Restrict processing
- Object to processing
- Data portability
- Withdraw consent at any time
To exercise your rights, please contact us.
10. Marketing Communications
We may send you marketing communications if you have opted in.
You can unsubscribe at any time via:
- Email link
- Direct request
11. Data Security
We implement appropriate technical and organisational measures to protect your data, including:
- Secure storage systems
- Password protection
- Restricted access
- Encrypted payment processing
12. Cookies
Our website may use cookies to enhance user experience and analyse traffic.
You can manage cookie preferences through your browser settings.
13. Third-Party Links
Our website may contain links to external websites.
We are not responsible for their privacy practices.
14. Changes to This Policy
We may update this Privacy Policy from time to time.
The latest version will always be available on our website.
15. Contact Information
If you have any questions about this Privacy Policy or your data, please contact:
Lorna Melay
📧 lornamelay@hotmail.com
📍 Kildavin, Bunclody, Co. Carlow
