This privacy policy clarifies the handling of your personal information submitted to Us when utilisng the website “injuryfreedom.co.uk” and its sub-domains, folders, and sub-folders (collectively referred to as the “Website”, “Us,”, “We,” or similar) or availing our paid
Respecting your privacy is of utmost importance to Us. Our objective is to gather and process your personal information in accordance with the GDPR and the UK’s Data Protection Act of 2018. This document outlines the specifics of the information collected from you and the actions taken with the acquired personal information.
This privacy policy may be updated at any time by posting a revised version on this website. The last revision of this document occurred on 7 March 2024.
In this Privacy Policy, the following terms carry the specified meanings:
– “Contact information” includes personal details such as your name, address, phone number, Zoom (or other video call platform) name, and email address, provided to Us for interactive purposes through the Website.
– “Content” encompasses all text (including blog posts), graphics, images, video, sound, and other data displayed on or made available from the Website.
– “Health information” pertains to personal information gathered or generated by Us while providing paid Musculoskeletal Therapy Services or responding to inquiries concerning your physical condition.
– “Personal information” denotes any data identifying you or capable of identifying you, encompassing contact information and health information.
– “You” refers to the client seeking our Musculoskeletal Therapy Services via the Website. In cases where a client is under 18, necessitating information acquisition from a responsible adult, references to “you” in this Privacy Policy encompass both the client and the responsible adult.
For inquiries regarding this Privacy Policy, please reach out to us via email: support@injuryfreedom.co.uk. You also retain the right to file a complaint about our handling of your personal information with the Information Commissioner in the UK.
Our objective is to gather health information exclusively from prospective clients seeking to utilise our paid Musculoskeletal Therapy Services. In the event that the client is under 18 years of age, a parent or legal guardian is required to provide health information, personal information, and facilitate payments on behalf of the client.
The types of personal information collected will vary based on the activities engaged in on our website:>
We may utilise “Google Analytics,” “Google Tag Manager,” and “Microsoft Clarity” to comprehend user interactions with our website. These systems use cookies, text files deposited on your computer during site navigation, collecting data such as your IP address, browser details, and general location. Our Cookies Policy provides a comprehensive explanation of cookie functionality, collected information, and options for opting out.
Share buttons on the Website (e.g., Instagram, Facebook, TicTok) also utilise cookies, typically activated while logged into the respective account. Our Cookie Policy details their operation and opt-out procedures.
Submission of questions or requests via email or the Online Confidential Medical Form necessitates providing your name and email address.
Competitions, organised for promotional purposes, outline the information required in each competition’s terms and conditions.
Engaging in our paid Musculoskeletal Therapy services or purchasing products mandates providing contact information. Depending on the items bought, required information may encompass name, billing address, phone number, emergency contact details, Zoom (or other video call platform) name, email address, and recording your computer’s unique IP.
If a letter is required on your behalf, your residential address may be requested.
When acquiring Musculoskeletal Therapy Services or other products from the Website, you may provide sensitive and confidential payment information. All payments undergo processing on the Stripe platform, and our website neither requests nor stores any account number or card details. Stripe adheres to HIPAA compliance standards.
Zoom may be utilised for video consultations, with Zoom-to-Zoom voice calls, file transfers, and instant messages encrypted. Personal information is required during Zoom account registration, and their privacy policy is accessible online. Zoom is certified under the EU-U.S. Privacy Shield Framework, Swiss-U.S. Privacy Shield, GDPR compliance, and HIPAA compliance.
Skype may be utilised for video consultations. All Skype-to-Skype voice calls, file transfers and instant messages are encrypted. Personal information will be requested when you register for an account. Skype is ran by the Microsoft Company (please refer to their privacy policy if necessary). Skype is compliant with the EU-U.S. Privacy Shield Framework and the Swiss-U.S. Privacy Shield.
Other Activities: Information may be used for purposes not explicitly mentioned under the following circumstances: (a) with your specific authorisation; (b) when related to one of the primary purposes listed above and reasonably expected; (c) for compliance with the law or lawful directives from governmental authorities or courts; or (d) in the interests of public health and safety as outlined in the UK’s Data Protection Act 2018.
b. Collection of Health Information
The acquisition of your health information becomes necessary when providing Musculoskeletal Therapy Services through consultations and tailored programmes. This information is gathered via an online questionnaire (confidential Medical Form) and/or video calls designed to elicit a comprehensive medical history for probable diagnoses, self-treatment and rehab planning. Such data may encompass:
– Personal details (e.g., name, age, gender)
– Information about current health service providers, including the general medical practitioner
– Details regarding current or past symptoms, injuries, diseases, conditions, or disabilities
– Information about past operations, treatments, and undertaken programs
– Details about allergies
– Information about medications taken or previously taken
– Details about medical investigations (e.g., x-rays, MRI, ultrasound, blood tests)
– Our professional opinion on your medical condition
– Our recommended self-treatment and rehabilitation
Additionally, you have the option to submit pictures of the injury site and/or videos for analysis purposes. Video submissions can be sent via the confidential medical form. WeTransfer retains files for seven days, automatically deleting them from their servers. File storage on EU servers is assured if uploaded from an EU IP address. Encryption and secure connections (https) safeguard transfers during upload, storage, and download. WeTransfer’s servers comply with GDPR regulations.
GOOGLE GDPR COMPLIANCE SET UP
Files containing your personal and health information are stored in RehabGuru a medical notes keeping system utilising encrypted folders. Two-Factor Authentication is employed for file access. RehabGuru adheres to regulations set by GDPR and HIPAA.
Any health information conveyed via email for our paid online musculoskeletal therapy services is securely copied to and stored within your medical notes in RehabGuru. Emails containing health information are promptly deleted once the data is copied, unless the submission is unrelated to our paid services. If the health information originates from a general inquiry and the individual opts not to utilise our paid musculoskeletal therapy services, we erase the email and health information within 7 days, retaining it only as necessary to fulfil their request.
Google services employed, including Gmail and Drive, adhere to HIPAA compliance standards.
6. Restricted Usage of Personal Information
With the exceptions detailed in Clauses 7 and 8 below, we refrain from disclosing your personal information to external parties. Specifically:
– Your personal information will not be provided, lent, rented, or sold to third-party telemarketing, market research, or email list-building entities, which may further disseminate it.
– Health information will not be utilised or disclosed unless directed by you or essential for delivering our health services to you.
Cookies are small files that websites store on your browser to remember information about your preferences and browsing activity.
Cookies are used to personalise your experience on websites by remembering your preferences and settings. They also help website owners understand how users interact with their sites to improve them.
You have the option of refusing cookies by selecting the appropriate settings on your browser.
To decline cookies, you can usually adjust your browser settings. Most browsers allow you to manage cookie preferences and choose whether to accept or decline them. Look for the privacy or security settings in your browser’s menu, where you can find options to block or delete cookies. Additionally, many websites offer cookie consent pop-ups or banners where you can choose to decline cookies before browsing the site.
During your visit to our website we may use the following cookies:
Session cookies: These are temporary and are deleted when you close your browser. They help websites remember your actions during a browsing session.
Persistent cookies: These are stored on your device for a specified period, even after you close your browser. They remember your preferences and settings for future visits to the site.
First-party cookies: These are set by the Website you are visiting and are commonly used for functionality and personalisation.
Third-party cookies: These are set by domains other than the one you are visiting and are often used for tracking and advertising purposes.
Our third parties are listed below with a link to their related policies:
a. Google. We use Google Forms to process your information.
https://www.google.com/intl/en/policies/privacy/partners/
You can opt out of Google Analytics tracking by installing a browser plug-in from https://tools.google.com/dlpage/gaoptout?hl=en
b. Rehab Guru. We use Rehab Guru to create and deliver your Tailored Freedom Programme.
https://www.rehabguru.com/trust/data-privacy
c. Stripe. We use Stripe to process your payment.
https://www.stripe.com/gb/privacy
d. HubSpot. We use HubSpot to book 1 to 1 sessions.
https://www.legal.hubspot.com/privacy-policy
e. Facebook. We use Facebook for promotion.
https://www.facebook.com/privacy/policy/
f. Instagram. We use instagram for promotion.
https://help.instagram.com/581066165581870
g. Skype. We use Skype for 1 to 1 sessions.