Loading Circle
Loading Logo

Legal Information

Privacy Policy

How Aesthetic Be You collects, uses, stores, and protects personal data from website visitors, booking customers, and treatment clients.

Privacy PolicyTerms & ConditionsCookie Policy

Business

Aesthetic Be You

Contact

a.estheticsbeyou@gmail.com

Last Updated

21 March 2026

Who This Policy Applies To

This policy explains how Aesthetic Be You collects, uses, and protects personal data when you browse this website, contact the clinic, subscribe to updates, book an appointment, pay a deposit, complete pre-treatment paperwork, attend a consultation, or receive an aesthetic treatment.

For UK data protection purposes, Aesthetic Be You is the data controller for the personal data described on this page.

Controller details

Aesthetic Be You

171 High St, Burton-on-Trent DE14 1JE

Email: a.estheticsbeyou@gmail.com

Telephone: +44 7530 967900

What Information We Collect

Contact and enquiry data

  • name, email address, telephone number, subject line, and message content sent through the contact form or by email
  • appointment-related messages exchanged with you about availability, changes, aftercare, or follow-up support

Booking and payment data

  • selected treatment, appointment date, appointment timeslot, and your name, email address, and mobile number entered during booking
  • Stripe customer, checkout session, payment status, and transaction reference information
  • calendar event details created after successful payment so your appointment can be reserved

Medical, consultation, and consent data

  • date of birth, birth sex, body weight, and skin tone information entered in the clinic consent form
  • health information such as medical conditions, medications, allergies, reproductive status, neurological or mental health information, lifestyle factors, and prior aesthetic or surgical history
  • treatment-specific consent, aftercare acknowledgement, optional photography and marketing preferences, and your signed confirmation that the information provided is accurate

Technical and website usage data

  • IP address, browser and device information, pages requested, timestamps, and similar technical data generated when the site is used
  • theme preference saved in local storage and map cache data stored in local storage to improve repeat visits
  • session-based booking data and other similar browser-side storage used to operate the site

Photography and media

Where relevant to treatment, photographs or videos may be taken before, during, or after a procedure to maintain an accurate clinical record. Any separate use of those images for marketing is optional and is based on the consent choice made in the clinic's treatment form.

How We Collect It

  • directly from you when you submit the website contact form, newsletter form, booking form, or pre-treatment questionnaire
  • from Stripe when you complete a deposit payment through hosted checkout
  • from Google services used by the clinic to manage the live consent form, booking emails, and calendar bookings
  • automatically through normal website operation, hosting infrastructure, browser storage, and map features
  • from you during consultations or follow-up communications when additional clinical or administrative information is needed

How We Use Personal Data

Bookings and administration

We use contact, booking, and payment data to take deposits, reserve appointments, prevent double-booking, send confirmations, and manage cancellations, rescheduling, and follow-up communication.

Consultation and treatment safety

We use the information in the pre-treatment consent form to assess suitability, identify contraindications, keep treatment notes, provide aftercare, and protect client safety.

Marketing and updates

If you choose to subscribe, we use your email address to send offers, updates, and clinic news. You can unsubscribe at any time.

Website operation and improvement

We use technical and storage-related data to keep the site functioning, remember user preferences such as theme selection, improve map performance, detect abuse, and maintain website security.

Lawful Bases We Rely On

Contract

To process bookings, take deposits, reserve appointments, and communicate with you about the services you ask us to provide.

Legitimate interests

To operate the clinic, maintain the website, manage enquiries, keep records, protect the business against misuse or disputes, and improve the way the service runs.

Consent

For optional marketing, optional marketing use of treatment photographs or videos, and explicit consent to process special category health data where required for consultation and treatment planning.

Legal obligations and legal claims

To keep records needed for tax, accounting, insurance, regulatory, and complaint-handling purposes, and where necessary to establish, exercise, or defend legal claims.

Special Category Health Data

The clinic's live consent form collects sensitive health information, including medical history, medication use, allergies, reproductive status, mental health indicators, prior cosmetic work, and other suitability information relevant to treatments such as injectables, peels, microneedling, laser-based services, skin procedures, and related aesthetic treatments.

This information is collected because it is necessary to decide whether a treatment is safe and clinically appropriate. If relevant information is not provided, the clinic may not be able to proceed with treatment.

Who We Share Data With

  • Stripe, to process online deposits and hosted checkout payments
  • Google services used by the clinic, including Google Forms, Google Calendar, and Gmail or similar Google-hosted communication tools
  • Vercel and other infrastructure or hosting suppliers needed to run the website
  • technical service providers who help deliver site functionality, notifications, or mailing-list workflows
  • professional advisers, insurers, regulators, courts, or law-enforcement bodies where disclosure is necessary or legally required

We do not sell your personal data and we do not share health information for unrelated marketing by third parties.

International Transfers

Some of the suppliers used to run the website, booking, payment, and communication systems may process data outside the UK. Where that happens, we rely on the provider's contractual safeguards and other recognised transfer mechanisms to protect your information.

How Long We Keep Data

Clinical and consent records

Treatment-related consultation notes, consent forms, and clinical images are generally kept for at least 7 years after the last treatment, or longer where needed for insurance, legal, or clinical reasons.

Financial and booking records

Payment, tax, and core booking records are kept for as long as reasonably needed for accounting and legal compliance, which is commonly up to 6 years.

Enquiries

Contact enquiries that do not lead to treatment are usually kept only for as long as needed to respond, manage follow-up, and deal with any later issues.

Marketing preferences

Newsletter data is kept until you unsubscribe or ask us to stop. Marketing-use photography consent can also be withdrawn for future use, although material already published may not always be instantly removable from every channel.

Cookies, Local Storage, and Similar Technologies

The website uses browser-side technologies to make the site work properly and remember limited preferences. This includes theme preference storage, map caching, and technical platform features needed for pages, forms, and secure third-party services such as Stripe checkout.

Full details are set out in the Cookie Policy.

Your Rights

  • to ask for a copy of the personal data held about you
  • to ask for inaccurate data to be corrected
  • to ask for deletion where there is no lawful reason to keep the data
  • to object to or restrict certain processing
  • to withdraw consent where consent is the basis relied on
  • to complain to the UK Information Commissioner's Office at ico.org.uk if you believe your data has been handled unlawfully

Security

We use reasonable technical and organisational measures to protect personal data, including controlled access to systems and the use of specialist providers for hosting, payments, email, and calendar management. No internet transmission or online platform can be guaranteed to be completely secure, so please avoid sending unnecessary sensitive information through the general contact form.

Updates and Contact

We may update this policy from time to time to reflect changes to the clinic, the website, or legal requirements. The latest version will always be published on this page.

Privacy contact

Email: a.estheticsbeyou@gmail.com

Telephone: +44 7530 967900

171 High St, Burton-on-Trent DE14 1JE

Footer

Бъртън он Трент Естетична клиника

Ежедневно създаване на изключителни изживявания.

Услуги

Компания

Законни

© 2026 AestheticBeYou.Всички права запазени.

Powered byNext.js•Hosted using VercelVercel•Secure payments via Stripe