Aesthetic College Privacy Policy

Who We Are

Company (referred to as either “the Company”, “We”, “Us” or “Our” in this Agreement) refers to Aesthetic College.

Our address: Claremont Business Park, 6-8 Claremont Road, 3 Academic Office, Surbiton, London, United Kingdom KT6 4QU

What This Policy Covers

This privacy notice explains how we collect, use, store, and transfer your personal data. It also outlines your privacy rights and how the law protects you.

What is Personal Data?

‘Personal data’ refers to information that can be used to identify you as an individual, either alone or in combination with other information. ‘Processing’ means any action taken with personal data, such as collecting, storing, or using it.

Data Sharing and Disclosure

We do not share, sell, or disclose any information collected through our website to third parties, except as described in this policy.

Personal Data We Collect and How We Obtain It

We collect personal data from you in the following ways:

Directly from you: This includes information you provide when you create an account, purchase products or services, or interact with our website.

From third party databases and service providers:  We may use information from other sources to confirm your identity or improve the quality of our services.

From your use of our website and services: We track your activity on our website and app to improve your experience and understand user behavior.

Types of Personal Data:

Collected Directly:

Personal Identifiers: Name, date of birth, title.

Contact Information: Email address, phone number, billing and delivery addresses.

Account Information: Username, password.

Payment Information:Credit/debit card details, bank account information.

Communications: Messages sent through our website, emails, phone conversations.

Marketing Preferences:Your preferences for receiving marketing materials.

Collected from Third Parties:

Identity Verification: Information to confirm your identity.

Business Information:Business trading name and address, company number, VAT number.

Business Reviews: Feedback about your business from other websites.

Unsolicited Complaints: Complaints received about your business.

Collected from Your Use of Services:

Account Access: Username, password, access information.

Community Contributions: Reviews, polls, survey responses.

Technical Information: Device information such as IP address, browser type, operating system.

Usage Information: Frequency of use, pages visited, interactions with messages.

Transaction Information:Purchase details, payment information.

Marketing Preferences: Communication preferences, responses to marketing materials.

Aggregated Information

We may use anonymous, aggregated information (like statistical data) for various purposes. This information does not identify individuals and is not treated as personal data. For example, we may aggregate usage information to analyze website features.

Special Categories of Personal Data (‘Sensitive Data’)

We will not collect or process special categories of personal data without your explicit consent. This data includes information about your race, ethnicity, religious beliefs, sexual orientation, political opinions, health, or genetic information.

What Happens If You Don’t Provide Personal Data?

In some cases, we may be required by law or contract to collect certain personal data. If you refuse to provide this information, we may be unable to fulfill our contractual obligations or provide you with our services. We will inform you of this situation at the time.

Legal Basis for Processing Your Data

We rely on the following legal bases to process your personal data:

Contractual Obligations: To fulfill our obligations under contracts with you, such as when you create an account or purchase products.

Legitimate Interests:To pursue our legitimate interests, such as improving our website and services, providing customer support, and preventing fraud.

Compliance with Legal Obligations: To comply with legal requirements, such as tax regulations or law enforcement requests.

Changes to Our Privacy Policy

We may update this privacy notice from time to time. We will notify you of any significant changes to this privacy notice by posting the updated version on our website.

Your Rights

You have certain rights concerning your personal data, including the right to:

Access: Request access to the personal data we hold about you.

Rectification: Request correction of any inaccurate or incomplete personal data.

Erasure: Request deletion of your personal data, subject to certain legal exceptions.

Restriction:Request restriction of processing your personal data in certain circumstances.

Data Portability: Request your personal data in a portable format.

Object: Object to the processing of your personal data on grounds relating to your particular situation.

Withdraw Consent: Withdraw consent to the processing of your personal data, where consent is the legal basis for processing.

How to Exercise Your Rights

To exercise any of your rights, please contact us using the contact information provided below.

Contact Us

If you have any questions or concerns about this privacy notice or our data practices, please contact us at:

 Email: [email protected]

 Phone: +442036338226

Mail: Claremont Business Park, 6-8 Claremont Road, 3 Academic Office, Surbiton, London, United Kingdom KT6 4QU

Data Security

We take appropriate technical and organizational measures to protect your personal data from unauthorized access, disclosure, alteration, or destruction.

Updates to This Policy

We may update this policy from time to time. We will notify you of any significant changes via our website.

Information Processed with Consent

– You provide consent for us to process potential personal data through actions such as browsing our website or requesting information about our products or services.

– We aim to obtain your explicit consent, such as asking you to agree to non-essential cookies.

– We may share your name and contact information with selected associates who may provide services you find useful, if you grant explicit permission.

– We continue processing your information until you withdraw consent or it’s assumed that consent no longer exists.

– You can withdraw consent at any time; however, this may limit your website or service access.

Information Processed for Legitimate Interests

– We may process information based on a legitimate interest for either you or us.

– We consider the following factors:

– Alternative means to achieve the objective

– Potential harm caused by processing or not processing

– Your expectations and the reasonableness of processing

– Purposes for which we may process information on this basis include:

– Service improvement

– Organizational record-keeping

– Responding to unsolicited communication

– Preventing service fraud

– Exercising legal rights (fraud detection, intellectual property protection)

– Obtaining professional advice for risk management

– Protecting your interests

Information Processed for Legal Obligations

– We may process information to comply with statutory obligations, such as providing information to legal authorities upon request or with authorization (e.g., search warrant).

– This information may include personal data.

Information Processed to Protect Vital Interests

– We may process personal information to protect someone’s life in situations where consent cannot be given and other lawful bases are not appropriate.

How and When We Process Personal Data

Shared Data:

– We do not share or disclose any information collected through our website to third parties.

Information You Provide:

– Information posted on our website may be seen, copied, or used by others.

– Posting personal data is your responsibility, and we assume consent for messages to be viewed by others.

– We may include your username and personal data in posted messages.

– We store and reserve the right to use posted information as we decide.

Job Applications and Employment:

– Job application information may be retained for up to three years for potential future contact.

– Employment-related information is collected during employment and used for relevant purposes.

– After employment ends, personal files are retained for six years before destruction.

Information Collected from Third Parties

– We may receive data indirectly derived from your personal information from third-party service providers we engage.

– Such data is not personally identifiable.

Third-Party Advertising on Our Website

– Third-party advertisers may use technology to collect information about you when displaying advertisements on our website.

– They can also use cookies or JavaScript to personalize and measure the effectiveness of their ads.

– We have no control over these technologies or the data collected.

Credit Reference

– As an anti-fraud measure, we share information with credit reference agencies regarding clients who cancel payment without reason or opportunity for refund.

Disputes Between Users

– With your consent, we may share basic personal, business, and contact information with other users involved in disputes with you.

– We may also share other information at our discretion to facilitate dispute resolution.

Service Providers and Business Partners

– We may share your personal data with service providers and business partners, such as:

– Payment service providers for processing payments

– Fraud prevention and credit reference agencies for identity verification

– Advertising agencies for marketing purposes

Referral Partners

– Information provided by you as an affiliate or referral partner allows us to track and credit commissions.

– It is used solely for this purpose and is kept confidential.

Use of Information Collected Through Automated Systems

Cookies

– Cookies are text files stored on your device that gather information when you visit websites.

– They provide personalized experiences, improve functionality, and serve relevant advertisements.

– You have the option to opt out of or limit their use.

– We ask for your consent before using non-essential cookies on our website.

Personal Identifiers from Your Browsing Activity

– We record requests from your web browser for our website content.

– Information such as your location, IP address, and browsing software is collected.

– This data is used to analyze website performance and improve content delivery.

Re-marketing

Re-marketing utilizes technologies like cookies and web beacons to track your web browsing activity and subsequently display relevant advertisements for our services on other websites.

Benefits of Re-marketing:

Re-marketing enables us to deliver more personalized and relevant ads, avoiding repetitive displays of ads you may have already seen.

Third-Party Re-marketing Services:

We may occasionally utilize third-party advertising services for re-marketing purposes. If you consent to the use of these technologies, you may encounter advertisements for our products and services on external websites.

Data Protection:

We do not share your personal data with advertisers or third-party re-marketing providers. However, if you are already a member of a website with an affiliated business that offers re-marketing services, that business may gain insights into your preferences based on your usage of our website.

Children’s Online Privacy Protection Act (COPPA)

We do not market or sell products or services to children under [15] years of age. Certain areas of our website are designated for children over [15], and we collect data from all visitors to these areas regardless of age.

Encryption

We use Secure Sockets Layer (SSL) certificates to protect your data during transmission between us. You can check for the presence of SSL encryption by looking for a closed padlock symbol or trust mark in your browser’s URL bar or toolbar.

Third-Party Communication Software:

With your consent, we may communicate using third-party software like WhatsApp, Facetime, Skype, or Zoom. These platforms use encryption and other technologies to secure your personal data.

International Data Processing:

Our websites are hosted in the UK. However, we may use services from countries outside the UK. Data collected within the UK or any other country may therefore be processed outside the UK.

Safeguards for Data Processed Outside the UK:

To protect data transferred outside the UK, we implement the following safeguards:

Processors must be within our corporate group or abide by binding corporate data processing rules.

 Data protection clauses in contracts with processors include transfer clauses approved by supervisory authorities.

Control Over Your Personal Data:

Please inform us if your personal data changes. We will verify your identity before granting access or taking other actions.

Removal of Personal Data:

Contact us to request the removal of your personal data from our website. This may impact the services we can provide you.

Obligations and Rights:

We are not required to provide all personal data upon request and may charge a fee for such provision. We are not obligated to delete or stop processing your data solely based on the withdrawal of your consent if alternative legal bases exist.

Communication with Us:

We collect data you provide when contacting us to respond to your inquiries. We may retain your name and email address to track our communications and provide quality service.

Complaints:

If you have any complaints regarding our privacy policy, please contact us. We will use the information you provide to resolve your complaint. We aim to investigate user-generated content complaints, but may not be able to do so immediately. We may remove content if deemed justified or legally required. Vexatious or baseless complaints may not receive a response.

We may aggregate anonymized data from complaints to evaluate our service levels.

Dispute Resolution:

We encourage you to engage in mediation or arbitration with us in good faith to resolve any disputes.

Complaint Rights:

You can lodge a complaint with the Information Commissioner’s Office (ICO) if dissatisfied with our data handling. However, we urge you to contact us first to resolve your concerns.

Data Retention:

We retain personal data only as necessary for:

 Service provision

 Legal compliance

 Defending or prosecuting claims

Legal Compliance:

Our privacy policy adheres to UK law, specifically the Data Protection Act 2018, incorporating the GDPR and PECR.

Review of Privacy Policy:

This privacy notice will be periodically updated as needed.

Open chat
Hello
Can we help you?