
Privacy Policy
Hi there, and welcome!
​
Thanks for taking the time to read the Privacy Policy of Sudworth Psychology. At Sudworth Psychology, we value your privacy and are dedicated to protecting your personal information. We make it a priority to manage your data responsibly while you explore our website and use our services.
​
We recommend reading this policy along with any other privacy notices we may share, so you’re fully informed about how and why we handle your information.
​
Who’s responsible for your data?
Sudworth Psychology is the organisation in charge of managing your data. If you need to get in touch, you can reach us at:
Email: info@sudworthpsychology.com
​
Have a concern or complaint?
We’re here to help and would appreciate the opportunity to sort things out with you directly, so please do contact us in the first instance. However, you also have the right to contact the Information Commissioner’s Office (ICO) at www.ico.org.uk if needed.
What information do we collect about you?
‘Personal data’ refers to information that can identify you. If we anonymize the data, making it impossible to link it back to you, it is no longer considered personal data. We may collect, use, store, and share various types of personal data, including:
• Identity details like your first and last name.
• Contact information including your billing address, email address, and phone number.
• Technical data such as your IP address, login credentials, browser type and version, browser plug-in types and versions, time zone, location, operating system, platform, and other device-specific details when you access our website.
• Usage data regarding how you interact with our website and services.
Aggregated Data:
We may use the information mentioned above, without including any personally identifiable details, to create aggregated data. This could include statistical or demographic information that helps us better understand the needs of our clients. We use tools from Google and Wix to analyze how users navigate our websiteses. If we ever combine this data with your personal information, making you identifiable, we will treat it as personal data and handle it in line with this policy.
​
Sensitive Data:
We do not collect any sensitive personal data, such as health information, details about your race, religious beliefs, sexual orientation, political views, union memberships, criminal records, or genetic and biometric data.
​
How do we collect your personal data?
We gather personal data using several methods, mostly directly from you. This includes:
• When you fill out forms before or during appointments;
• During verbal conversations;
• Through communication with us via phone, email, or post;
• When you apply for our services;
• When you provide us with feedback or reach out for assistance.
​
Automated Data Collection:
We may also gather data using automated technologies, such as website cookies or similar tools. This includes details about your device, browsing actions, patterns, and information related to your activity on other websites that share the same cookies as ours. This allows us to receive insights into how you interact with third-party sites.
​
This data helps us enhance your experience and understand how you use our website. For further details, please refer to our Cookie Policy, which can be found here.
​
Third-Party Data:
We may obtain data from third parties, including:
• Technical details from analytics services like Wix.com Limited.
• Search data from providers such as Google
​
Why do we use your personal data?
We process your data for several purposes, including:
• To register you as a new client.
• To manage our relationship with you, such as informing you of changes to our privacy policy or requesting reviews.
• To maintain and protect our business and website (including troubleshooting, system testing, data analysis, support, and hosting).
• To use analytics to improve our website, services, marketing, and customer experience.
​
We process your data based on one or more of the following legal grounds:
• To fulfill our contract with you;
• For our legitimate interests; or
• To meet legal obligations.
Do we need your consent to process your personal data?
In most cases, we don’t require your consent to process your personal data. ​
​
We may process your personal data for multiple lawful purposes simultaneously, depending on how we intend to use your information. If you'd like more details about the specific legal basis we're relying on, especially when we use more than one, feel free to reach out to us.
​
Do we use cookies?
Cookies are used to enhance your experience on our website by remembering your preferences and improving functionality. You can control and adjust your cookie settings through your browser. Cookies make your browsing experience more seamless by remembering your preferences.
​
Our website uses cookies to identify you and distinguish you from other visitors. For more details, please refer to our Cookie Policy here.
​
Do we link to third-party websites?
Our website may contain links to third-party websites, for videos such as Youtube. When you click on these links, third parties may collect or share your data.
​
We do not control these external sites and are not responsible for their privacy practices. When you leave our site, we encourage you to review the privacy policies of any websites you visit.
​
Do we share your personal data?
No, we do not share your personal date with any third party unless otherwise instructed by you in writing, are instructed to do so for legal reasons, or if you put forward a civil or legal case against Sudworth Psychology.
​​​
How do we protect your data?
We implement robust security measures to safeguard your personal information, including using a GDPR-compliant cloud storage provider to securely store all client files. No client data is stored on our computer hard drives. Only authorized personnel with a legitimate need to access your data, including trusted third-party service providers, are granted permission. These third parties process your data according to our confidentiality agreements.
​
In the unlikely event of a data breach, we have procedures in place to notify you, and any relevant regulatory authorities, if required by law.
​
How long do we keep your data?
We only retain your data for as long as necessary to fulfill the purpose for which it was collected.
By law, we must retain basic information about our clients—such as contact details, identity information, financial data, and transaction records—for six years after they cease being clients, for tax purposes.
For data that doesn't fall into this category, we determine the retention period based on factors like the type of data, its sensitivity, the potential risks of misuse, and our need for it. We also take into account any legal, regulatory, tax, or accounting obligations.
​
What rights do you have regarding your data?
You have the following rights in relation to your personal data:
-
Access: You can request a copy of the personal data we hold about you (known as a "data subject access request").
-
Correction: If the data we hold about you is inaccurate or incomplete, you can request that we correct it.
-
Erasure: You can ask us to delete your personal data, though there may be legal reasons preventing us from doing so. We will inform you of any such reasons when you make the request.
-
Objection: You have the right to object to certain types of data processing.
-
Restriction of Processing: You can request that we limit how we process your personal data under certain conditions.
-
Data Portability: You have the right to request that we transfer your data directly to you or to a third party of your choice.
-
Withdrawal of Consent: If we rely on your consent to process your personal data, you can withdraw it at any time. Please note that withdrawing consent will not affect the legality of any processing done before the withdrawal. If withdrawing consent prevents us from providing certain services, we will notify you of this at the time.
​​
To exercise any of these rights, please get in touch with us. We won’t charge you for access to your personal data. However, we may apply a reasonable fee if your request is clearly excessive, repetitive, or unfounded. In such cases, we also reserve the right to refuse the request. We aim to respond to all legitimate requests within one month, though it might take longer if your request is complex or if you’ve made multiple requests. If that’s the case, we’ll notify you and keep you informed of our progress.
Updates and Contact
We periodically review and update our privacy policy. Please inform us if any of your personal details change. If you have any questions or wish to exercise your rights, feel free to reach out to us.
Thank you for taking the time to read our privacy policy. If you have any questions, don't hesitate to contact us.
