Velvet Mirage Beauty

Privacy Policy

Last updated: [Insert Date]

  1. Introduction Velvet Mirage Beauty ("we", "us", or "our") is a beauty salon operating in England. We are committed to protecting your privacy and handling your personal data in a transparent and lawful manner. This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you visit our salon, use our website, contact us, or otherwise interact with us.

By using our services, booking an appointment, or providing your personal data to us, you acknowledge that you have read and understood this Privacy Policy.

  1. Data Controller The data controller responsible for your personal data is:

Velvet Mirage Beauty [Insert Postal Address] [Insert City], England [Insert Contact Email] [Insert Contact Phone Number]

  1. What Data We Collect We may collect and process the following categories of personal data:

3.1 Identification and Contact Details

  • Full name
  • Phone number
  • Email address
  • Postal address (if provided)
  • Social media handle (if you contact us via social media)

3.2 Booking and Transaction Information

  • Appointment dates, times, and services booked
  • Payment details (card type, partial card number, and transaction details). Card payments are typically processed by a secure third‑party provider, and we do not store full card details.
  • Purchase history and preferences

3.3 Health and Consultation Information To provide certain beauty treatments safely and appropriately, we may collect limited health‑related information, such as:

  • Skin type, conditions, and sensitivities
  • Allergies and known reactions
  • Relevant medical conditions (for example, pregnancy, skin disorders, or recent medical procedures) when necessary for treatment

This information is considered special category data under data protection law, and we only collect and use it with your explicit consent and when it is necessary for the provision of our services.

3.4 Website and Technical Data (if applicable) When you visit our website, we may automatically collect:

  • IP address
  • Browser type and version
  • Device information
  • Approximate location based on IP
  • Information about how you use our website (pages visited, time spent, links clicked)

This data is typically collected using cookies and similar technologies. For more information, please refer to our Cookies section below.

3.5 Marketing and Communication Preferences

  • Your preferences for receiving marketing communications
  • Records of communications you send to us (emails, messages via social media or contact forms)
  1. How We Use Your Personal Data We use your personal data only when we have a legal basis to do so under UK data protection laws. We may process your data for the following purposes:

4.1 To Provide Our Services Legal basis: Performance of a contract; Legitimate interests; Consent (for special category data)

  • Managing bookings and appointments
  • Providing beauty treatments and aftercare advice
  • Processing payments and issuing receipts
  • Communicating with you about your appointments or services

4.2 To Manage Our Relationship With You Legal basis: Performance of a contract; Legitimate interests; Legal obligations

  • Responding to your enquiries and requests
  • Notifying you of changes to our terms, services, or policies
  • Handling feedback, complaints, and support issues

4.3 For Marketing And Promotions Legal basis: Consent; Legitimate interests

  • Sending you news, special offers, promotions, and updates about our services, if you have agreed to receive such communications or if the law allows us to contact you
  • Customising the marketing content we send you based on your preferences and previous interactions with us

You can opt out of marketing communications at any time (see Section 9 below).

4.4 For Safety, Security, and Legal Compliance Legal basis: Legal obligations; Legitimate interests

  • Maintaining safe treatment standards and appropriate records
  • Complying with legal, tax, and regulatory requirements
  • Preventing fraud or misuse of our services
  • Establishing, exercising, or defending legal claims

4.5 Website Improvement and Analytics Legal basis: Legitimate interests; Consent (for non‑essential cookies)

  • Analysing how visitors use our website
  • Improving our website, services, and customer experience
  • Measuring the effectiveness of our marketing
  1. Special Category Data (Health Information) We may collect health‑related information when it is necessary to:
    • Assess your suitability for specific treatments
    • Tailor treatments to your needs
    • Safeguard your health and safety during and after treatments

We will only process this special category data when:

  • You have given us your explicit consent; and/or
  • It is necessary for the establishment, exercise, or defence of legal claims; and/or
  • It is necessary for reasons of substantial public interest under applicable law.

You may withdraw your consent at any time. However, if you do so, we may not be able to provide certain treatments or services safely.

  1. How Long We Keep Your Data We retain your personal data only for as long as is necessary for the purposes described in this Privacy Policy, or as required by law. The retention period may vary according to:
    • The type of data
    • The purposes for which it is used
    • Legal and regulatory requirements (for example, maintaining certain financial or treatment records for a minimum period)

When personal data is no longer needed, we will securely delete or anonymise it.

  1. Sharing Your Personal Data We do not sell your personal data. We may share your information with trusted third parties where necessary, including:

7.1 Service Providers

  • Appointment and booking systems
  • Payment processors
  • IT and website hosting providers
  • Email and marketing platforms

These providers only process your data on our instructions, are subject to confidentiality obligations, and must implement appropriate security measures.

7.2 Professional Advisors and Authorities

  • Accountants, legal advisors, and insurers
  • Government bodies, regulators, law enforcement agencies, or courts, when we are legally required to do so or when necessary to protect our rights or the rights of others

7.3 Business Transfers If we sell, transfer, or merge parts of our business or assets, your data may be transferred to the new owner. In such cases, the new owner will be required to use your personal data in accordance with this Privacy Policy or provide you with an updated policy.

  1. International Transfers If any of our service providers process your data outside the United Kingdom or the European Economic Area (EEA), we will ensure that appropriate safeguards are in place to protect your personal data, such as:
    • Using countries that have been deemed to provide an adequate level of data protection; or
    • Using standard contractual clauses or equivalent legal mechanisms.

You may contact us for more information about these safeguards.

  1. Your Data Protection Rights Under UK data protection law, you have the following rights in relation to your personal data, subject to certain conditions and exceptions:
  • Right of access: You can request a copy of the personal data we hold about you.
  • Right to rectification: You can ask us to correct inaccurate or incomplete data.
  • Right to erasure: You can ask us to delete your personal data when there is no good reason for us to continue processing it.
  • Right to restriction: You can ask us to restrict how we use your data in certain circumstances.
  • Right to data portability: You can request that we provide your data in a structured, commonly used, machine‑readable format, or transfer it to another organisation where technically feasible.
  • Right to object: You can object to our processing of your data where we rely on legitimate interests, including for direct marketing.
  • Rights related to automated decision‑making and profiling: You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal or similarly significant effects on you.

To exercise any of these rights, please contact us using the details in Section 2. We may need to verify your identity before responding.

  1. Marketing Communications We may use your contact details to send you marketing communications about Velvet Mirage Beauty services, offers, and events if you have:
    • Given your consent; or
    • Previously purchased from us and have not opted out of marketing, where permitted by law.

You can opt out of marketing at any time by:

  • Clicking the "unsubscribe" link in our emails; or
  • Contacting us at the details provided in Section 2.

Opting out will not affect the lawfulness of processing before you withdrew your consent, and it does not affect communications relating to your existing bookings or other non‑marketing communications.

  1. Cookies and Similar Technologies Our website may use cookies and similar technologies to:
    • Enable basic site functions
    • Remember your preferences
    • Analyse site traffic and performance
    • Support marketing and advertising

Where required by law, we will ask for your consent before placing non‑essential cookies on your device. You can manage your cookie preferences through your browser settings or any cookie banner or tool provided on our website. Please note that disabling certain cookies may affect the functionality of our website.

  1. Data Security We take appropriate technical and organisational measures to protect your personal data from:
    • Unauthorised access
    • Unlawful processing
    • Accidental loss, destruction, or damage

These measures may include:

  • Secure storage systems
  • Access controls and authentication
  • Staff training on data protection and confidentiality
  • Use of secure, reputable third‑party processors

However, no system is completely secure, and we cannot guarantee absolute security. You are responsible for keeping any passwords or login details confidential and for using appropriate security measures when communicating with us online.

  1. Children’s Data Our services are primarily intended for adults. We do not knowingly collect personal data from children without appropriate parental or guardian consent, where required by law. If you believe that a child has provided us with personal data without such consent, please contact us and we will take appropriate steps to delete it.

  2. Links to Other Websites Our website or communications may contain links to third‑party websites, plug‑ins, or services. We are not responsible for the privacy practices or content of these third‑party sites. We encourage you to read their privacy policies before providing any personal data.

  3. Changes to This Privacy Policy We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or for other operational reasons. When we make significant changes, we will take appropriate steps to inform you, such as updating the date at the top of this notice and, where necessary, providing a more prominent notice.

Your continued use of our services after any changes have been posted will constitute your acceptance of the updated Privacy Policy.

  1. Contact Us If you have any questions, concerns, or requests relating to this Privacy Policy or our handling of your personal data, please contact us at:

Velvet Mirage Beauty [Insert Postal Address] [Insert City], England Email: [Insert Contact Email] Phone: [Insert Contact Phone Number]

You also have the right to lodge a complaint with the UK supervisory authority:

Information Commissioner’s Office (ICO) Wycliffe House, Water Lane Wilmslow, Cheshire, SK9 5AF, United Kingdom Website: https://www.ico.org.uk Telephone: +44 (0)303 123 1113

We respect your privacy

Velvet Mirage Beauty uses cookies and similar technologies to improve your browsing experience, analyse website traffic and personalise content. Some cookies are essential for the site to function, while others help us understand how you use our pages so we can refine our services. You can choose to accept all cookies or manage your preferences at any time in the privacy settings. For full details on how we handle your data, please read our Privacy Policy carefully before proceeding. View full Privacy Policy