When you book an appointment with me, I will collect personal details such as your name, address, email and telephone number. This information is used to identify you and to contact you about the services you require.
When you visit my website, I also receive information about your computer such as your IP address, operating system and browser details. This information helps me to improve visitors’ experience of using the website.
If you enter into a contract for services with me then I will make brief and concise pseudo-anonymised records of our work together. These records will be stored securely and destroyed in a timeous and secure manner (for more details see section on ‘Data Handling & Storage’).
By providing me with your personal information, either through booking an appointment or through contacting me to request information about my services, you are giving your consent to my collecting this information and using it for these specific purposes.
I will not use your personal information for any other purpose, including marketing, without asking you directly for your consent to do so.
I am legally required to retain any personal information you give to me in the course of providing you with psychological treatments or services, plus any notes I may make while providing those treatments or services, for a minimum of 7 years.
Any personal information that I hold about you will be permanently deleted 7 years from the date of your last appointment with me.
If you opt to withdraw your consent before the end of the 7 year retention period, I will archive your personal information until the retention period has expired, when it will then be permanently deleted. Whilst your information is archived, I will not access or process it in any way unless required to do so by law, or for reasons of legal protection.
You have the right to review any personal information I store about you and your therapy sessions. You also have the right to request that your details be updated or amended if they are incorrect.
To action any of these rights, please email your request to me.
I may disclose your personal information if I am required to do so by law or if you breach my Terms and Conditions of service.
The contact form that you send me via my website is stored securely in webmail. I do not download or make copies of this information. The form is temporarily accessible to me via my mobile phone and iPad; both devices are password protected.
If we contact each other by telephone then your telephone number is stored in my mobile phone. If we agree to work together then I will identify you in my contact list using a code number. I will delete your telephone number from the contact list in my mobile phone three months after we finish our work together.
If we begin working together then I will make brief and concise records of our sessions. I keep paper records and store them in a locked cabinet at home. I will hold onto these records for 7 years after our final appointment then shred them.
I record my accounts using an Excel spreadsheet. I keep a record of income received from each client and supervisee identified by a code number.
If we have agreed that I will invoice a third party for payment of your session fees then I have to provide your name on the invoice. I keep a record of all invoices for 7 years from the accounting year. They are held in an encrypted folder in my computer.
In general, the third-party providers I use will only collect, process and disclose your information so far as is necessary for them to carry out the specific services they provide to me.
I recommend that you read their respective privacy policies to ensure that you understand the ways in which your personal information will be handled by these providers.
In particular, please note that certain providers may be located in, or have facilities that are located in a different geographical jurisdiction than either you or I. If you elect to proceed with a transaction involving a third-party service provider, then your information may become subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located.
When you click a link on my website, this may direct you away from my site and onto a different website. I am not responsible for the privacy practices of other sites and would encourage you to read their respective privacy statements.
I take all reasonable precautions to protect your personal information and follow industry best practices to ensure that no personal data is inappropriately accessed, used, altered, disclosed, lost or destroyed.
Please note that if this business is acquired by, or merged with another business, your information may be transferred to the new owners so that they can continue to provide you with the services you have requested.
If you would like to request that your information be updated, amended or deleted, or if you have any questions about how your information is collected, stored or used, please email me.
This information is collected by Susan Stephen in accordance with the guidelines set out in the General Data Protection Regulation (GDPR).
Susan Stephen is registered with the Information Commissioners Office. Registration Reference: ZA379264
Susan Stephen trading names: Susan Stephen