privacy policy
1. introduction
At Northern Soul Healing, your privacy is very important to us. This Privacy Policy outlines how we collect, use, and protect your personal data when you visit our website, book a service, or make a payment — online or in person, in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Who we are
Northern Soul Healing provides holistic wellbeing services including Reiki, massage and crystal healing. We are committed to safeguarding your personal information.
3. what data we collect
We may collect the following data:
-
Personal details - full name, contact details (email, phone number, address), date of birth, medical and wellbeing information
-
Treatment notes and session history
-
Communication preferences
-
Marketing consent
-
Payment details – processed securely by third-party payment providers (see Section 6). We do not store full card details.
-
Technical data – such as IP address, browser type, and pages visited, collected automatically through cookies and analytics tools to improve your browsing experience.
4. How We Collect Your Data
We collect data directly from you via intake forms, consent forms, email, online forms (e.g. Microsoft Forms), appointment bookings, and in-session communication.
5. Why We Collect Your Data
We use your personal data to:
-
Process and manage bookings
-
Deliver the treatments and services you request
-
In order to fulfil orders purchased online
-
Send appointment confirmations or important updates
-
Improve our website and customer experience
-
Keep records for continuity of care
-
Comply with legal, insurance, or regulatory obligations
-
Send wellness-related communications (with your consent)
6. Payment Processing
We use trusted payment providers to handle transactions securely:
-
Online payments: Processed via Wix Payments. You can view Wix’s privacy policy here: https://www.wix.com/about/privacy
-
In-person card payments: Processed via Lopay Tap to Pay. You can view Lopay’s privacy policy here: https://www.lopay.com/privacy-policy
We do not store your full credit or debit card details. These are encrypted and securely processed by the providers in compliance with PCI-DSS standards.
7. Cookies and Analytics
Our website, built on Wix, uses cookies to:
-
Enable core website functionality
-
Remember your preferences
-
Analyse traffic and performance using Wix Analytics
You can manage or disable cookies through your browser settings, but some features of the site may not function properly without them.
8. Legal Basis for Processing
Our legal basis for processing your personal data includes:
-
Your explicit consent
-
Performance of a contract
-
Compliance with legal obligations
-
Legitimate interests (in providing and managing services)
9. How We Store and Protect Your Data
Your data is securely stored using Microsoft 365 services, with encryption and access controls in place. Physical records (if any) are stored securely and access is restricted.
10. Data Retention
We keep your data only as long as necessary:
-
Client records: for up to 7 years after your last session, in line with insurance and legal guidelines. After this period, your data will be securely deleted or destroyed.
-
Marketing contact lists: maintained until you opt-out or withdraw consent.
-
Website analytics: stored in accordance with Wix’s data retention policies.
11. Sharing Your Data
​Your data will not be shared with third parties without your consent, unless required by law. We do not sell or rent your personal data.
12. Your Rights
You have the right to:
-
Access the personal data we hold about you
-
Request correction of inaccurate data
-
Request deletion of your data (‘right to be forgotten’)
-
Withdraw your consent at any time
-
Object to or restrict certain types of processing
-
Lodge a complaint with the Information Commissioner’s Office (ICO). The ICO’s address:
Information Commissioner’s Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF
Helpline number: 0303 123 1113
13. Contact Us
If you have any questions about this policy or your personal data, please contact:
Katie Cornish, Director of Northern Soul Healing
Email: katie@nothernsoulhealing.co.uk
Phone: 07459 749684
Website: www.northernsoulhealing.co.uk
14. Changes to This Policy
We may update this policy from time to time. The latest version will always be available on our website or upon request.
