Privacy Policy

Last updated: January 2025

1. Who We Are

This privacy policy applies to Highland Homeopathy, the practice of Nicola Salek RSHom, based in Nairn, Scottish Highlands, Scotland. Nicola Salek is the data controller for all personal information collected through this website and in the course of providing homeopathic services.

If you have any questions about this policy or how your data is handled, please contact: nicola@highlandhomeopathy.co.uk

2. What Information We Collect

We may collect the following personal information:

  • Contact information — your name, email address, and telephone number, provided when you use the contact form or communicate directly.
  • Health information — details about your health history, symptoms, and wellbeing, provided during consultations. This is special category data under UK GDPR and is handled with the utmost care.
  • Consultation records — notes taken during and after appointments, remedy prescriptions, and case history.
  • Payment information — records of fees paid. Payment transactions are not processed through this website.

3. How We Use Your Information

Your personal information is used for the following purposes:

  • To respond to your enquiries and arrange appointments.
  • To provide homeopathic consultations and maintain accurate case records.
  • To contact you regarding appointments, follow-ups, or changes to services.
  • To comply with professional obligations as a registered member of the Society of Homeopaths.

Your information will never be used for marketing purposes without your explicit consent, and will never be sold to third parties.

4. Legal Basis for Processing

We process your personal data on the following legal bases:

  • Contract — to fulfil our obligations in providing homeopathic services to you.
  • Legitimate interests — to respond to enquiries and manage our practice.
  • Legal obligation — to meet professional and regulatory requirements.
  • Consent — where you have explicitly agreed to us holding or using your data in a specific way.

Health data is processed under Article 9(2)(h) of UK GDPR — for the purposes of preventive or occupational medicine, medical diagnosis, and the provision of health care.

5. How Long We Keep Your Data

Consultation records and health information are retained for a minimum of eight years from the date of last treatment for adult patients, in line with NHS and professional body guidance. For children, records are retained until the patient's 25th birthday, or eight years from the last treatment — whichever is longer.

Contact enquiries that do not lead to a consultation are deleted within 12 months.

6. Third Parties

This website uses Formspree to process contact form submissions. When you submit the contact form, your data is transmitted to Formspree's servers. Please refer to Formspree's privacy policy for details of how they handle data.

We do not share your information with any other third parties except where required by law or with your explicit consent.

7. Your Rights

Under UK GDPR, you have the right to:

  • Access — request a copy of the personal data we hold about you.
  • Rectification — ask us to correct inaccurate or incomplete data.
  • Erasure — ask us to delete your data, subject to legal and professional obligations.
  • Restriction — ask us to restrict how we process your data in certain circumstances.
  • Portability — receive your data in a structured, machine-readable format.
  • Object — object to processing based on legitimate interests.
  • Withdraw consent — where processing is based on consent, withdraw it at any time.

To exercise any of these rights, please contact us at nicola@highlandhomeopathy.co.uk. We will respond within one month.

You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe your data has been handled unlawfully.

8. Security

We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure. Consultation records are stored securely and accessible only to Nicola Salek.

9. Changes to This Policy

We may update this privacy policy from time to time. Any significant changes will be noted on this page with a revised "last updated" date.