top of page

Policies

Data Protection Policy

This policy applies to the processing of personal data in manual and electronic records kept by Hilot Massage Therapy under the General Data Protection Regulations. 

 

This policy applies to the personal data of clients of Hilot Massage Therapy (the company). These are referred to in this policy as relevant individuals.

 

“Personal data” is information that relates to an identifiable person who can be directly or indirectly identified from that information, for example, a person’s name, address, contact details.

 

“Special categories of personal data” is data which relates to an individual’s health, sex life, sexual orientation, race, ethnic origin, political opinion, and religion.

 

“Data processing” is any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

 

Hilot Massage Therapy makes a commitment to ensuring that personal data, including special categories of personal data and criminal offence data (where appropriate) is processed in line with GDPR and domestic laws and conducts themselves in line with this, and other related, policies. In line with current data protection legislation, the company   understands that it will be accountable for the processing, management and regulation, and storage and retention of all personal data held in the form of manual records and on computers.

 

Types of Data Held

Personal data is kept in files within the company’s own systems. The following types of data may be held, as appropriate, on relevant individuals:

 

  • name, address, phone numbers 

  • medical or health information

  • treatment records 

 

 

Data Protection Principles

All personal data obtained and held will:

 

  • be processed fairly, lawfully and in a transparent manner

  • be collected for specific, explicit, and legitimate purposes

  • be adequate, relevant, and limited to what is necessary for the purposes of processing

 

  • only use it in the way that we have told you about

  • ensure it is correct and up to date

  • process it in a way that ensures it will not be used for anything that you are not aware of or have consented to (as appropriate), lost or destroyed.

  • be kept accurate and up to date. Every reasonable effort will be made to ensure that inaccurate data is rectified or erased without delay

  • not be kept for longer than is necessary for its given purpose

  • be processed in a manner that ensures appropriate security of personal data including protection against unauthorised or unlawful processing, accidental loss, destruction, or damage by using appropriate technical or company measures

  • comply with the relevant data protection procedures.

 

In addition, personal data will be processed in recognition of an individuals’ data protection rights, as follows:

 

  • the right to be informed

  • the right of access

  • the right for any inaccuracies to be corrected (rectification)

  • the right to have information deleted (erasure)

  • the right to restrict the processing of the data 

  • the right to portability

  • the right to object to the inclusion of any information 

  • the right to regulate any automated decision-making and profiling of personal data.

​

Procedures

The company has taken the following steps to protect the personal data of relevant individuals, which it holds or to which it has access:

 

  • it can account for all personal data it holds.

  • access to data is limited, secure and protected. 

  • it recognises the importance of seeking individuals’ consent for obtaining, recording, using, storing, and retaining their personal data, and regularly reviews its procedures for doing so. 

  • The company understands that consent must be freely given, specific, informed, and unambiguous. Consent will be sought on a specific and individual basis where appropriate. Full information will be given regarding the activities about which consent is sought. Relevant individuals have the absolute and unimpeded right to withdraw that consent at any time.

 

Access to Data

Relevant individuals have a right to be informed whether the company processes personal data relating to them and to access the data that the company holds about them. Requests for access to this data will be dealt with under the following summary guidelines:

 

  • the request should be made in writing to  [insert details]  

  • there will not charge for the supply of data unless the request is manifestly unfounded, excessive, or repetitive, or unless a request is made for duplicate copies to be provided to parties other than the employee making the request.

  • the company will respond to a request without delay. Access to data will be provided, subject to legally permitted exemptions, within one month as a maximum. This may be extended by a further two months where requests are complex or numerous.

 

Relevant individuals must inform the company immediately if they believe that the data is inaccurate, either as a result of a subject access request or otherwise. The company will take immediate steps to rectify the information. 

 

Data Security 

The company adopts procedures designed to maintain the security of data when it is stored. 

 

  • ensures that all files or written information of a confidential nature are stored in a secure manner and are only accessed by people who have a need and a right to access them

  • ensure that all files or written information of a confidential nature are not left where they can be read by unauthorised people

  • refrain from sending emails containing sensitive information

  • check regularly on the accuracy of data being entered into computers

  • always use passwords to access the computer system and not pass them on to people who should not have them

  • use computer screen blanking to ensure that personal data is not left on screen when not in use.

  • ensure that laptops or USB drives are not left lying around where they can be stolen.

 

Breach Notification

Where a data breach is likely to result in a risk to the rights and freedoms of individuals, it will be reported to the Information Commissioner within 72 hours of the company becoming aware of it and may be reported in more than one instalment. 

 

Individuals will be informed directly in the event that the breach is likely to result in a high risk to the rights and freedoms of that individual.

Cancellation Policy

​​

At Hilot Massage Therapy we value your time and ours. To ensure fairness for all clients, we have the following cancellation policy in place:

​

Less than 24 Hours

Cancellations made within 24 hours of your scheduled appointment will result in a full charge for the treatment.

​

Between 24-48 Hours

If you cancel with less than 48 hours' notice, you may be charged 50% of the treatment cost.

 

No-Shows

If you fail to attend your appointment without prior notice, the full amount of the scheduled treatment will be charged.

 

Gift Vouchers

If you cancel within 24 hours of your appointment, your gift voucher may be considered redeemed. Future treatments will require a new payment or voucher.

 

Flexibility & Emergencies

We understand that unforeseen circumstances or medical emergencies can arise. If this applies to your situation, please contact us, and we will do our best to accommodate.

 

Communication is Key

If you need to reschedule or cancel, please notify us as soon as possible. This allows us to offer the appointment slot to another client.

​

Thank you for your understanding and co-operation!

​

                          Ladies Only Wellness Group Sessions

Whether you're planning a hen do, a birthday celebration, a ladies' pamper day, or simply looking for a retreat to unwind and recharge, our sessions are designed for any group looking to take a step back from busy everyday lives to indulge in a transformative, relaxing experience.

 

From small intimate gatherings to larger celebrations, our retreats cater to all types of events, offering the perfect experience to reconnect and relax. 
 

If you're looking for something more than just a traditional spa or relaxation session, and want an experience that leaves everyone feeling rejuvenated, inspired and connected, then this is the perfect experience for you!


Ladies Only Wellness Group Booking Terms and Conditions

​

1. General

 - By booking a group retreat session with Hilot Massage Therapy, you agree to these terms and conditions.

 - All services are subject to availability and may require a deposit to secure your booking.

2. Payment and Cancellation Policy​

    Full Payment: The full balance must be paid 14 days prior to the scheduled retreat session date.

    Cancellation Policy: 
- If you need to cancel within 1 week of the session you may be eligible to reschedule based on availability and you must contact us to check.

 - If you need to cancel within 24 hours a 50% refund will be returned. 

 - If you need to cancel with less than 12 hours notice, No refund will be given.

 - No-shows - Full retreat price will be charged, and no rescheduling will be offered.

 

3. Health and Medical Information

 - You must provide accurate and complete health information prior to taking part in the session, including any known medical conditions or concerns.

 - If you have any health concerns or conditions, please consult with your physician before booking and attending the retreat.

 - Hilot Massage Therapy reserves the right to refuse service to any participant who, in our judgment, may not be suitable for the retreat based on their medical history.

 

4. Program Changes

 - Hilot Massage Therapy reserves the right to make changes to the retreat schedule, activities, or service providers, if necessary.

 - If significant changes are made to the schedule, you may be eligible for a partial refund or an opportunity to reschedule, depending on the nature of the change.

 

5. Personal Responsibility

 - You are responsible for your own safety and well-being during all retreat activities. You must follow all instructions provided by the session staff.

 - If you have any limitations, injuries, or concerns that may affect your ability to participate, please inform the retreat staff before the session starts.

 

6. Confidentiality​

 - All personal and health information shared during the booking and retreat will be treated with the utmost confidentiality. We will not disclose any information without your consent, unless required by law.

 

7. Liability​

 - Hilot Massage Therapy is not liable for any injuries, accidents, or damages that occur during the session, unless directly caused by the negligence of our staff or representatives.

 - Participants agree to engage in activities at their own risk and take responsibility for their personal safety.

 

8. Photographs

 - By attending the retreat session participants agree to be photographed or filmed for promotional purposes. If you do not wish to appear in any media please inform us prior to the start of the session.  

 

9. Retreat Preparation

 - Participants are encouraged to bring 2 large towels, 1 small towel and a face towel and are advised to wear comfortable clothing suitable for physical activities.      

    

10. Contact Information

For any questions, concerns, or to discuss special requirements, please contact us at info@hilotmassage.co.uk

​

​

​

Treatment Cancellation Policy

bottom of page