1. Introduction
TD Performance Therapy ("we", "our", or "us") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you use our therapeutic massage booking platform and services.
We are the data controller for the personal data we collect about you. This Privacy Policy complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Information We Collect
Personal Information
- Name, email address, and phone number
- Date of birth and address
- Emergency contact information
- Payment and billing information
Health Information (Special Category Data)
- Medical history relevant to massage therapy
- Current injuries, conditions, and physical concerns
- Treatment notes and session records
- Health questionnaires and consent forms
- Athletic training information and goals
Technical Information
- IP address and browser information
- Usage data and platform interactions
- Booking and appointment history
3. Legal Basis for Processing
We process your data under the following legal bases:
- Contract: To provide therapeutic massage services and manage bookings
- Consent: For health data processing and marketing communications
- Legitimate Interests: For platform improvement and fraud prevention
- Legal Obligation: For record-keeping and regulatory compliance
4. How We Use Your Information
- Providing and managing therapeutic massage services
- Processing bookings and payments
- Maintaining health records for continuity of care
- Communicating about appointments and treatments
- Improving our services and platform
- Meeting professional and legal obligations
- Sending marketing communications (with consent)
5. Data Sharing and Disclosure
We may share your information with:
- Healthcare Professionals: Other practitioners involved in your care (with consent)
- Service Providers: Payment processors, email services, and platform infrastructure
- Legal Requirements: When required by law or to protect safety
- Business Transfers: In case of merger, acquisition, or sale of business
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
6. Data Security
We implement appropriate technical and organisational measures to protect your data:
- Encryption of data in transit and at rest
- Access controls and authentication systems
- Regular security assessments and updates
- Staff training on data protection
- Secure backup and recovery procedures
7. Data Retention
We retain your data for the following periods:
- Health Records: 8 years after last treatment (professional requirement)
- Account Information: 3 years after account closure
- Financial Records: 7 years for tax and accounting purposes
- Marketing Data: Until consent is withdrawn
8. Your Rights
Under UK GDPR, you have the right to:
- Access: Request copies of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your data (subject to legal requirements)
- Restriction: Limit how we process your data
- Portability: Receive your data in a structured format
- Object: Opt out of certain types of processing
- Withdraw Consent: Remove consent for health data processing
To exercise these rights, contact us at info@tdperformancetherapy.co.uk
9. Cookies and Tracking
We use essential cookies to provide our service and analytics cookies to improve user experience. You can manage cookie preferences through your browser settings.
10. International Transfers
Your data is primarily processed within the UK. If we transfer data outside the UK, we ensure adequate protection through adequacy decisions or appropriate safeguards.
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of material changes via email or platform notification.
12. Contact Information
Data Controller: TD Performance Therapy
Email: info@tdperformancetherapy.co.uk
Phone: +44 07415 989931
Primary Address: Unit 5, Catkin Way, St Helen Auckland, Bishop Auckland, DL14 9TF
Second Address: Unit 32, Mandale Park, North Shields, NE29 7FN
ICO Registration: You can also contact the Information Commissioner's Office (ICO) if you have concerns about our data processing: ico.org.uk