Privacy Notice
​
GDPR
​
The EU and the British Government, through the Information Commissioners Office, have introduced new legislation regarding Data Protection known as the General Data Protection Regulation (GDPR).
​
The purpose of this Privacy Notice
​
This notice is designed to help you understand what kind of information I, Aleksandra Milusheva, the Service Provider, collect in connection with the services / treatments that I offer and how I will process or use that information. In the course of providing you with services / treatments, I will collect and process information that is commonly known as Personal data.
​
This notice describes how I collect, use, retain and safeguard Personal Data.
​
This notice sets out your Individual Rights, as described in more detail later in this notice. In summary, these rights include your right to know what data is held about you, how this data is processed and how you can place restrictions on the use of your data.
​
About Healing Kokoro
​
I, Aleksandra Milusheva, or the Service Provider, at Healing Kokoro (also referred to as “I”, “me” or “my”) may collect and hold data relating to my clients in the form of: Name, Contact Details (e.g., Telephone Number, Email address), Age, Occupation and possibly also Date Of Birth, Address and a high-level Medical History only (limited to a high-level description of the physical issues that you may wish to receive treatments for in the session.)
This information is held for a period of seven years from the date of the last treatment provided. This is a legal requirement and all reasonable steps are taken to ensure that this information is maintained in the strictest of confidence.
Your Personal Data is not shared with any Third Party, Partner, Spouse, Child, Sibling, Parent or Organisation without your express permission unless such request is in a legal form from a solicitor, hospital, insurance company, court of law or the police.
​
What is Personal Data?
​
Personal data is information relating to an identified or identifiable natural person. Examples include an individual’s Name, Age, Address, Date Of Birth, Gender and Contact Details.
​
Personal data may contain information (which I do not record, maintain or use) which is known as special categories of personal data. This may be information relating, but not limited, to the following: an individual’s health, racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic and biometric data, or data relating to sexual orientation.
​
Personal data may also contain data relating to criminal convictions and offences (which I do not record, maintain or use).
​
For the purposes of processing financial transactions by credit/debit card or direct bank transfer or online banking, I do not retain details of your bank account outside that as displayed on the bank statement of the account into which you transfer funds.
​
Personal Data Collected at Healing Kokoro
​
In order for me to provide the services / treatments offered on this website to you, I, in my capacity as the Service Provider, will collect and process Personal Data about you.
​
In the event that another person discloses personal or other information about you to me, it is their responsibility to ensure that they are entitled to and have your permission to disclose such personal information about you to me.
​
In the event that you disclose personal information about other persons, you have a responsibility to ensure that you are entitled to and have permission to disclose such personal information relating to that third party.
​
You may provide me with your Personal Data by completing the Booking Form and/or the Contact Form on the website, by joining the mailing list, by discussing your specific condition, requirements and details over the Telephone, Mobile Phone or by communicating such information by text, multimedia messaging, email, social media, messaging, letter, face to face communication, by completing the set of forms required before the session / treatment can take place (specifically for online hypnosis sessions which require the client's understanding and consent regarding the necessary conditions for an online session to be conducted, such as a stable Internet connection, etc.) or by other means depending on each client's specific preferences, needs or circumstances (e.g., filling in a form granting consent for segments of the session information to be shared with certain groups of people or with the general public, etc.)
​
I do not share your personal data with your spouse, partner, children or any third parties, or other organisations without your express permission.
​
Where I collect personal data directly from you, I am considered to be the controller of that data, i.e., I am the ‘Data Controller’.
​
A ‘Data Controller’ means the individual or organisation which, alone or jointly with others, determines the purposes and means of the processing of personal data.
​
A ‘Data Processor’ means the individual or organisation which processes personal data on behalf of the ‘Data Controller’.
If you object to me collecting or maintaining your Personal Data, I may be unable to provide you with the services / treatments that you require.
​
For the purposes of meeting the Data Protection Act 2018 territorial scope requirements, the United Kingdom is identified as the named territory where the processing of personal data takes place.
​
Data Storage
​
Healing Kokoro is hosted on the Wix.com platform. Wix.com provides me with the online platform that allows me to offer sell services to you. Your data may be stored through Wix.com’s data storage, databases and the general Wix.com applications. They store your data on secure servers behind a firewall.
​
Use of Cookies
​
Wix uses cookies for important reasons, such as:
​
-
To provide a great experience for your visitors and customers.
-
To identify your registered members (users who registered to your site).
-
To monitor and analyze the performance, operation and effectiveness of Wix's platform.
-
To ensure our platform is secure and safe to use.
​​
Why Do I Need your Personal Data?
​
I require your Personal Data to identify you as an ‘identified or identifiable natural person’. The retention of Personal Data is necessary for the following reasons:
​
-
To provide and operate the Services;
-
To provide clients or visitors with ongoing customer assistance and technical support;
-
To be able to contact our clients or visitors with general or personalised service-related notices and promotional messages;
-
To create aggregated statistical data and other aggregated and/or inferred Non-personal Information, which Healing Kokoro or our business partners may use to provide and improve our respective services;
-
To comply with any applicable laws and regulations.
The destruction of your Personal Data at the end of the retention period is via shredding in terms of paper record, deletion and shredding of computer-based data.
Your Rights
​
Individuals are provided with legal rights governing the use of their Personal Data. These grant individuals the right to understand what Personal Data relating to them is held, for what purpose, how it is collected and used, with whom it is shared if applicable, where it is located, to object to its processing, to have the data corrected if inaccurate, to take copies of the data and to place restrictions on its processing. Individuals can also request the deletion of their personal data.
​
These rights are known as Individual Rights under the Data Protection Act 2018. The following list details these rights:
-
The right to be informed about the personal data being processed
-
The right of access to your personal data;
-
The right to object to the processing of your personal data;
-
The right to restrict the processing of your personal data;
-
The right to rectification of your personal data;
-
The right to erasure of your personal data;
-
The right to data portability (to receive an electronic copy of your personal data);
-
Rights relating to automated decision making including profiling.
​
Full details of your rights can be found on the ICO's website: https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/individual-rights/
Individuals can exercise their Individual Rights at any time. As mandated by law, I will not charge a fee to process these requests, however if your request is considered to be repetitive, wholly unfounded and/or excessive, I am entitled to charge a reasonable administration fee.
​
In exercising your Individual Rights, you should understand that in some situations I may be unable to fully meet your request, for example if you make a request for me to delete all your Personal Data, I may be required to retain some data for regulatory and other statutory purposes.
​
You should understand that when exercising your rights, a substantial public or vital interest may take precedence over any request you make. In addition, where these interests apply, I am required by law to grant access to this data for law enforcement, legal and/or health related matters.
Service Provider Rights
Please note:
​
-
If you don’t agree to the Service Provider (i.e., Aleksandra Milusheva) keeping records of information about you and your treatments, or if you don’t allow the Service Provider to use the information in the way you may require for the services / treatments to be carried out, I may not be able to provide you with the services / treatments.
​​
-
I may have to keep your records of treatment for a certain period as described above, which may mean that even if you ask me to erase any details about you, I might have to keep these details until after that period has expired.
​​
-
I may move your records between my computers and IT systems, as long as your details are protected from being seen by others without your permission.
Protecting Your Data
​
I will take all appropriate technical and organisational steps to protect the confidentiality, integrity, availability and authenticity of your personal data.
​
Complaints
​
If you are dissatisfied with any aspect of the way in which I process your personal data, please contact me. You also have the right to complain to the UK’s data protection supervisory authority, the Information Commissioner’s Office (ICO). The ICO may be contacted via its website here or by calling their helpline on 0303 123 1113.
​
How to Contact Me
​
If you have any questions regarding this Notice, the use of your data and your Individual Rights please, contact me at kokoroquantumhealing@gmail.com or Mobile: 07825592733.
​
Privacy Notice Updates
I, the Service Provide, reserve the right to modify this privacy notice at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If I make material changes to this policy, I will notify you here that it has been updated, so that you are aware of what information I collect, how I use it, and under what circumstances, if any, I use and/or disclose it.
​
DECLARATION BY SERVICE RECIPIENT
I, [Client name], the Service Recipient, have seen this document and understand that the Service Provider (i.e., Aleksandra Milusheva) at Healing Kokoro will hold and use my personal information, using it in order to provide me with the best possible services / treatment options and advice in line with the statements above.
I have received a copy of this document.
​Name:
​
Date:
​​
Signature: ……………………………………………..
Note: for children under 16, a parental or guardian signature is required.
Please note:
A copy of this document will be sent to you, the Service Recipient, should you contact me via email, and a hard copy will be provided at our first appointment date / treatment in order to confirm that you have understood and accepted this privacy statement and your rights under the GDPR.