Signed in as:
filler@godaddy.com
Signed in as:
filler@godaddy.com
1. Introduction
Biba Aesthetics Ltd recognises the importance of protecting personal data and ensuring the privacy and rights of individuals. This policy outlines our commitment to handling personal data in compliance with the General Data Protection Regulation (GDPR) and the UK Data Protection Act.
This policy applies to all personal data processed by Biba Aesthetics Ltd, whether in electronic form, paper, or other means.
We collect personal data only with explicit consent and for legitimate business purposes. When collecting data, individuals are informed of its intended use, the legal basis for processing, and their rights concerning the data.
Access to personal data is restricted to authorised personnel who have a legitimate business need. We do not share or sell personal data to third parties unless required by law or with explicit consent from the individual.
Personal data is retained only for as long as necessary to fulfil the purposes for which it was collected, including for the purposes of meeting legal, accounting, or reporting requirements.
We implement appropriate technical and organisational measures to safeguard personal data against unauthorised access, alteration, disclosure, or destruction.
In the event of a data breach that risks individuals' rights and freedoms, we will notify the affected individuals and the relevant regulatory body within 72 hours of becoming aware of the breach.
This policy may be updated periodically to reflect changes in our data processing practices or for other operational, legal, or regulatory reasons.
For more information about our data protection practices or if you have any concerns or questions, please contact us through our contact page.