Version Date: September 2025
We’re committed to protecting the privacy of all individuals who provide personal and medical information to us, including patients who use our clinical services and individuals who contact us through our website. This Privacy Policy explains how we collect, protect, use, and share personal information.
We may review and update this policy from time to time. When we do, the latest version will be published on our website, and changes will take effect immediately.
Definitions
- ‘Social Media Resilience Ltd’ is us — the registered company behind Resync Physiotherapy & Wellbeing.
- ‘Resync’, ‘we’, ‘our’, and ‘us’ refer to Social Media Resilience Ltd trading as Resync Physiotherapy & Wellbeing.
- ‘Patient’ means any individual who receives physiotherapy, Pilates, or other health services through Resync.
- ‘Personal Information’ means any information that can identify an individual, including medical data.
- ‘Services’ means the provision of physiotherapy, acupuncture, Pilates, rehabilitation, and related health services delivered by Resync.
Information We Collect
We may collect, store, and use the following information:
Information you provide directly:
- Personal details such as your name, date of birth, address, phone number, and email.
- Medical history, presenting symptoms, and relevant health information provided during appointments.
- Emergency contact details.
- Payment and billing information.
Information collected automatically through our website
- Technical data such as anonymised IP address, browser type, operating system, and platform.
- Details about your visit, including pages viewed, links clicked, time on site, and documents downloaded.
- Cookie data (see section below).
How We Use Your Information
We use your information to:
- Provide, safe, effective healthcare tailored to you.
- Maintain accurate and legally required clinical records.
- Contact you regarding appointments, treatment plans and follow-ups.
- Process payments and manage accounts.
- Respond to enquiries submitted via our website and other communication channels.
- Comply with legal, regulatory and professional obligations.
- Improve our services and website experience.
Cookies
Our website uses cookies to distinguish you from other visitors. This helps us improve your browsing experience and optimise our website. For full details, please see our Cookie Policy.
Storage of Data
We use
Cliniko, a secure practice management system, to store your medical records and appointment details. Cliniko is fully GDPR-compliant and adheres to strict international standards of data security and encryption. You can read more about their security here:
https://www.cliniko.com/security/.Your medical records are accessible only to authorised clinical staff.
Retention of Records
In line with UK healthcare regulations and professional standards:
- We keep medical records for 8 years after your last treatment.
- For patients under 18, records are kept until your 25th birthday (or 26 if you were 17 at the last treatment).
- After this period, records are permanently and securely deleted.
Disclosure of Information
We may share your data in the following circumstances:
- Within our team: Only with staff directly involved in your care and clinic administration.
- Healthcare providers: With your consent, we may share relevant information with your GP, consultant, or other health professionals.
- Legal obligations: Where required by law, regulation, or court order.
- Third-party services: With trusted providers for hosting, secure record storage, and email systems. All providers are GDPR-compliant.
We do not sell or rent your information to third parties.
Security
We use physical, electronic, and administrative safeguards to protect your data against loss, alteration, or unauthorised access. While transmission over the internet can never be 100% secure, once we receive your information we apply strict procedures and security measures to protect it.
Your Rights
Under UK GDPR, you have the right to:
- Access the personal and medical data we hold about you.
- Request corrections to inaccurate data.
- Request erasure of data (where appropriate).
- Restrict or object to certain types of processing.
- Make a complaint to the Information Commissioner’s Office (ICO) if you are unhappy with how your data has been handled.
To exercise your rights, please contact us in writing. We may ask for proof of identity before processing requests.
Third-Party Links
Our website may occasionally contain links to third-party websites. These sites have their own privacy policies, and we are not responsible for them. Please check their policies before providing personal information.
Contact
Questions, comments, or requests regarding this policy should be sent to:
abi@resyncphysiotherapy.co.uk