Person typing on a laptop in a neutral-toned outfit with “Our Policies” text overlayed, representing company policy or business documentation page

Privacy Policies

Privacy Policy

Last Updated: June 2026

Introduction

At Dr Caroline Warden Skin & Aesthetic Clinic, we are committed to protecting your privacy and handling your personal information responsibly.

This Privacy Policy explains how we collect, use, store and protect your personal information when you visit our website, submit an enquiry, book a consultation or receive treatment from our clinic.

We comply with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018 and all applicable data protection legislation.

By using this website, you agree to the terms outlined in this Privacy Policy.

Who We Are

Dr Caroline Warden Skin & Aesthetic Clinic

Hale, Cheshire, United Kingdom

Email: drcarolinewarden@gmail.com

Website: www.drcarolinewarden.co.uk

For the purposes of UK GDPR, Dr Caroline Warden Skin & Aesthetic Clinic is the Data Controller responsible for processing your personal information.

Dr Caroline Warden Skin & Aesthetic Clinic is registered with the Information Commissioner's Office (ICO) and complies with UK data protection legislation.

Information We Collect

Information You Provide

We may collect personal information including:

• Name

• Date of birth

• Address

• Email address

• Telephone number

• Consultation requests

• Appointment booking information

• Medical history

• Treatment records

• Before and after photographs

• Payment information

• Marketing preferences

Information Collected Automatically

When you visit our website, we may automatically collect information including:

• IP address

• Browser type

• Device information

• Pages visited

• Time spent on pages

• Referral source

• General geographic location

• Cookie data

This information helps us understand how visitors use our website and allows us to improve our services.

How We Use Your Information

We may use your information to:

• Respond to enquiries

• Arrange consultations and appointments

• Deliver treatments and services

• Maintain medical records

• Communicate with you regarding appointments

• Improve our website and services

• Process payments

• Meet legal, professional and regulatory obligations

• Send marketing communications where consent has been provided

We will never sell your personal information to third parties.

Lawful Basis For Processing

We process personal information under one or more of the following lawful bases:

Consent

For marketing communications and the use of photographs where explicit consent is required.

Contract

To provide consultations, treatments and related services.

Legitimate Interests

To improve our services, manage our business and protect our clinic.

Legal Obligation

To comply with professional, medico-legal, regulatory and insurance requirements.

Medical Information

Medical information is considered special category data under UK GDPR.

We only collect and process medical information where necessary to provide safe and appropriate treatment and healthcare services.

Medical records are stored securely and handled in accordance with professional and legal requirements.

Photography And Marketing

Before and after photographs may be taken as part of your clinical record.

Photographs, videos and testimonials will only be used for marketing, educational or promotional purposes where explicit written consent has been obtained.

You may withdraw consent at any time. Withdrawal of consent will not affect any use already undertaken before consent was withdrawn.

Data Sharing

We may share personal information with:

• Glowday

• Healthcare professionals involved in your care

• Your GP, where appropriate and with your consent unless required for patient safety

• Professional indemnity providers

• Insurance providers

• Regulatory bodies

• Legal advisers

• IT and website service providers

• Payment processing providers

• Law enforcement agencies where required by law

We only share information where necessary and appropriate safeguards are in place.

Website Analytics

We use Google Analytics and similar technologies to help us understand how visitors interact with our website.

Google Analytics may collect anonymised information including:

• Pages visited

• Time spent on pages

• Device type

• General location information

This helps us improve our website, services and user experience.

For further information, please visit:

https://policies.google.com/privacy

Glowday

We use Glowday to manage appointments, patient records, consent forms, treatment documentation, secure communications and payment processing.

When you book an appointment or receive treatment through our clinic, some of your personal information, medical information and appointment data may be processed through Glowday's secure platform.

Glowday and GlowdayPRO are operated by Glowery Ltd, which complies with UK data protection legislation and industry security standards.

For more information about how Glowday collects, stores and protects personal information, please visit:

https://www.glowday.com/privacy-policy

We only use trusted third party providers who have appropriate security measures and data protection safeguards in place.

Marketing Communications

We may occasionally send information about treatments, services, promotions, clinic updates and blog content where you have consented to receive marketing communications or where otherwise permitted by law.

You may unsubscribe from marketing communications at any time.

Data Retention

We retain personal information only for as long as necessary.

Medical records are retained in accordance with professional, medico-legal, insurance and regulatory requirements.

Historic patient records may be retained for up to 10 years or longer where required by professional guidance, insurance obligations or legal requirements.

Website enquiries and marketing information are retained only for as long as necessary for the purposes for which they were collected.

Your Rights

Under UK GDPR, you have the right to:

• Access your personal information

• Correct inaccurate information

• Request deletion of information where applicable

• Restrict processing

• Object to processing

• Request transfer of your information

• Withdraw consent where consent is the lawful basis for processing

• Rights relating to automated decision making and profiling

To exercise any of these rights, please contact us.

Data Security

We take appropriate technical and organisational measures to protect your personal information from unauthorised access, loss, misuse or disclosure.

However, whilst we take reasonable precautions, no method of electronic transmission or storage can be guaranteed to be completely secure.

External Links

Our website may contain links to external websites.

We are not responsible for the privacy practices, content or policies of third party websites.

We encourage you to review their privacy policies separately.

Complaints

If you have any concerns regarding how your personal information is handled, please contact us in the first instance.

You also have the right to lodge a complaint with the Information Commissioner's Office (ICO).

Information Commissioner's Office

https://ico.org.uk

Changes To This Privacy Policy

We may update this Privacy Policy from time to time.

Any changes will be published on this page and become effective immediately upon publication.

Contact Us

Dr Caroline Warden Skin & Aesthetic Clinic

Hale, Cheshire

Email: drcarolinewarden@gmail.com

Website: www.drcarolinewarden.co.uk