top of page

Privacy Policy

A legal disclaimer

Last Updated: April 2026

At Physios @ Home we are committed to protecting and respecting your privacy. This policy explains how we collect, use, and store your personal information when you visit our website or use our services. 

 

1. Who We Are:

Physios @ Home is the "Data Controller" of your personal information. 

  • Clinic Address: Mobile

  • Lead Physiotherapist: Helen van Sittert

 

2. Information We Collect:

We collect personal data to provide treatment and manage appointments. This may include: 

  • Personal details: Name, date of birth, address, email, telephone number, and GP contact details.

  • Special category (Sensitive) data: Health information, medical history, clinical notes, treatment records, and assessment outcomes.

  • Website usage data: IP address (anonymised), browser type, and information on how you use our site. 

 

3. How We Collect Your Data:

  • Directly from you: In person, over the telephone, by email, or via booking forms on our website.

  • From third parties: Referral letters from your GP, consultant, or insurance company (e.g., AXA, Bupa). 

 

4. Lawful Basis for Processing:

We process your data under the following lawful bases: 

  • Contractual: To provide you with physiotherapy treatment.

  • Legal Obligation: To meet professional standards (HCPC/CSP) and statutory retention periods.

  • Consent: For marketing communications (if you have opted in). 

 

5. How We Use Your Information:

  • To create a safe and effective treatment plan.

  • To manage bookings, appointments, and payments.

  • To write medical letters and reports to your GP or consultant (with your permission).

  • To contact you regarding your treatment or changes to our services. 

 

6. Sharing Your Data:

We will not sell or rent your information. We may share data only in the following ways: 

  • Third-party IT services: Secure cloud storage, electronic patient record systems (e.g., WriteUpp), and website hosting.

  • Health partners: GP, consultant, or insurance company, with your consent.

  • Legal obligations: As required by law enforcement or regulatory authorities. 

 

7. How Long We Keep Your Information:

In accordance with professional body guidelines (CSP/HCPC), we keep patient records for 8 years after the last appointment, or until the age of 25 for children, whichever is longer. 

 

8. Data Security:

We are committed to keeping your information secure. We use secure password-protected software for clinical notes and locked cabinets for physical records. 

 

9. Your Rights:

Under UK GDPR, you have the right to: 

  • Access the data we hold on you.

  • Rectify any inaccurate or incomplete information.

  • Erase (be forgotten) your data, subject to our legal retention requirements.

  • Object or restrict our processing of your data.

  • Withdraw consent for marketing or non-essential communication. 

 

10. Complaints:

If you are unhappy with how we process your data, you can lodge a complaint with the Information Commissioner’s Office (ICO)

bottom of page