Privacy Policy

Last updated: 30 April 2026

Fylde Clinic (“we”, “our”, “us”) is committed to protecting and respecting your privacy. This policy explains how we collect, use, and safeguard your personal data when you use our website and services.

1. Who We Are

Fylde Clinic is a GPhC-registered pharmacy (Registration No. 9012835) based in Lancashire, England. We are the data controller for personal data processed through this website. You can contact us at hello@fyldeclinic.co.uk.

2. What Data We Collect

We may collect the following categories of personal data:

  • Identity data: name, date of birth, gender
  • Contact data: email address, phone number, delivery address
  • Health data: information you provide during consultations, prescriptions, medical history
  • Transaction data: order history, payment details (we do not store full card numbers)
  • Technical data: IP address, browser type, device information, cookies

3. How We Use Your Data

We use your data to:

  • Process and fulfil your orders and prescriptions
  • Conduct clinical consultations and assessments
  • Communicate with you about your orders, consultations, and account
  • Comply with our legal and regulatory obligations as a GPhC-registered pharmacy
  • Improve our website and services

4. Legal Basis for Processing

We process your data under the following legal bases:

  • Contract: to fulfil your orders and consultations
  • Legal obligation: pharmacy regulatory requirements
  • Vital interests: where necessary for clinical safety
  • Legitimate interests: to improve our services and prevent fraud
  • Consent: for marketing communications (where you have opted in)

5. Health Data

Health data is special category data under UK GDPR. We process it only where necessary to provide clinical services, under the explicit consent you give during your consultation, or where required by law. Health data is accessible only to authorised clinical staff.

6. Data Retention

Prescription and clinical records are retained for a minimum of 8 years in accordance with NHS and GPhC guidelines. Account data is retained for as long as you hold an account with us, plus a reasonable period thereafter for legal compliance. You may request deletion of non-clinical data at any time.

7. Sharing Your Data

We do not sell your personal data. We may share it with:

  • Delivery providers (name and address only)
  • Payment processors (e.g. Stripe, PayPal) — governed by their own privacy policies
  • Regulatory authorities where required by law
  • Clinical staff involved in your care

8. Your Rights

Under UK GDPR, you have the right to: access your data, correct inaccuracies, request deletion (subject to clinical retention requirements), restrict processing, data portability, and object to processing. To exercise any of these rights, contact us at hello@fyldeclinic.co.uk.

9. Cookies

We use essential cookies to operate our website (e.g. session, authentication). We may also use analytics cookies to understand how visitors use our site. You can control cookies through your browser settings.

10. Contact & Complaints

If you have any questions or concerns about this policy, please contact us at hello@fyldeclinic.co.uk. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.