My GDPR agreement sets out how any personal data I collect from you, or that you provide to me, will be stored and processed confidentially.
How I gather your personal information
- Information that you provide by emailing me via my website and via various platforms or by phone to request further information about my therapy service.
- Email at southamptontherapyservices@gmail.com
- Brief session notes.
- Regarding online therapy, I use the platform Zoom. This platform is securely encrypted. Zoom has the facility to record sessions, which I will not use unless it has been explicitly agreed by both parties ahead of time. Chat transcripts and therapeutic email exchanges will be destroyed according to GDPR data retention policies.
Where I store your personal data
- Personal data that I collect from you via any form of contact by email or phone will be kept securely.
- Brief session notes are anonymised, using your initials only, and are two factor password protected.
- I take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this privacy policy.
Uses made of the information
- I use your contact details to allow me to provide you with information about the service you request from me, to allow you to tell me about changes in your availability, and to notify you about changes to my availability and other relevant administrative updates.
- I use the brief session notes.
- As part of my commitment to providing a professional service, I attend supervision regularly. This is bound by a confidentiality contract, and to protect your identity, I only use the initial of your first name.
How long I keep your information/notes for
- Text communication is deleted immediately, while emails are purged once a month. After therapy has finished, your phone number will be deleted from my smartphone.
- I will retain your therapy agreement, registration, and any other official documents for a further five years after therapy has finished. This is in case you decide to return to therapy with me and to meet the requirements of my indemnity insurance. After five years, these documents will be destroyed.
Your rights
- You are entitled to view, amend, or delete the personal information that I hold. All requests will be carried out within one month.
In the event of a data breach
- I have a legal obligation to report a data breach to you and the Information Commissioner’s Office (ICO) within 72 hours.
Disclosure of your personal information
- In the event of my incapacity or death, your personal contact information will be disclosed to the clinical executor of my Professional Will so that they can notify you. In the event of my death, my executors will also destroy all contact information and notes on my computer.
- If I am under a duty to disclose or share your personal data to comply with any legal obligation, for example, if I am subpoenaed to court, or as a legal requirement such as safeguarding children or vulnerable adults, terrorism, or money laundering.
Cookies
This website uses only essential cookies required for basic functionality. No tracking or analytics cookies are used.
Changes to the GDPR agreement
- I will notify you of any changes I may make to this privacy policy in the future.
Consent to the GDPR agreement
- Your use and undertaking of the services of southampton therapy services constitutes your approval and acceptance of this agreement, and you are consenting to my use and storage of your personal information, as detailed above. You have the right to withdraw your consent at any time.
