Privacy, Cookies and Data Protection Policy
Milson Hypnotherapy Services believes that maintaining the trust and confidence of our clients’ is of the utmost priority. We understand that privacy is an important concern for our clients and also the visitors to our website, due to the personal nature of our business. Whether you are a client of Milson Hypnotherapy Services or just visiting our site, we would like to take the opportunity to explain what we do to ensure that we protect your privacy and the steps we take to safeguard your information.
Visiting MilsonHypnotherapyServices.com Overview
By purchasing any products or registering for any services on our website(s) or by providing any information to us, you consent to the collection, use and transfer of your information under the terms of this policy.
You can find a lot of information about cookies and their use and how to disable or reject cookies, by searching Google for "browser cookies".
In the event you access a third party website; via a link on one or more of our pages, then associated cookies might also be created when you access that site. Milson Hypnotherapy Services will not have access to those cookies or any information that those cookies may contain. Although we hope third parties adhere to suitable privacy policies and terms and conditions of use, we are not responsible for the actions or policies of third parties. Accordingly, you should make contact with the third party site for more information on their policies regarding cookies.
We will retain your information for a suitable period or as long as the law requires. We employ strict physical, electronic and administrative security measures to protect your information from access by unauthorized persons and against unlawful processing, accidental loss, destruction, and damage both online and offline.
Given that the Internet is a global place, using the Internet to gather and process personal information involves the transmission of data on an international basis, however, where possible we do employ encrypted communication methods. Therefore by browsing this web site and communicating electronically with us, you acknowledge and agree to us processing personal information in this way.
Whereas we employ reasonable measures to protect against viruses and other harmful components, the nature of the Internet is such that it is virtually impossible to ensure that your access to the website will be uninterrupted or error-free, or that this website, its servers or emails which may be sent by us are free of viruses or other harmful components.
Whether you are a Milson Hypnotherapy Services client or a visitor browsing our website(s), and you submit/request information from our websites, such as registration/login forms and contact forms, please be aware that we use Secure Sockets Layer (“SSL”) encryption technology to protect the information you submit and where possible we offer encrypted methods of email communication.
This technology helps protect you from having your information intercepted and read by anyone other than Milson Hypnotherapy Services while it is being transmitted to us. We strive to ensure that our websites are and remain secure and that they meet the highest industry standards. Also, in addition to SSL encryption technology, we use a variety of other safeguards such as firewalls, authentication systems (e.g. passwords, tokens etc) and access control mechanisms to control unauthorized access to our systems and data.
The Use of Hyperlinks
The Milson Hypnotherapy Services website(s) may contain hyperlinks or “links” to third-party sites, and other sites may also “link” to our site(s). Any websites linking to and from our sites may have privacy practices different from Milson Hypnotherapy Services. Our Privacy Statement applies solely to information collected by our websites. Milson Hypnotherapy Services is not responsible for the privacy policies or the content of other sites. We have no control over the use or protection of information provided by you or collected by those sites.
Personal information (Non-Public)
In the event visitors to our website choose to provide Milson Hypnotherapy Services with non-public personal information about themselves (e.g., name, address, phone number, email address) for the purpose of receiving additional information about our products and services, or if you are a Milson Hypnotherapy Services client and we obtain from you or from other sources non-public personal information about you in the course of providing you with our products and services, we will take the following steps to safeguard such non-public personal information (“Personal Information”).
Milson Hypnotherapy Services may collect the following types of Personal Information in order to provide you with products and services:
Information we receive from you via our website forms and every time you email us or provide us with your details in other ways (i.e. over the telephone, by fax, by mail etc.). This information would include, but not be limited to, such details as: your name, address, telephone numbers, fax number, e-mail address, your date of birth, company name and contact details, details of the ways in which you are happy to receive information from us and/or selected third parties etc.
Information about your transactions with us. This information could include your purchase history and your use of the various products and services that we provide, other personal information regarding you and the reasons you wish to engage in our services, which may include, but not be limited to, basic medical information, contact info for your doctor(s) or other therapists etc.
Information about you obtained in connection with our efforts to protect against fraud or unauthorized use of your account(s) with us. Information automatically collected about your visit to our website. Information relating to your selection of a user ID for the use of some of our services or activities.
You will find that it is not compulsory to provide us with any additional information we request which is not necessary or reasonable in order to provide you with the services you have requested.
Use of Information Collected – We hold your personal information in order to for you to create an account with us to purchase products from us and to provide our services to you. In addition, this information will enable us to review your needs on a regular basis thereby assisting us in providing you with the level of customer service you expect. It may also be used to provide you with new information about our various products and services that we believe may be relevant to your needs.
Information we may disclose – The personal information you provide to us via our website will be held on a server in the United States and may be accessed by or given to our staff, successors, and assigns.
Who we may share your information with:
Milson Hypnotherapy Services will NOT disclose the types of Personal Information listed above to the following types of third parties:
Companies that perform marketing services on our behalf or to others with which we have joint marketing agreements to sell Milson Hypnotherapy Services products or services.
We may exchange Personal Information with anyone you give us written permission to do so, for example, your doctor(s), therapist(s), counselors etc.
We may also disclose Personal Information to other non-affiliated third parties as permitted or required by law, such as in response to a subpoena or legal process or in order to complete a transaction which you initiated and authorized.
Finally, if our business enters into a joint venture with or is sold to or merged with another business entity, your information may be disclosed to our new business partners or owners.
Unless required to do so by law, we will not otherwise share, sell or distribute any of the information you provide to us without your consent.
Accessing, Updating, Contacting Us and Your Right to Opt-Out of Information Sharing
You are entitled to see the personal information we hold about you and you may ask us to make any necessary changes to ensure that it is accurate and kept up to date.
Furthermore, if you prefer that we not disclose your Personal Information to unaffiliated third parties, you can choose to opt out of those disclosures. That is, you may direct us not to make those disclosures (other than disclosures permitted or required by law).
Online services – If you register for any of our online products or services, we will retain your user ID and password and other information about your use of our website in order that we may recognize you as a registered user. We may also obtain your email address.
We may send you email offers for our products and services. All email offers we send to you include an opportunity to opt out of future email offers.
If you opt out of receiving email offers, we reserve the right to still send (via email or otherwise) important information about your account with us (if applicable) and our products and services.
Website Privacy Statement Updates
As and when necessary we reserve the right to make changes to our Privacy Statement. We recommend that regular visitors to our website(s) review this Web Site Privacy Statement periodically to learn of any updates and changes that have been made to this Statement. Should you become a Milson HypnotherapyServices client by purchasing products and/or services from us, we will notify you of any changes we make to this Statement in the following manner.
If you hold an online account with us or have provided us with your email address, we will email you and inform you of the update to our Privacy Statement, else we will use whatever method(s) of communication you have provided us to inform you of the update.
This is a statement of the data protection policy adopted by Milson Hypnotherapy Services. The responsibility for the updating and distribution of this policy rests with the owner of Milson Hypnotherapy Services. Our policy is subject to periodic review to ensure that changes to the relevant legislation or internal policies of Cumberland Hypnotherapy are reflected in this policy.
In the normal course of operations, Milson Hypnotherapy Services needs to collect and retain certain types of personal data (both public and non-public) from a variety of sources including clients, prospective clients, personnel, suppliers, business contacts, internet users and others who Milson Hypnotherapy Services conducts business with. For the purpose of this policy, these will be referred to as (“Data Subjects”). In addition, to ensure Milson Hypnotherapy Services complies with its regulatory obligations it may be required by law to collect and use certain types of data.
Personal Data means data which relates to a living individual who can be identified from that data or from that data combined with other information which is in the possession of or is likely to come into the possession of, the data controller. The data controller for the purpose of this note is Milson Hypnotherapy Services.
All personal data must be dealt with correctly, however it is ascertained, recorded and used. This applies equally whether the data is held electronically, on paper or by other means.
In addition to any legal consideration, Milson Hypnotherapy Services believes the lawful and correct treatment of all personal data (non-public) is an essential step in building and maintaining confidence to everyone concerned including staff, clients and business associates alike. With this in mind, we need to ensure that our company treats personal data in a lawful and correct manner.
Some examples of practical steps taken by Milson Hypnotherapy Services to help ensure compliance with data protection standards are set out as follows: Personal data shall be processed fairly and lawfully. This principle is an overarching one which impacts upon each of the other principles below.
In particular, processing will not be fair and lawful if the data subject has been deceived or misled as to the purpose or purposes for which their personal data will be processed. Cumberland Hypnotherapy will, therefore, ensure that certain information, known as “Fair Processing Information”, has been provided to the data subjects before processing takes place (i.e. on their data collection forms).
This information must include the following: the identity of Milson Hypnotherapy Services as the data controller; the purpose(s) for which the data will be collected by and processed by Milson Hypnotherapy Services; and any other information that is necessary to enable the particular processing to be fair.
For example, the recipient or categories of the recipient of the data including all those third parties that Milson Hypnotherapy Services discloses data to or who process data on Milson Hypnotherapy Services behalf.
Whether replies to questions asked by Milson Hypnotherapy Services are obligatory for justifiable operational reasons; the existence of the right of access to, and the right to rectify, the data; the use of the personal data for direct marketing purposes; the security measures implemented by Milson Hypnotherapy Services regarding the processing.
Milson Hypnotherapy Services policy on record retention (how long records are kept and any steps taken to ensure that records are accurate and kept up to date); Milson Hypnotherapy Services contact details; explaining how consent, once given, can later be withdrawn etc.
The data subject has given specific and informed consent to the processing;
The processing is necessary for the performance of a contract to which the data subject is a party, or for the taking of steps at the request of the data subject with a view to entering into a contract; The processing is necessary for compliance with any legal obligation to which the Milson Hypnotherapy Services is subject, other than an obligation imposed by contract;
The processing is necessary in order to protect the vital interests of the data subject; or The processing is necessary (a) for the administration of justice, (b) for the exercise of any functions conferred on any person by or under any enactment, or (c) for the exercise of any other functions of a public nature exercised in the public interest by any person.
In the case of ‘sensitive’ personal data (i.e. personal data concerning a data subject’s racial or ethnic origin, political opinions, religious beliefs, trade union membership, physical or mental health or condition (which will include employee’s health records), sexual life or the commission or alleged commission of any offence or proceedings for any actual or alleged offence, the disposal of such proceedings or the sentence of any court in such proceedings) this may only be collected stored, used, disclosed or otherwise processed if, in addition to the requirements set out above, one of the following conditions is met:
The data subject concerned has given Milson Hypnotherapy Services specific written consent to process the personal data;
Milson Hypnotherapy Services needs to process the personal data to carry out its obligations under national employment law;
Milson Hypnotherapy Services needs to process the personal data to protect the individual (or another person) where that individual is physically or legally incapable of giving his consent (e.g. where an individual has been involved in a road accident or develops a health condition); or
The processing relates to personal data which has been made public by the individual concerned or is necessary for legal claims.
Personal data shall be obtained only for one or more specified and lawful purposes and shall not be further processed in any manner incompatible with that purpose or those purposes Milson Hypnotherapy Services has set up internal procedures to identify the collection points of data (e.g. websites, application forms, emails, application forms etc.), the nature of the data collected and the purposes for which such data is processed. Milson Hypnotherapy Services will give data subjects the Fair Processing Information when data is collected or obtained. Cumberland Hypnotherapy will ensure that personal data is not used for reasons not set out in the Fair Processing Information without ensuring that one of the Fair Processing Conditions is met.
Personal data shall be adequate, relevant and not excessive in relation to the purpose or purposes for which it is processed. In order to process data in a way which is compatible with the purposes for which it is processed Milson Hypnotherapy Services will, for example:
periodically review data collection procedures to ensure that they are adequate, relevant and not excessive in relation to the purpose for which data is going to be processed; review requests for personal data, to ensure that all data which is supplied is necessary or whether it can be destroyed; periodically review personal data held in manual filing systems and computerized filing systems to ensure that Cumberland Hypnotherapy is holding no more than the minimum of data required for the purpose for which the data was collected; and ensure that if employees are allowed to enter free text onto records, training is given to them to ensure its relevance.
Personal data shall be accurate and, where necessary, kept up to date Milson Hypnotherapy Services will check that personal data is accurate, complete and current by, for example: keeping a record of the dates on which personal data is created and/or obtained both manually and electronically; assessing the accuracy of the personal data at the time of collection when it comes from sources other than the data subject concerned and, in any case, reviewing the accuracy of personal data before it is entered into any filing systems; ensuring that where personal data is duplicated and held separately (e.g. at a different locations or in a different department) any updates or amendments are communicated to all holders of the personal data and that the personal data is updated/amended accordingly; and checking personal data periodically to ensure that it is accurate and up to date and to evaluate the degree of damage to the data subject (and Milson Hypnotherapy Services) which could be caused through inaccurate or out of date personal data being held.
Personal data processed for any purpose or purposes shall not be kept for longer than necessary for that purpose or those purposes. Cumberland Hypnotherapy will comply with this principle by, for example: reviewing personal data periodically to determine whether retention is justifiably necessary for legitimate business purposes or whether the personal data can be archived or destroyed; and ascertaining whether such personal data could be retained in an anonymous format (e.g. if kept only for historical or statistical purposes). Determining the integrity of the personal data used and ensuring that records are not maintained for longer than is necessary.
Milson Hypnotherapy Services will inform data subjects of the obligatory or optional nature of the personal data requested (e.g. optional fields could be marked as optional and indicates that such personal data may be used for future marketing activities; and how Data Subjects can contact Milson Hypnotherapy Services with any enquiries or complaints about the processing of personal data and the choices and the means offered by Milson Hypnotherapy Services for limiting the use and disclosure of personal data .
Milson Hypnotherapy Services has also established suitable procedures to enable an individual to find out whether personal data (of which that individual is the data subject) is being processed by or on behalf of Milson Hypnotherapy Services and if so what such personal data comprises. Such a request by an individual must be in writing and Milson Hypnotherapy Services may be entitled to charge a small fee for responding to such requests.
Where Milson Hypnotherapy Services obtains personal data about an individual from a third party (e.g. from a marketing company) Milson Hypnotherapy Services will inform the data subject as soon as practical that it is holding the personal data and set out the purposes for which such personal data will be held. This will not, however, be necessary where the third party has already informed the data subject that their personal data will be passed to Milson Hypnotherapy Services and identified these purposes.
Milson Hypnotherapy Services will obtain specific written consent from data subjects to use their personal data for non-obvious purposes such as for direct marketing at the time data subjects are first asked to provide personal data (or as soon after as is practical) i.e. through a data protection notice on data collection forms (e.g. on website registration forms, application forms etc.).
Milson Hypnotherapy Services will inform data subjects if it intends to use their personal data for a purpose which is different from those for which the personal data was originally collected or where it intends to disclose personal data to a third party who has not previously been authorized by the individual concerned.
Milson Hypnotherapy Services will ensure the rights granted to the people about whom personal data is held are upheld, including such issues as their right to be informed that processing is being undertaken, their rights to access such personal data, and their rights to correct or have deleted personal data that is determined as wrong personal data.
Appropriate technical and organizational measures shall be taken against unauthorized or unlawful processing of personal data and against accidental loss or destruction of, or damage to, personal data
In order to protect personal data stored by Milson Hypnotherapy Services from being lost, misused, accessed without authorization, disclosed, altered or destroyed, Milson Hypnotherapy Services will, for example:
Ensure that all necessary technical and structural security measures are undertaken to safeguard personal data; promote awareness of data security among employees and where possible, conduct training in security responsibilities and issues; only authorise individuals to access personal data where they have a business need to do so, where they are reliable and where they have the appropriate knowledge to make decisions concerning how it should be handled (i.e. carry out background checks and conduct training to ensure that individuals understand their responsibilities, particularly surrounding confidential information and special categories of data).
Milson Hypnotherapy Services will also segregate employee duties to ensure that responsibility for sensitive tasks is appropriately controlled; monitor access to personal data to prevent violations, intentional or accidental damage or disclosure; identify potential security risks and exposures within the company and implement appropriate security measures to counter those risks (e.g. Milson Hypnotherapy Services will (i) only give employees access to personal data where they are authorised and have a legitimate business need to do so; (ii) store any paper copies of personal information in secure cabinets; (iii) ensure that where personal data is taken off-site (e.g. on laptop computers or hard copy files), only necessary personal data is taken and that training is given on security rules which employees must follow (e.g. ensuring the personal data is not left in an unlocked car or unattended in a place where it could be viewed by others etc.); that: (i) computer servers are set up to optimise security; (ii) all systems passwords/authorisation levels etc. are periodically reviewed to ensure that they are assigned to appropriate staff; (iii) where possible, audit trail capabilities of automated systems are used to track who accesses and amends personal data; and (iv) account is taken of the risks of transmitting confidential information by fax, by e-mail or via the internet; implement procedures to stop all employees whose employment has been terminated or transferred and any third parties (e.g. contractors) who are no longer used, from accessing systems used to process personal data; and ensure that where the processing of personal data is carried out by a data processor on Milson Hypnotherapy Services behalf it chooses a data processor providing sufficient guarantees in respect of the technical and organisational security measures governing that processing and takes reasonable steps to ensure compliance with those measures. Such processing must be carried out under a written contract with appropriate obligations, for example, ensuring that the data processor is to act only on the instructions of Milson Hypnotherapy Services.
For further clarification contact Milson Hypnotherapy Services via email at:
Please note that due to potential sensitivity of personal data we cannot process enquires in the first instance by telephone.