At Glow & Grace Beauty Studio ("we," "us," or "our"), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website your-domain.com and use our services.
Please read this privacy policy carefully. By accessing or using our website and services, you acknowledge that you have read, understood, and agree to be bound by the terms of this Privacy Policy.
1. Information We Collect
1.1 Personal Information
We may collect personal information that you voluntarily provide to us when you:
- Book an appointment or consultation
- Register for an account on our website
- Subscribe to our newsletter or marketing communications
- Contact us through our contact form or email
- Participate in surveys, promotions, or contests
- Leave reviews or testimonials
The personal information we collect may include:
- Name and contact information (email address, phone number, mailing address)
- Appointment details and service preferences
- Payment and billing information
- Beauty preferences and skin type information
- Medical or allergy information relevant to our services
- Account credentials (username and password)
- Communication preferences
1.2 Automatically Collected Information
When you visit our website, we automatically collect certain information about your device and browsing activity, including:
- IP address and geolocation data
- Browser type and version
- Operating system
- Pages viewed and time spent on pages
- Referring website addresses
- Date and time of visits
- Clickstream data
2. How We Use Your Information
We use the information we collect for the following purposes:
- Service Delivery: To provide, maintain, and improve our beauty services, process appointments, and communicate with you about your bookings
- Payment Processing: To process transactions and send you related information including confirmations and invoices
- Customer Service: To respond to your inquiries, requests, and provide customer support
- Personalization: To customize your experience and provide tailored service recommendations
- Marketing Communications: To send you promotional materials, special offers, and newsletters (with your consent)
- Business Operations: To operate and improve our website and business, including analytics and performance monitoring
- Legal Compliance: To comply with legal obligations and protect our rights and interests
- Safety and Security: To detect, prevent, and address technical issues, fraud, and security concerns
3. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to collect and track information about your browsing activities. Cookies are small data files stored on your device.
3.1 Types of Cookies We Use
- Essential Cookies: Necessary for the website to function properly and enable core features
- Analytics Cookies: Help us understand how visitors interact with our website by collecting anonymous statistical data
- Functional Cookies: Remember your preferences and settings for an enhanced user experience
- Marketing Cookies: Track your browsing activity to deliver relevant advertisements and measure campaign effectiveness
3.2 Managing Cookies
You can control cookie preferences through your browser settings. Please note that disabling certain cookies may limit your ability to use some features of our website. Most browsers allow you to:
- View and delete cookies
- Block third-party cookies
- Block cookies from specific sites
- Block all cookies
- Delete all cookies when closing the browser
4. Third-Party Services and Disclosure
We may share your information with trusted third-party service providers who assist us in operating our business:
4.1 Service Providers
- Payment Processors: To securely process payment transactions
- Appointment Scheduling: To manage bookings and send automated reminders
- Email Services: To send newsletters and marketing communications
- Analytics Providers: To analyze website traffic and user behavior (e.g., Google Analytics)
- Cloud Storage: To securely store data and backups
- Customer Support: To provide chat and support services
4.2 Legal Requirements
We may disclose your information when required by law or in response to:
- Legal processes or government requests
- Protection of our rights, property, or safety
- Investigation of fraud or security issues
- Enforcement of our terms and conditions
4.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
5. Data Security
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- SSL/TLS encryption for data transmission
- Secure servers with firewall protection
- Regular security assessments and updates
- Access controls and authentication procedures
- Employee training on data protection
- Secure payment processing through PCI-DSS compliant providers
While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
6. Your Privacy Rights (GDPR Compliance)
Under the General Data Protection Regulation (GDPR) and other applicable privacy laws, you have the following rights:
- Right to Access: Request a copy of the personal information we hold about you
- Right to Rectification: Request correction of inaccurate or incomplete information
- Right to Erasure: Request deletion of your personal information (subject to legal obligations)
- Right to Restrict Processing: Request limitation on how we use your information
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing of your information for specific purposes
- Right to Withdraw Consent: Withdraw previously given consent at any time
- Right to Lodge a Complaint: File a complaint with a supervisory authority
To exercise any of these rights, please contact us using the information provided in the Contact section below.
7. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
Our typical retention periods are:
- Appointment Records: 3-7 years for legal and accounting purposes
- Marketing Data: Until you unsubscribe or request deletion
- Account Information: Until account deletion or 2 years of inactivity
- Website Analytics: 26-38 months (anonymized data)
- Transaction Records: 7 years for tax and legal compliance
When we no longer need your information, we will securely delete or anonymize it.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy and applicable laws.
9. Children's Privacy
Our services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will delete such information.
10. Marketing Communications
With your consent, we may send you marketing emails about our services, special offers, and beauty tips. You can opt out at any time by:
- Clicking the "unsubscribe" link in any marketing email
- Updating your communication preferences in your account settings
- Contacting us directly
Please note that even if you opt out of marketing communications, we will still send you transactional messages related to your appointments and services.
11. Third-Party Links
Our website may contain links to third-party websites, social media platforms, or services that are not operated by us. We are not responsible for the privacy practices of these external sites. We encourage you to review the privacy policies of any third-party sites you visit.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or for other operational reasons. We will notify you of any material changes by:
- Posting the updated policy on this page with a new "Last Updated" date
- Sending an email notification to registered users
- Displaying a prominent notice on our website
Your continued use of our website and services after any changes indicates your acceptance of the updated Privacy Policy.
13. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
For GDPR-related inquiries or to exercise your privacy rights, please include "GDPR Request" in the subject line of your email.
14. Consent
By using our website and services, you consent to the collection, use, and processing of your information as described in this Privacy Policy. If you do not agree with this Privacy Policy, please discontinue use of our website and services.