User Privacy policy

User Privacy Policy for the Service

Last updated: [April 2026]

In this Privacy Policy, “we”, “us”, and “our” refer to The Centre for Health (operated by DRSH LTD).

Your privacy is important to us. We are committed to keeping your information secure and processing personal data in accordance with UK data protection law, including the UK GDPR. We are registered with the Information Commissioner’s Office (ICO) under registration number ZB349577.

This Privacy Notice explains how we collect, use, store, and share your personal information when you use our services.

This Privacy Notice explains how The Centre for Health (operated by DRSH LTD) collects, uses, stores, and shares personal information. We are the controller of your personal data.

We are committed to protecting your privacy and handling your information securely and lawfully.

**Telephone:** 0207 967 1577
**Email:** enquiries@thecentreforhealth.co.uk

We collect and use the following categories of information to provide healthcare services:

3.1 General Personal Information
– Name, address, and contact details
– Gender
– Pronoun preferences
– Date of birth
– Insurance information
– Payment details

3.2 Health and Care Information (Special Category)
– Medical conditions and history
– Allergies and medication
– Care needs and support requirements
– Test results and clinical information relevant to your care
– Dietary requirements and home environment where relevant

3.3 Crime Prevention and Security
– Witness statements
– Relevant information from previous investigations

3.4 Safeguarding Information
– Information needed to protect individuals at risk
– Records of decisions and assessments

3.5 Patient App / Portal Information
– Account registration details
– Security and access information

3.6 Marketing and Communications
– Email address for optional marketing communications (only with explicit consent)

We use personal information for:
– Providing healthcare and treatment
– Managing appointments and continuity of care
– Meeting legal and regulatory obligations
– Safeguarding individuals
– Responding to queries, complaints, or claims
– Maintaining records and ensuring clinical quality
– Recruitment and workforce administration
– Optional marketing (only with explicit consent)

Under the UK GDPR, our main lawful bases are:

5.1 Article 6 Bases
– **Legal obligation:** when we must process data under healthcare, safeguarding, or regulatory law.
– **Contract:** providing services you request.
– **Vital interests:** where someone is at immediate risk of serious harm.
– **Consent:** for optional activities such as targeted advertising.

5.2 Article 9 Bases (Special Category Data)
For health-related data, we rely on:
– **Provision of health or social care (Article 9(2)(h))**
– **Legal obligations and safeguarding requirements**
– **Vital interests**
– **Explicit consent (Article 9(2)(a))** — used only for optional marketing involving custom advertising audiences

We do **not** rely on legitimate interests for processing health or care information.

We will only use your email address for marketing **if you give explicit, separate consent**.

6.1 Email Marketing
If you choose to opt in, we may send you updates about services, clinics, and related healthcare information.
You can withdraw consent at any time.

6.2 Meta (Facebook/Instagram) Custom Audiences
If you give explicit consent, we may use **your email address only** to create a custom audience on Meta platforms. This allows us to show advertising to users who match or resemble existing patients.

– No health information is uploaded.
– No demographic information is uploaded.
– Only your email address is shared with Meta in hashed format.
– Meta uses the email only to match your profile for advertising purposes.

You may withdraw consent at any time, and you will be removed from custom audience lists.

6.3 Withdrawing Consent
You can withdraw consent by contacting us at **enquiries@thecentreforhealth.co.uk**. Withdrawal does not affect the lawfulness of processing already carried out.

– Directly from you
– Other health and care providers
– Social services and safeguarding agencies
– Insurers
– Regulatory bodies
– Previous employers (for recruitment)
– Publicly available sources

We keep your healthcare records for **10 years** from your last contact with us. After this period, records are securely deleted.

Other types of data may be kept for shorter periods in line with legal or regulatory requirements.

We may share personal information with:
– Pharmacy providers (for dispensing medication and related clinical services)
– GPs, consultants, pharmacy providers, and other care providers
– Insurance companies
– Safeguarding bodies and local authorities
– Emergency services
– Regulators, auditors, and inspectors
– Legal bodies (where required by law)
– Meta Platforms (email only, and only with explicit consent for advertising)

We will not sell your information.

Duty of Confidentiality
Health information is confidential. We only share it when:
– You give consent
– There is a legal requirement
– Vital interests apply
– Safeguarding/public protection concerns justify disclosure

## Cookies

Our website uses cookies to ensure it functions properly, is secure, and provides a good user experience.

### What are cookies?

Cookies are small text files placed on your device when you visit a website. They help websites recognise your device and remember certain information about your visit.

### How we use cookies

We use cookies for the following purposes:

• **Essential cookies** – required for the operation, security, and functionality of the website (for example, enabling forms and protecting against fraud or misuse)

• **Performance and functionality cookies** – may be used to improve how the website works and to ensure features operate correctly

We do **not** use cookies to collect health information or sensitive medical data.

### Advertising and tracking

We do **not** use cookies for targeted advertising or cross-site tracking.

If this changes in the future, we will update this policy and request your consent where required.

### Managing cookies

You can control or delete cookies at any time through your browser settings. Please note that disabling certain cookies may affect how the website functions.

### Third-party services

Some services we use (such as website hosting, contact forms, or security tools) may set cookies as part of their normal operation.

These providers are required to process data securely and in accordance with data protection laws.

### More information

If you have any questions about our use of cookies, please contact us at:

**[enquiries@thecentreforhealth.co.uk](mailto:enquiries@thecentreforhealth.co.uk)**

You have the right to:
– Access your personal information
– Request correction or deletion
– Restrict processing
– Object to processing (where applicable)
– Request data portability (where applicable)
– Withdraw consent (for consent-based processing)

To exercise your rights, contact us using the details above.

If you have concerns about our use of your data:

**1. Contact us first:**
Email: enquiries@thecentreforhealth.co.uk

**2. If unresolved, you may contact the ICO:**
Information Commissioner’s Office
Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
Helpline: 0303 123 1113
Website: https://www.ico.org.uk/make-a-complaint

The Centre for Health – Privacy Policy/December 2025