Privacy Policy
Introduction
This privacy policy explains how we collect, use, and protect personal data in accordance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and all other applicable data protection laws. By using our website or providing personal data to us, you agree to the terms of this policy.
We are committed to maintaining the highest standards of confidentiality and data privacy. This policy applies to patients, employees, contractors, service providers, and any other individuals whose data we may process.
Who We Are
This website is operated by King Dental. Our principal place of business is 46-48 Market St, Carnforth . We are the data controller responsible for how your personal data is handled.
If you have any questions about this policy or your personal data, please contact us at reception@kingdentalclinic.co.uk
What Personal Data We Collect
We may collect and process the following types of personal data:
Identity data (name, date of birth, gender)
Contact details (address, email, phone number)
Medical and dental records
Appointment history and treatment notes
Payment information
Communication records
Website usage and technical data (via cookies)
We also collect special category data, including health records and NHS identifiers, where applicable.
4. How We Collect Personal Data
We collect data through:
Patient registration forms
Online enquiries or contact forms
Direct interaction at appointments
Email or telephone communications
Website cookies and analytics tools
5. Lawful Basis for Processing
We process your personal data on the following lawful bases:
Your explicit consent
Performance of a contract with you (e.g., dental care)
Compliance with legal obligations (e.g., NHS regulations)
Our legitimate business interests (e.g., internal administration)
6. How We Use Your Personal Data
We use your data to:
Provide and manage dental care
Contact you regarding appointments and treatment
Handle billing and payments
Respond to queries and complaints
Comply with legal and regulatory obligations
Send marketing communications (with your consent)
7. Sharing Your Data
We may share your data with:
Other healthcare providers (e.g., dental labs, specialists)
NHS organisations and commissioners
Our IT and software service providers
Regulatory authorities (e.g., GDC, CQC)
Law enforcement, if required
We ensure all third-party data processors meet GDPR requirements and data protection standards.
8. Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes we collected it for, including satisfying any legal, accounting, or reporting requirements. For clinical records, this is typically 11 years or until the patient reaches 25 years old (whichever is longer), unless otherwise required.
9. Data Security
We have implemented robust technical and organisational measures to protect your personal data from accidental loss, misuse, alteration, unauthorised access, or disclosure. These include:
Secure digital record systems
Restricted access controls
Regular staff training
Secure backups and encryption
10. Your Data Protection Rights
Under the UK GDPR, you have the following rights:
Right to access your personal data
Right to rectification of inaccurate data
Right to erasure (in certain circumstances)
Right to restrict processing
Right to data portability
Right to object to processing
Right not to be subject to automated decision-making
Right to withdraw consent at any time
To exercise any of these rights, please contact our Data Protection Officer.
11. Cookies
Our website uses cookies to improve your experience and gather analytical data. Cookies help us understand how users interact with our website.
You can control your cookie preferences via your browser settings. Please note that disabling cookies may affect site functionality.
12. International Transfers
We do not typically transfer personal data outside the UK. If we do, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the UK Information Commissioner’s Office.
13. Children’s Privacy
We only collect and process children’s data with the consent of a parent or legal guardian and solely for the purposes of dental care.
14. Direct Marketing
We may contact you for marketing purposes (e.g., reminders, new services, promotions) with your consent. You can opt out of marketing communications at any time by clicking the “unsubscribe” link or contacting us directly.
15. Automated Decision Making and Profiling
We do not use automated decision-making systems or profiling in the context of your personal data.
16. Data Breaches
In the event of a personal data breach, we will notify the ICO and affected individuals where required by law. All breaches are logged and investigated internally.
17. Changes to This Policy
We may update this privacy policy from time to time. The latest version will always be available on our website and we encourage you to review it regularly.
Last updated: [Insert Date]
18. Complaints
If you have concerns about how we handle your personal data, please contact our Data Protection Officer. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO):
Website: www.ico.org.uk
Phone: 0303 123 1113