Privacy Policy
​
Elsworth Chiropractic
Effective Date: 14/02/2026
1. Who We Are
Elsworth Chiropractic (“we”, “us”, or “our”) is committed to protecting and respecting your privacy. We operate as a healthcare provider offering chiropractic services in the United Kingdom.
For the purposes of data protection law, we are the Data Controller of your personal data.
If you have any questions about this policy, you can contact us at:
Email: Info@Elsworthchiropractic.co.uk
Address: 39 Middle Brook Street, Winchester, SO23 8DQ
​
2. What Information We Collect
We may collect and process the following personal data:
a) Personal Information
-
Name
-
Address
-
Date of birth
-
Phone number
-
Email address
b) Health Information (Special Category Data)
-
Medical history
-
Presenting complaints
-
Treatment records
-
GP details
-
Relevant diagnostic information
c) Website Usage Data
-
IP address
-
Browser type
-
Pages visited
-
Cookies and analytics data
3. How We Use Your Information
We use your information to:
-
Provide chiropractic assessment and treatment
-
Maintain accurate clinical records
-
Communicate regarding appointments
-
Process payments
-
Comply with legal and regulatory obligations
-
Improve our website and services
Health information is processed under the lawful basis of providing healthcare and medical diagnosis, and where necessary, explicit consent.
​
4. How We Store Your Data
-
Clinical records are stored securely using encrypted practice management software (e.g., Cliniko or similar).
-
Paper records (if applicable) are stored securely in locked cabinets.
-
We retain adult health records for a minimum of 8 years after your last appointment (in line with UK healthcare guidance).
-
Children’s records are retained until age 25 (or 26 if treated at age 17).
-
​
5. Sharing Your Information
We will not sell your data.
We may share your information where necessary with:
-
Your GP or other healthcare professionals (with your consent)
-
Regulatory bodies (e.g., General Chiropractic Council)
-
Legal authorities if required by law
-
Secure service providers (e.g., booking systems, payment processors)
All third-party providers are required to handle your data securely and in accordance with UK GDPR.
​
6. Your Rights
Under UK data protection law, you have the right to:
-
Access your personal data
-
Request correction of inaccurate information
-
Request erasure (where legally permitted)
-
Restrict processing
-
Object to processing
-
Request data portability
-
Withdraw consent (where applicable)
You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO):
https://www.ico.org.uk
​
7. Cookies
Our website may use cookies to improve user experience and analyse traffic. You can control or disable cookies through your browser settings.
If using Google Analytics, ensure you also add a cookie banner to your website.
​
8. Data Security
We take appropriate technical and organisational measures to protect your personal data from loss, misuse, or unauthorised access.
​
9. Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be available on our website.
