GDPR and Privacy Policy

(all clients will receive a copy of this)

I am registered with the National Counselling and Psychotherapy Society (NCPS) which means I am required to tell you what data I am collecting from you as a client and what I intend to do with it under the new General Data Protection Regulations (GDPR) which came into affect from May 25th 2018. Further below is the Third Party/Internet Privacy Policy which outlines any third-party services that I use and their individual terms which you as a user of these services are obliged to understand.

I reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on this website.

What data do I keep and why do I need it?

1) Registration Form (paper) which includes the following:

  1. a) Name and age: this is basic information that helps me get to know you.
  2. b) Address, email address, phone number: I use this as a way of contacting you regarding your sessions and ask for your preferred contact method.
  3. c) Where you saw my advertisement: Marketing information for my own business records
  4. d) Medical information: Only relevant medical information needed for counselling (i.e. mobility, any diagnoses, medication) if needed to know in any emergency whilst in session.
  5. e) Doctors details: If I was worried that you were at risk then I may need to contact your doctor. This will always be discussed beforehand for your consent, unless in an emergency.

2) Clinical Notes (paper): brief notes (assigned to a coded ID) are taken to assist with my supervision sessions and for insurance purposes. These notes may contain sensitive personal data.

3) Unique ID code (Paper): to anonymise your notes (which is kept separate to your notes and contact information)

4) Privacy policy/consent form (paper): This document signed by you the client to give me permission to collect and store the information within this document for insurance purposes and under the rules of the ICO and GDPR.

5) Your email and phone number may be stored on my password protected mobile phone in order for me to contact you regarding sessions for the duration of our work together.

6) Any relevant information from our email or text message exchanges are recorded onto your notes.

Will I share your data and if I do who will I share it with and for what purpose?

It is highly unlikely I will share your data. I will not sell it on or use it for unethical reasons. However, I may have to share it if:

  • My notes are subpoenaed by court
  • If I feel that you or someone else is in immediate danger, I am required by law to inform the necessary authority without seeking your permission in an emergency. In such a situation, the law may require that I share your personal information without your knowledge. However, at any other time I would seek your initial consent first.
  • I have also appointed a Clinical Executor. In the unfortunate event I can no longer work with you (due to death or serious illness) they will have access to your details and will get in touch with you.

How do I store your data?

All data I keep on paper is stored in separate locked filing cabinets so that your notes remain unidentifiable. Your notes are kept separate from your registration form and Unique ID code.

Your phone number/email that may be kept in my business mobile phone and my email applications, which is passcode protected.

Data Retention and disposal

Your paper data: session notes, registration form and unique ID code are kept (separately) for 7 years. This is the legal requirement passed down to me by my insurance company. After this time, they will be shredded.

I will delete your phone number/email from of my mobile phone/computer 1 month after our work finishes.

All text messages/email communication exchanges will be deleted as soon as they are no longer needed and at least within 1 month of us finishing working together.  

Your Rights

Under GDPR you are entitled to the:

Right to be informed

Which is the purpose of this privacy statement.

Right to Access and update records

You have the right to ask for a copy of your personal information, free of charge for the initial request and to receive this within 30 days from request. You also have the right to ask me to amend or change any incorrect information about you.

Right to be forgotten and restrict processing

You have the right to ask me to delete any information that I hold about you, including personal information that is no longer necessary – for example when our therapeutic relationship has ended or if you wish to withdraw consent. Please note that it is not an absolute right to be forgotten if I am legally obliged to keep any records requested by my insurance company.

Data Portability

You have the right to receive your personal information as previously provided, and to transfer this information to another party.

Right to object

You have a right to withdraw consent from me.

Please contact Kelly Kearley, the data controller/processor for Mind Over Matter Counselling via email if you would like to exercise your rights listed above.

If you are not happy with the way I use your data you can complain to the ICO at or call 0303 123 1113.

Consent

If you do not consent to me using your data in this way, it is unlikely that I will be able to work with you for legal reasons.

Mind Over Matter Counselling Third Party Apps & Internet Privacy Policy v1.0

As we are using the internet more for communications these days, GDPR (data protection) requires me to tell you what happens to your information in more detail when using an internet service from a third party. Below are the services in which I currently use and that you may come in contact with.

General Enquiries (non-clients)

Enquires that are made to me via any of these services that do not result in you becoming a client (or someone that you have enquired on behalf of), will not be stored like client data above (see Mind Over Matter Privacy Policy). Any communications will be deleted within 30 days and removed from trash.

Deleting Browser History and Cookies

You may be in a situation where you do not want anyone who has access to your computer to know that you are looking for a counselling service and so this may be particularly important for your safety to know how to erase your internet search history and cookies from any websites that you have visited whilst looking for a counsellor. Information can be found here on how to do this. Please note that I am not liable for any potential issues this may cause to any of your devices from this third-party website.

Email

If you as a client contact me via email, any necessary correspondence information may be recorded onto your session notes. You will either email info@mindovermattertherapy.com or Kelly@mindovermattertherapy.com

Website

This website is hosted on the 20i platform and managed by Therapy Web Designs. 20i provides the secure online infrastructure that powers this site, including data storage, databases, and applications. Your data is protected on 20i’s secure servers, which use firewalls, SSL/TLS encryption, and HTTPS to ensure the highest standards of security. You can read 20i’s full privacy policy here.

By submitting information via the contact form on this website, your details will be securely transmitted to my email account at info@mindovermattertherapy.com. Cookies are used on this website to gather non-identifiable information about visitors. This data is collected for traffic analysis and improvement purposes through tools like Google Analytics and Bing Webmaster Tools. A cookie notification will appear when you visit the website and will disappear once accepted.

Google analytics

As mentioned previously, my website uses cookies which records non identifiable information on visitors to my website to track traffic for the Google Analytics statcounter. Privacy information and how to opt out of google analytics tracking can be found here. The main Google Privacy policy can be found here.

Stat counter privacy policy

Statcounter is an online service which helps us to understand our visitors; for example, how visitors find our website, how long they spend on our site, which web pages they are most interested in etc. We use Statcounter because better understanding how visitors are interacting with our website helps us to improve the content, design and functionality of our site. This allows us to offer a better online experience to our visitors.

Statcounter uses cookies and other technologies to collect data on visitors and visitor activity on our website. This data includes:

  • Time and date of visit (this can help us to identify and plan for busy periods on our website)
  • IP address (this is a numerical label assigned to a device by an Internet Service Provider to enable the device to access the internet)
  • Browser and Operating System (this can help us to make sure that our website functions correctly in the browsers/operating systems used to access our site)
  • Device Information e.g. device type and screen size (this can help us to make sure that our website functions correctly in the devices used to access our site)
  • Referring Data e.g. a search engine link (this can help us to understand which search engines are helping visitors to find our website)

Furthermore, when you visit our website a Statcounter cookie (called “is_unique”) may be placed in your browser. This cookie is used only to determine whether you are a first-time or returning visitor and to estimate unique visits to the site.

 

You can learn more about cookies from Statcounter and set your browser to refuse same here:  http://statcounter.com/about/set-refusal-cookie/

For further details, please see the Statcounter privacy policy the:
https://statcounter.com/about/legal/#privacy

Social media

I do not knowingly communicate with clients through social media. I have profiles on Facebook, Twitter, Instagram and LinkedIn and use it for advertising purposes. Links to their privacy policies are available on the individual websites contained within their terms of use and privacy policies which you adhere to when signing up and using that service.

I only use third party providers who acknowledge that they are fully GDPR compliant or are in the process of being fully compliant at the time of writing this privacy policy.

Mind Over Matter Therapy

Get in touch to find out how I can help and support you.

Please phone, email or use the contact form

If you are struggling with your mental health and are in urgent need:

  1. If you or someone else is in danger, call 999 or go to A&E now.
  2. If you need urgent help for your mental health, get help from NHS call 111 opt 2.
  3. Please contact Samaritans, to talk to one of our listening volunteers on 116 123