Data Protection & GDPR Policy
Trusted GP Clinic
1. Introduction
At Trusted GP Clinic, we are committed to protecting your personal data and respecting your privacy. We process all personal information in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
This policy explains how we collect, use, store and protect your personal information when you use our website or medical services.
2. Who We Are
Trusted GP Clinic is a private medical provider offering GP-led healthcare services, including Weight Management and Men’s Health programmes.
For the purposes of data protection law, Trusted GP Clinic is the “Data Controller” of your personal data.
If you have any questions regarding this policy, please contact us
3. What Information We Collect
We may collect and process the following types of personal data:
Personal Information
Full name
Date of birth
Contact details (email, phone number, address)
Medical Information (Special Category Data)
Medical history
Consultation notes
Test results
Prescription information
Lifestyle and health-related information
Technical Information
IP address
Browser type
Website usage data (via cookies)
4. Legal Basis for Processing
We process your personal data under the following lawful bases:
Medical Care – To provide healthcare services and treatment.
Consent – Where you have given explicit consent (e.g., marketing communications).
Legal Obligation – To comply with healthcare regulations and record-keeping requirements.
Legitimate Interest – To improve our services and website functionality.
Medical data is processed under Article 9(2)(h) of UK GDPR for the provision of health care.
5. How We Use Your Data
We use your data to:
Provide medical consultations and treatment
Arrange diagnostic testing
Prescribe medication where appropriate
Manage appointments
Communicate with you regarding your care
Maintain accurate medical records
Improve our services and website performance
We do not sell your personal data.
6. Data Sharing
Your information may be shared with:
Partner laboratories for diagnostic testing
Pharmacies for prescription fulfilment
Secure medical software providers
Regulatory bodies if legally required
All third parties are required to handle your data securely and in accordance with UK GDPR.
7. Data Storage & Security
We implement appropriate technical and organisational measures to protect your data, including:
Secure encrypted systems
Restricted access to medical records
Password-protected platforms
Secure hosting environments
Medical records are retained in accordance with UK healthcare record retention guidelines.
8. Your Rights Under UK GDPR
You have the right to:
Access your personal data
Request correction of inaccurate information
Request erasure (where legally permitted)
Restrict processing
Object to processing
Data portability
Withdraw consent (where applicable)
To exercise your rights, please contact us using the details above.
You also have the right to lodge a complaint with the UK supervisory authority:
Information Commissioner’s Office (ICO)
Website: https://ico.org.uk
9. Cookies
Our website may use cookies to improve user experience and analyse website traffic. You may manage cookie preferences through your browser settings.
For more information, please see our Cookie Policy.
10. Changes to This Policy
We may update this policy from time to time to reflect legal or operational changes. The latest version will always be published on our website.
