Privacy Policy
Last updated: July 2025
At KPL Performance we are committed to protecting your personal information and respecting your privacy. This policy explains what data we collect, how we use it, and your rights under UK GDPR.
WHO WE ARE
KPL Performance
Gretton Grange Farm, Gretton, Gloucestershire
Website: www.kplperformance.co.uk
WHAT INFORMATION WE COLLECT
When you book an appointment or complete an online form, we may collect:
-
Your name
-
Email address
-
Phone number
-
Health or medical history (if relevant to treatment or class safety)
-
Emergency contact details
-
Payment status (via Wix Payments – no card details are stored by us)
HOW WE COLLECT YOUR INFORMATION
We collect data through:
-
Wix Booking Systems
-
Email enquiries
-
In-person during your session (with consent)
All forms are securely processed via Wix Bookings.
WHY WE COLLECT YOUR DATA
We collect and store your data in order to:
-
Deliver safe and effective therapy or Pilates instruction
-
Communicate with you about bookings or changes
-
Send reminders or follow-up emails (you can opt out)
-
Maintain client records in line with insurance and professional obligations
-
Comply with legal and insurance requirements
We do not use your data for marketing unless you have explicitly opted in.
LAWFUL BASIS FOR PROCESSING
Under the UK GDPR, the lawful bases we rely on are:
-
Consent – you have given clear permission for us to process your personal data
-
Contract – processing is necessary for us to deliver the services you have requested
-
Legal obligation – we are required to keep certain records for insurance or tax purposes
-
Vital interests – in case of emergency or safeguarding concerns
HOW YOUR DATA IS STORED
Your data is securely stored in:
-
Wix Bookings (HIPAA-compliant & GDPR-aligned system)
-
Our email system (for communications)
-
Paper notes (if applicable), kept securely and only accessible by the practitioner
We retain your records for 7 years after your last session, in line with professional and legal guidelines. After this time, they will be securely deleted or destroyed.
SHARING YOUR DATA
We will never sell or share your information with third parties for marketing.
Your information may only be shared:
-
With your consent (e.g., referral to another healthcare provider)
-
If required by law (e.g., safeguarding, court orders)
YOUR RIGHTS UNDER UK GDPR
You have the right to:
-
Access the personal data we hold about you
-
Correct inaccurate information
-
Request that we delete your data (unless we are legally required to keep it)
-
Withdraw your consent at any time
-
Lodge a complaint with the Information Commissioner’s Office (ICO)
For any requests, email: [Your Email Address]
COOKIES AND WEBSITE USE
Our website may use basic cookies for functionality or analytics. You can adjust your cookie preferences via your browser settings.
CHANGES TO THIS POLICY
We may update this policy from time to time. The latest version will always be available on our website.