Privacy Policy

Privacy Policy – Lumeria Eye Clinic

Introduction

Lumeria Eye Clinic ("we," "our," or "us") is committed to protecting and respecting your privacy. This policy explains how we collect, use, store, and share your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and relevant healthcare laws.

What Information We Collect

We collect and process the following personal data:

Personal Information: Name, date of birth, gender, contact details (address, phone number, email).

Medical Information: Medical history, test results, treatment details, and prescriptions.

Payment Information: Billing details for services rendered.

Communication Data: Information from calls, SMS, email, and post interactions.

Technical Data: IP address, device details, and online interactions with our patient portal.

How We Use Your Information

We use your data for:

Providing Medical Care – To diagnose, treat, and manage your healthcare needs.

Appointments & Communication – Scheduling, reminders, and correspondence via calls, SMS, email, and post.

Billing & Payments – Processing payments for services.

Legal & Regulatory Compliance – Meeting requirements set by healthcare regulators.

Audit & Quality Improvement – Ensuring high standards of care and service.

Marketing (With Consent) – Sending relevant updates if you opt in.

Legal Basis for Processing

We process personal data based on:

Medical Necessity – Providing healthcare services.

Contractual Obligation – Managing your appointments and payments.

Legal Obligation – Complying with healthcare laws and regulatory requirements.

Legitimate Interests – Auditing and improving our services.

Consent – If you agree, we may contact you for marketing or audit purposes.

Data Sharing

We do not share your data with third parties for marketing purposes. However, we may share necessary information with:

Medico Management Limited Services – Our trusted medical secretary service.

Healthcare Professionals – Other clinicians involved in your care.

Regulatory Bodies – Such as the GMC and CQC for compliance.

Payment Processors & IT Support – For secure transactions and system maintenance.

How We Store & Protect Your Data

Retention Period: We keep treated patient records for 8 years, following NHS guidelines.

Security Measures: We use secure systems, encrypted emails (via Carebit), and a protected patient portal.

Confidentiality: Only authorized staff have access to your data.

Your Rights

Under UK GDPR, you have the right to:

Access your medical records.

Correct inaccuracies in your data.

Request deletion (where legally permissible).

Restrict processing in certain circumstances.

Withdraw consent for non-essential communications.

Contact Information

For any privacy concerns, data requests, or questions, please contact:

📧 Email: reception@lumeria-eye-care.co.uk

Policy Updates

This privacy policy may be updated periodically. Changes will be communicated via our website and other appropriate channels.

©Copyright. All rights reserved.

We need your consent to load the translations

We use a third-party service to translate the website content that may collect data about your activity. Please review the details in the privacy policy and accept the service to view the translations.