Privacy Policy

Privacy Policy – Rehablab Physiotherapy Limited

Last updated: 12th June 2025

At Rehablab Physiotherapy Limited, your privacy and the confidentiality of your personal data are of utmost importance to us. This Privacy Policy explains how we collect, use, store, and protect your personal information in accordance with the Isle of Man Data Protection Act 2018, which aligns with the principles of the EU General Data Protection Regulation (GDPR).

  1. Who We Are

Rehablab Physiotherapy Limited
Level 4, Victory House
Prospect Hill, Douglas
Isle of Man, IM1 1EQ

📧 Email: info@rehablabphysio.co.uk
📞 Phone: 07624 310311
Data Controller: Kate Parsons (nee Stobart)

We are a physiotherapy clinic based in the Isle of Man, offering professional rehabilitation, pain management, and wellness services.

  1. What Personal Data We Collect

We may collect and process the following types of personal data:

  • Identity and Contact Data: Full name, date of birth, address, telephone number, email address.
  • Health Data: Medical history, clinical assessments, treatment plans, progress notes, and referral letters.
  • Administrative Data: Appointment history, billing and payment details, health insurance information (if applicable).
  • Communication Preferences: Consent for marketing, preferred contact methods.
  1. Legal Basis for Processing Your Data

We process your personal data lawfully under the following legal bases:

  • Consent – for non-essential data uses (e.g. marketing).
  • Contract – to provide our physiotherapy services to you.
  • Legal Obligation – to comply with healthcare and recordkeeping laws.
  • Vital Interests – in case of medical emergencies.
  • Legitimate Interests – to manage our clinic effectively and maintain high standards of care.

For health data (special category data), we rely on Article 9(2)(h) of the GDPR: processing necessary for the provision of health or social care.

  1. How We Use Your Information

We use your data to:

  • Deliver physiotherapy and rehabilitation services.
  • Maintain medical records in line with legal and clinical standards.
  • Communicate appointment reminders, treatment updates, and administrative notices.
  • Process payments and insurance claims.
  • Ensure clinical quality, service improvement, and compliance.

We do not sell your data or use it for automated decision-making.

  1. Sharing Your Personal Data

We may share your data, when necessary, with:

  • Other healthcare professionals or your GP (with your consent).
  • Insurance providers (with your consent).
  • IT service providers (for secure clinic management systems).
  • Regulators or legal authorities, if required by law.

All parties are subject to confidentiality agreements and data protection obligations.

  1. Data Retention

In accordance with medical and legal standards, we retain your records as follows:

  • Adults: 8 years after the last treatment date.
  • Children: Until age 25 or 8 years after the last treatment, whichever is later.

After this period, your data is securely destroyed or anonymised.

  1. Your Data Protection Rights

Under the Isle of Man Data Protection Act 2018, you have the right to:

  • Access – request a copy of the personal data we hold about you.
  • Rectify – correct any inaccuracies in your personal information.
  • Erase – request deletion of your data (where legally appropriate).
  • Restrict – ask us to limit how your data is used.
  • Object – object to certain types of processing.
  • Portability – receive your data in a portable format.
  • Withdraw Consent – where processing is based on consent.

To exercise any of these rights, please contact us using the details above.

  1. Data Security

We implement robust security measures to protect your data, including:

  • Secure, password-protected practice management software.
  • Encrypted data transmission and storage.
  • Physical security of paper files.
  • Staff training in data protection and confidentiality.
  1. Website and Cookies

If you visit our website, we may collect anonymised usage data via cookies to improve functionality. Cookies do not store personally identifiable information unless you submit it directly through a form.

Our full Cookie Policy is available on our website.

  1. Contact Us

To ask questions, request access to your data, or make a complaint, please contact:

Data Protection Contact
Rehablab Physiotherapy Limited
Level 4, Victory House, Prospect Hill, Douglas IM1 1EQ
📧 Email: info@rehablabphysio.co.uk
📞 Phone: 07624 310311

  1. Complaints

If you are not satisfied with how we handle your personal data, you have the right to contact the:

Isle of Man Information Commissioner
P.O. Box 69
Douglas, Isle of Man, IM99 1EQ
📞 +44 1624 693260
🌐 www.inforights.im