Privacy Policy & GDPR Compliance
​
Effective Date: 7/01/25
​
At The Soul Sanctuary Henley (formerly Reiki with Jemma), we are committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, and protect your personal data in compliance with the General Data Protection Regulation (GDPR). By using our services or visiting our website, you agree to the terms of this policy.
​
1. Information We Collect
We collect personal data from you when you subscribe to our services, fill out client forms, or engage with our website. The types of personal information we may collect include:
-
Name
-
Email address
-
Phone number
-
Payment details (if applicable)
-
Any information you provide on client forms or during our services (e.g., health and consent information)
-
​
2. How We Use Your Information
We use your personal data for the following purposes:
-
To provide you with the services you've requested
-
To communicate with you about your sessions and updates
-
To send you information regarding future sessions or promotions (with your consent)
-
To process payments (if applicable)
3. Client Forms and Data Storage
Please note that any client forms (such as consent forms) you complete in connection with our services are stored securely through Jotform, a third-party service provider. Jotform complies with GDPR and provides encrypted storage for your personal data. Your forms are stored on Jotform's secure cloud infrastructure, and we only access the data necessary for providing our services.
By submitting a client form, you agree to the storage and processing of your data through Jotform.
​
4. Session Notes and Data Storage
To maintain accurate records of your sessions and provide the best possible service, we may keep session notes (e.g., feedback on your progress, healing intentions, or any relevant observations). These notes are stored securely on Google Drive, protected by two-factor authentication to ensure your data is kept safe.
We take all reasonable steps to protect your information and maintain the confidentiality of your session notes.
​
5. How We Protect Your Data
We implement appropriate technical and organisational measures to protect your personal data from unauthorised access, loss, or disclosure. This includes secure encryption for data storage and transmission, and two-factor authentication for Google Drive.
​
6. Sharing Your Data
We do not share your personal information with third parties unless required by law or necessary for the performance of the services (e.g., payment processors). We will never sell or rent your personal information.
​
7. Your Rights Under GDPR
Under GDPR, you have the following rights regarding your personal data:
-
Right to access: You can request a copy of the personal data we hold about you.
-
Right to rectification: If your data is incorrect or incomplete, you can request to have it corrected.
-
Right to erasure (Right to be forgotten): You can request that we delete your personal data.
-
Right to restrict processing: You can request that we restrict the processing of your personal data.
-
Right to data portability: You can request that we provide your data in a machine-readable format.
-
Right to object: You can object to the processing of your personal data in certain situations.
To exercise any of these rights, please contact us using the details below.
​
8. Cookies
Our website may use cookies to enhance your browsing experience. Cookies are small data files stored on your device that help us recognize you and remember your preferences. You can disable cookies through your browser settings, but this may affect the functionality of our website.
​
9. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of these external sites. We encourage you to read their privacy policies before submitting any personal information.
​
10. Data Retention
We will retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy or as required by law. After that, we will securely delete or anonymize your data.
​
11. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated “Effective Date.” Please review this policy periodically to stay informed about how we protect your personal information.
​
12. Contact Us
If you have any questions about this Privacy Policy, or if you would like to exercise any of your rights under GDPR, please contact us at:
The Soul Sanctuary Henley (formerly Reiki with Jemma)
Email: hello@rreikiwithjemma.com
Phone: +44 (0)7850965498
Website: www.soulsanctuaryhenley.com