Privacy Policy for Heart of Ayurved
1. Introduction
At Heart of Ayurveda, your privacy is extremely important to us. This policy explains how we collect, use, and protect your personal data in line with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
We only collect data that is necessary for the safe and effective delivery of our yoga, Ayurveda, and retreat services.
2. What Personal Data We Collect
We may collect and process the following types of personal data:
Contact Details – name, phone number, email address, postal address
Health Information – injuries, medical conditions, allergies, or Ayurvedic profiles
Emergency Contact Information
Booking & Payment Information – details needed for class or retreat registration and billing (via secure third-party processors)
Communication Preferences – your preferences for receiving updates or marketing
Sensitive health data is only collected with your explicit consent and is treated with the highest level of confidentiality.
3. How We Use Your Data
We use your data to:
Register you for classes, events, or retreats
Provide personalised guidance during yoga or Ayurveda sessions
Ensure your health and safety during our services
Contact you about changes, updates, or emergencies
Send you relevant information (with your consent)
Process payments (securely via trusted providers)
We do not sell or rent your personal data to third parties.
4. Lawful Basis for Processing
Under the UK GDPR, we rely on the following lawful bases:
Consent – for sending marketing or newsletters
Contract – for delivering services you’ve booked
Legal Obligation – for record-keeping and tax compliance
Vital Interests – in case of a health or safety emergency
Legitimate Interests – for service improvement or customer support
5. How We Store and Protect Your Data
Data is stored securely on password-protected digital systems or locked physical files
Access is limited to those who need it for business purposes
Where third-party tools (e.g. booking or payment platforms) are used, they are GDPR-compliant and secure
We retain personal data only as long as necessary to fulfil legal, accounting, or operational purposes.
6. Third-Party Services
We may use GDPR-compliant third-party services like:
Payment processors (e.g. Stripe, PayPal)
Booking platforms (e.g. Calendly, BookThatIn)
Email/newsletter tools (e.g. Constant Contact, Higher Level)
Your data is only shared with these providers as needed to deliver our services.
7. Your Data Rights
Under the UK GDPR, you have the right to:
Access the data we hold about you
Correct inaccurate or outdated data
Request deletion of your data (where appropriate)
Withdraw consent for communications
Lodge a complaint with the Information Commissioner’s Office (ICO) if you believe your data is being misused
You can exercise these rights by emailing us at enquiries@heart-of-ayurveda.com
8. Marketing and Communications
You will only receive marketing communications if you have opted in. You can unsubscribe at any time by clicking the link in our emails or contacting us directly.
9. Cookies and Website Use
If you use our website:
We may use cookies for basic analytics or improved user experience
No cookies will collect personal information without your consent
You can manage your cookie preferences through your browser settings
10. Updates to This Policy
We may update this policy from time to time. Any changes will be posted on our website with a new “Effective Date.”
11. Contact Us
For questions, concerns, or to exercise your rights, please contact:
Heart of Ayurveda
Email: enquiries@heart-of-ayurveda.com
Website:www.-heart-of-ayurveda.com