Privacy policy.

Effective Date: October 2025
Website: www.grace-williams.com
Owner: Grace Williams

1. Introduction

This Privacy Policy explains how we collect, use, and protect your personal information when you visit our website or engage with our services.

We are committed to safeguarding your privacy and complying with all relevant data protection laws, including the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

By using our website or services, you agree to the terms of this policy.

2. Information We Collect

We may collect and process the following types of personal data:

  • Personal identification details: name, email address, phone number.

  • Health-related information: when voluntarily provided in forms, questionnaires, or consultations.

  • Payment details: processed securely via trusted third-party providers (e.g. Stripe, PayPal) — we do not store full payment card details.

  • Technical and usage data: information about how you use our website, collected through cookies and analytics tools such as Google Analytics. 

3. How We Use Your Information

We process your personal data only where we have a lawful basis to do so. This may include:

  • To respond to enquiries or schedule discovery calls – based on legitimate interests or your consent.

  • To deliver coaching or consulting services – based on the performance of a contract with you.

  • To send newsletters, updates, or marketing communications – based on your explicit consent.

  • To maintain internal records and meet accounting or legal obligations – based on our legal obligations.

  • To analyse website traffic and improve user experience – based on our legitimate interests in running and improving our business.

We will never sell or rent your personal information, or share it for marketing purposes without your explicit consent.

4. Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including any legal, accounting, or reporting requirements.

Client records are typically retained for up to seven (7) years after services end, in line with professional and tax regulations. After this period, data will be securely deleted or anonymised.

5. Storing and Securing Your Data

Your personal data is stored securely using trusted platforms such as Google Workspace, Practice Better, and similar systems. Access is restricted to authorised personnel only.

We implement appropriate technical and organisational measures to protect your information from unauthorised access, alteration, disclosure, or destruction.

6. International Data Transfers

Some of our trusted service providers (e.g. Google, Stripe, Practice Better) are based outside the UK or the European Economic Area (EEA).

Where data is transferred internationally, we ensure that appropriate safeguards — such as UK-approved Standard Contractual Clauses or equivalent measures — are in place to protect your personal information.

7. Cookies and Analytics

Our website uses cookies to enhance user experience and collect anonymous usage data.

You can choose to accept or reject cookies through your browser settings. For more information, please refer to our Cookie Policy (if applicable).

8. Your Data Protection Rights

You have the following rights under UK GDPR:

  • Access: Request a copy of the personal data we hold about you

  • Rectification: Request correction of inaccurate or incomplete data

  • Erasure: Request deletion of your data where legally permitted

  • Restriction: Ask us to limit how your data is processed

  • Data portability: Request transfer of your data to another service provider

  • Withdraw consent: Where processing is based on consent, you can withdraw it at any time

To exercise any of these rights, please contact: hello@sarah-elisabeth.co.uk

If you have concerns about how your data is handled, you also have the right to lodge a complaint with the Information Commissioner’s Office (ICO): www.ico.org.uk

9. Third-Party Links

Our website may contain links to other websites. We are not responsible for the privacy practices or content of those third-party sites.

10. Updates to This Policy

This Privacy Policy may be updated periodically to reflect changes in regulations, technology, or our business practices. The latest version will always be available on this page with the updated effective date.

11. Contact

If you have any questions or concerns about this Privacy Policy or how your personal data is handled, please contact:

Grace Williams
Email: grace@grace-williams.com
Website: www.grace-williams.com