Privacy Notice
Bioidentical Hormone Therapy Ltd t/a BioID Health
- Who We Are
Bioidentical Hormone Therapy Ltd, trading as BioID Health, is a company incorporated in England and Wales (Company No. 13472110).
- Registered address: Ellenborough House, Wellington Street, Cheltenham, GL50 1YD, United Kingdom
- ICO registration number: ZB317664
- Contact email: info@bioidhealth.com
BioID Health is the data controller for the personal data described in this Privacy Notice.
- Our Commitment to Data Protection
We take data protection and patient confidentiality seriously and are committed to protecting your personal data.
We comply with:
- the UK General Data Protection Regulation (UK GDPR);
- the Data Protection Act 2018; and
- all applicable UK data protection laws and regulatory guidance, including expectations of the Care Quality Commission (CQC).
- How We Collect Your Personal Data
We collect personal data when you:
- register as a patient;
- attend a consultation (including video consultations);
- receive treatment;
- contact us with enquiries;
- make payments;
- use our website (www.bioidhealth.com).
Some personal data is required for us to provide medical services safely and lawfully. If this information is not provided, we may be unable to deliver our services.
- What Personal Data We Collect
4.1 Patient and Contact Information
- Name, address, email address, telephone number
- Date of birth, gender
- Occupation (where relevant)
- Medical information, including medical history and treatment records
4.2 Website and Technical Information
- IP address
- Browser type and version
- Time zone setting
- Operating system and platform
- Information about website usage, including pages visited, response times, and interaction data
4.3 Payments
- We do not store full payment card details.
- Card payments are processed securely by our payment provider, Stripe.
- Payments may be taken via our website, by telephone, or during video consultations.
- Call and video recordings are paused during card payment collection to ensure card details are not recorded.
- Call and Video Recording
Telephone calls and video consultations may be recorded for purposes including:
- quality assurance and training;
- patient safety and safeguarding;
- handling complaints or disputes.
Where a card payment is taken during a call or video consultation, recording is paused before any card details are provided and resumed only after payment is complete.
- How We Use Your Personal Data
We use your personal data to:
- provide medical consultations, treatment, and ongoing care;
- assess medical suitability and manage clinical risk;
- process payments and manage accounts;
- communicate with you about your care, appointments, and important safety information;
- comply with legal, regulatory, and professional obligations;
- improve our services through audit, analysis, and quality assurance.
In exceptional circumstances, we may contact you about urgent safety matters (for example, medication recalls). You cannot opt out of these communications as they relate to patient safety.
- Lawful Bases for Processing
Under UK GDPR, we rely on the following lawful bases:
- Performance of a contract – to provide medical services and process payments;
- Legal obligation – to meet healthcare, regulatory, and financial requirements;
- Vital interests – where necessary to protect your health or safety;
- Legitimate interests – for service improvement, security, and fraud prevention;
- Explicit consent – where required, for example for sharing information with your GP or for marketing communications.
You may withdraw consent at any time where consent is the lawful basis.
- Sharing Your Personal Data
We may share your personal data with trusted third parties where necessary, including:
- payment processors (Stripe);
- clinical and practice management systems;
- communication and video consultation providers;
- professional advisers and regulators;
- law enforcement or public authorities where legally required.
All third parties are required to handle your data securely and in accordance with data protection law.
If BioID Health undergoes a business reorganisation, merger, or sale, personal data may be transferred as part of that process.
- Data Retention
We retain personal data only for as long as necessary.
- Medical records are retained for 10 years after you cease to be a patient, in line with CQC and NHS guidance.
- Call and video recordings are retained only for their stated purposes and deleted securely in accordance with our retention schedule.
- Financial records are retained as required by law.
Data may be retained longer where there is an unresolved complaint, dispute, or legal obligation.
- Data Security
We implement appropriate technical and organisational measures to protect your personal data, including:
- restricted access to systems;
- multi-factor authentication;
- encryption and secure storage;
- regular backups;
- staff training and security policies.
Where data is stored in hard copy, physical security measures are applied.
- Cookies and Website Technologies
Our website uses cookies and similar technologies to improve functionality and understand usage.
You can manage or decline cookies through our cookie banner or your browser settings. Declining cookies will not affect access to core services.
Our live chat feature may record your IP address to facilitate support conversations.
- Your Rights
You have the right to:
- access your personal data;
- request correction of inaccurate data;
- request deletion or restriction of processing;
- object to certain processing activities;
- request data portability;
- withdraw consent where applicable.
Requests can be made by emailing info@bioidhealth.com. Requests are normally fulfilled within one month and free of charge.
- Complaints
If you have concerns about how we use your personal data, please contact us first.
You also have the right to complain to the Information Commissioner’s Office (ICO):
- Website: https://ico.org.uk
- Contact Us
For questions about this Privacy Notice or how we handle your data:
BioID Health
5 High Bank Side
Stockport
SK1 1HG
Phone: 0330 460 9999
Operating Hours:
Mon–Fri: 09:00–19:00
Sat–Sun: 09:00–17:00
