Privacy Policy

Last Updated: January 26, 2025

Your Privacy Matters

At Magical Touch Aesthetics, we are committed to protecting your privacy and handling your personal information responsibly. This Privacy Policy explains how we collect, use, disclose, and safeguard your information in accordance with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth).

1. Information We Collect

1.1 Personal Information

We collect personal information that you provide to us directly when you:

  • Book an appointment or consultation
  • Create an account on our website
  • Subscribe to our newsletter
  • Contact us via phone, email, or WhatsApp
  • Complete forms or questionnaires
  • Participate in promotions or surveys
  • Provide feedback or reviews

This information may include:

  • Full name
  • Date of birth
  • Contact details (phone number, email address, postal address)
  • Payment information
  • Medical history and health information
  • Treatment preferences and records
  • Photographs (before and after treatment images)
  • Emergency contact information

1.2 Sensitive Information

We may collect sensitive information such as health information, medical history, and information about allergies or medical conditions. This information is collected only with your consent and is necessary for providing safe and effective treatments.

1.3 Automatically Collected Information

When you visit our website, we may automatically collect:

  • IP address and device information
  • Browser type and version
  • Pages visited and time spent on pages
  • Referring website addresses
  • Operating system
  • Cookies and similar tracking technologies

2. How We Use Your Information

We use your personal information for the following purposes:

2.1 Service Delivery

  • Processing and managing appointments
  • Providing aesthetic treatments and services
  • Maintaining treatment records
  • Conducting consultations and assessments
  • Following up on treatments and aftercare
  • Managing your account and preferences

2.2 Communication

  • Sending appointment confirmations and reminders
  • Responding to inquiries and requests
  • Providing customer support
  • Sending service updates and important notices
  • Delivering newsletters and promotional materials (with your consent)

2.3 Business Operations

  • Processing payments and managing billing
  • Maintaining business records
  • Improving our services and customer experience
  • Conducting market research and analysis
  • Training staff and quality assurance

2.4 Legal and Safety

  • Complying with legal obligations
  • Protecting against fraud and security threats
  • Enforcing our terms and conditions
  • Resolving disputes and complaints

3. How We Share Your Information

We do not sell, rent, or trade your personal information. We may share your information in the following circumstances:

3.1 Service Providers

We may share information with trusted third-party service providers who assist us in operating our business, such as:

  • Payment processors
  • Appointment scheduling platforms
  • Email and SMS service providers
  • Website hosting and IT services
  • Accounting and legal services

These providers are contractually obligated to protect your information and use it only for the purposes we specify.

3.2 Healthcare Professionals

With your consent, we may share relevant health information with your doctor or other healthcare providers if necessary for your treatment or safety.

3.3 Legal Requirements

We may disclose your information if required by law, court order, or government authority, or to protect our rights, property, or safety, or that of others.

3.4 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the new owner, subject to the same privacy protections.

4. Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Secure encrypted connections (SSL/TLS)
  • Secure storage of physical and electronic records
  • Access controls and authentication
  • Regular security assessments
  • Staff training on data protection
  • Secure disposal of information when no longer needed

While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to protecting your information to the best of our ability.

5. Data Retention

We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.

Medical and treatment records are retained in accordance with Australian healthcare regulations, typically for a minimum of 7 years from the date of last treatment.

When information is no longer needed, we securely delete or anonymize it in accordance with our data retention policy.

6. Your Rights and Choices

Under Australian privacy law, you have the following rights regarding your personal information:

6.1 Access

You have the right to request access to the personal information we hold about you. We will provide you with a copy of your information within a reasonable timeframe.

6.2 Correction

You have the right to request correction of any inaccurate, incomplete, or out-of-date information. We will take reasonable steps to correct the information.

6.3 Deletion

You may request deletion of your personal information, subject to legal and regulatory requirements. Some information must be retained for legal or business purposes.

6.4 Marketing Opt-Out

You can opt out of receiving marketing communications at any time by:

  • Clicking the "unsubscribe" link in our emails
  • Contacting us directly
  • Updating your preferences in your account settings

Note that you will still receive essential service-related communications such as appointment confirmations.

6.5 Complaints

If you believe we have breached your privacy rights, you can lodge a complaint with us. We will investigate and respond within a reasonable timeframe. If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC).

7. Cookies and Tracking Technologies

Our website uses cookies and similar tracking technologies to enhance your browsing experience and analyze website traffic.

7.1 Types of Cookies We Use

  • Essential Cookies: Necessary for the website to function properly
  • Performance Cookies: Help us understand how visitors use our website
  • Functionality Cookies: Remember your preferences and settings
  • Marketing Cookies: Track your browsing to show relevant advertisements

7.2 Managing Cookies

You can control and manage cookies through your browser settings. Please note that disabling cookies may affect the functionality of our website.

8. Third-Party Links

Our website may contain links to third-party websites, social media platforms, or services. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing any personal information.

9. Children's Privacy

Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you are under 18, please do not provide any personal information without parental or guardian consent.

If we become aware that we have collected information from a child without proper consent, we will take steps to delete that information.

10. International Data Transfers

Your information is primarily stored and processed in Australia. Some of our service providers may be located overseas. When we transfer information internationally, we ensure appropriate safeguards are in place to protect your information in accordance with Australian privacy law.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes by posting the updated policy on our website with a new "Last Updated" date.

We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.

12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

Magical Touch Aesthetics

Privacy Officer

316A Oxley Road, Graceville, Brisbane, QLD 4075

Phone: +61 466 992 297

Email: info@magicaltouchaesthetics.com

We will respond to your inquiry within a reasonable timeframe, typically within 30 days.

13. Office of the Australian Information Commissioner

If you have concerns about how we handle your personal information and are not satisfied with our response, you can contact the Office of the Australian Information Commissioner:

Office of the Australian Information Commissioner (OAIC)

GPO Box 5218, Sydney NSW 2001

Phone: 1300 363 992

Email: enquiries@oaic.gov.au

Website: www.oaic.gov.au

Our Privacy Commitment

Secure Storage

Your data is encrypted and securely stored

Transparency

We're open about how we use your information

Your Control

You have rights over your personal data

Compliance

We follow Australian Privacy Principles

Acknowledgment: By using our services and website, you acknowledge that you have read and understood this Privacy Policy and consent to the collection, use, and disclosure of your personal information as described herein.