Last Updated: 28 October 2025

1. Introduction

Welcome to MB Hair & Beauty (“we,” “us,” or “our”). We are committed to protecting your privacy and handling your personal data in an open and transparent manner. This privacy policy explains how we collect, use, disclose, and safeguard your information when you visit our website, book our services, or interact with us in any other way.
This policy is designed to comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

2. Data Controller

For the purpose of the UK GDPR, the data controller is:
MB Hair & Beauty
Unit 1, 115 Loverock Road, Loverock Rd, Reading, RG30 1DZ
01189 594 442
info@mbhairbeauty.co.uk

3. Information We Collect

We may collect and process the following types of personal data about you:
Data Category
Examples of Data Collected
Personal Identification Information
Name, email address, phone number, postal address.
Appointment Information
Dates and times of appointments, services booked, stylist preferences, history of services.
Health and Allergy Information
Information you provide regarding allergies, skin sensitivities, or health conditions relevant to our services (e.g., patch test results). We will always ask for your explicit consent to process this data.
Payment Information
Credit/debit card details, billing address, and payment history. Please note that we use a third-party payment processor, and we do not store your full card details.
Marketing and Communication Data
Your preferences in receiving marketing from us and your communication preferences.
Technical Data
Internet protocol (IP) address, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform, and other technology on the devices you use to access our website.
Usage Data
Information about how you use our website and services.

4. How We Use Your Information

We use the information we collect for various purposes, including:
To provide and manage our services: To schedule and confirm appointments, send reminders, and provide you with the hair and beauty services you request.
To process payments: To process transactions for the services you purchase.
To communicate with you: To respond to your inquiries, send you service-related communications, and provide customer support.
For marketing and promotional purposes: To send you newsletters, special offers, and other marketing communications that may be of interest to you. You can opt-out of these communications at any time.
To ensure health and safety: To ensure our treatments are safe and suitable for you.
To improve our website and services: To analyze how our website is used, to improve our services, and to enhance the user experience.
To comply with legal obligations: To comply with applicable laws, regulations, and legal processes.

5. Legal Basis for Processing

We will only process your personal data when the law allows us to. Most commonly, we will use your personal data in the following circumstances:
Performance of a Contract: Where we need to perform the contract we are about to enter into or have entered into with you (e.g., to book your appointment).
Legitimate Interests: Where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests.
Consent: Where you have given us your explicit consent to do so (e.g., for processing health data or for marketing purposes).
Legal Obligation: Where we need to comply with a legal or regulatory obligation.

6. Data Sharing and Disclosure

We do not sell, trade, or otherwise transfer your personal data to outside parties except as described in this policy. We may share your information with:
Third-Party Service Providers: We may share your data with trusted third parties who assist us in operating our business, such as booking systems (e.g., Fresha, Treatwell), payment processors (e.g., Stripe, PayPal), and email marketing services. These third parties are contractually obligated to keep your information confidential and to use it only for the purposes for which we disclose it to them.
Legal and Regulatory Authorities: We may disclose your information if required to do so by law or in response to valid requests by public authorities.

7. Data Retention

We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. By law, we have to keep basic information about our customers (including Contact, Identity, Financial and Transaction Data) for six years after they cease being customers for tax purposes.

8. Your Data Protection Rights

Under the UK GDPR, you have the following rights in relation to your personal data:
The right to be informed: You have the right to be informed about the collection and use of your personal data.
The right of access: You have the right to request a copy of the personal data we hold about you.
The right to rectification: You have the right to have inaccurate personal data rectified, or completed if it is incomplete.
The right to erasure: You have the right to have your personal data erased (the “right to be forgotten”).
The right to restrict processing: You have the right to request the restriction or suppression of your personal data.
The right to data portability: You have the right to have the data we hold about you transferred to another organisation.
The right to object: You have the right to object to the processing of your personal data in certain circumstances.
To exercise any of these rights, please contact us at [Your Email Address].

9. Cookies and Tracking Technologies

Our website may use cookies and similar tracking technologies to track the activity on our service and hold certain information. Cookies are files with a small amount of data which may include an anonymous unique identifier. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our website.

10. Security of Your Data

We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorised way, altered, or disclosed. However, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal data, we cannot guarantee its absolute security.

11. Changes to This Privacy Policy

We may update our privacy policy from time to time. We will notify you of any changes by posting the new privacy policy on this page and updating the “Last Updated” date. You are advised to review this privacy policy periodically for any changes.

12. Contact Us

If you have any questions about this privacy policy or our privacy practices, please contact us at:
MB Hair & Beauty
Unit 1, 115 Loverock Road, Loverock Rd, Reading, RG30 1DZ
01189 594 442
info@mbhairbeauty.co.uk