07425199947

Last updated: 18 May 2025
Applies to: Bruno Physical Rehabilitation – United Kingdom

At Bruno Physical Rehabilitation, we are committed to safeguarding your privacy and ensuring that your personal data is processed in a secure, lawful, and transparent manner. This Privacy Policy explains how we collect, use, store, and protect your personal information when you access our website, contact us, or receive therapy services — whether at your home, in our clinic, or online.


1. Who We Are

Bruno Physical Rehabilitation is a UK-based provider of professional therapy and rehabilitation services, including kinesiotherapy, EMS, ultrasound, microcurrent, and laser therapy. We operate privately, offering services either in our clinical space or through home visits.


2. What Data We Collect

We only collect personal information that is necessary for the delivery of safe, effective, and legally compliant care. This may include:

  • Full name

  • Contact details (email, phone number, address)

  • Date of birth

  • Medical history and relevant clinical information

  • Symptoms, injuries, or physical conditions

  • Appointment preferences and clinical notes

  • Any data submitted via website forms, emails, or in-session documentation

We do not collect sensitive personal data unless it is clinically necessary and always with your explicit consent.


3. Why We Collect Your Data

Your personal data is processed for the following purposes:

  • To contact you regarding appointments, services, and updates

  • To assess, plan, and deliver appropriate treatments

  • To maintain accurate clinical records in line with legal and regulatory standards

  • To provide continuity of care and monitor your progress

  • To respond to enquiries and address concerns

  • To meet obligations required by insurers and regulators

We will never sell, share, or trade your data for commercial purposes.


4. Legal Basis for Data Processing

We process your personal data under the following lawful bases in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018:

  • Consent – for email marketing, newsletter opt-in, and initial clinical intake

  • Contractual obligation – when delivering services you’ve requested

  • Legal obligation – for professional indemnity and medical records retention

  • Legitimate interests – for administrative and operational reasons, including maintaining quality of service and responding to enquiries


5. Data Retention

We retain personal data securely and for the minimum period required by law:

  • Adults: For at least 7 years after the last treatment

  • Minors (under 18): Until the patient reaches 25 years of age, or 7 years after the last treatment — whichever is longer

When records are no longer required, they are securely deleted or destroyed in accordance with GDPR guidelines.


6. Your Rights Under UK GDPR

You have the right to:

  • Access the data we hold about you

  • Request correction of inaccurate or incomplete data

  • Request erasure of your personal data (when legally permissible)

  • Withdraw your consent at any time

  • Object to data processing based on legitimate interest

  • Lodge a complaint with the Information Commissioner’s Office (ICO) via www.ico.org.uk


7. How We Protect Your Data

We follow strict confidentiality protocols. Your data is stored on secure, encrypted systems and only accessed by authorised personnel. Any data collected through our website is protected via SSL encryption and industry-standard security protocols.

We conduct regular reviews to ensure the safety of your information.


8. Cookies and Website Analytics

Our website uses essential cookies to ensure functionality and improve user experience. Basic usage statistics may be collected for internal review. No advertising or third-party tracking cookies are used.

You can manage your cookie preferences through your browser settings at any time.


9. Third-Party Processors

We may work with carefully vetted third-party platforms (e.g. for online booking, email automation, or payment processing), all of which are GDPR-compliant. These processors only access the minimum necessary data and are bound by confidentiality agreements.


10. Contact Us

If you wish to exercise your data rights, raise concerns, or learn more about how your personal information is handled, please contact:

Bruno Physical Rehabilitation
📧 Email: hello@brunophysicalrehabilitation.co.uk
🌐 Website: https://brunophysicalrehabilitation.co.uk


11. Updates to This Policy

We may revise this Privacy Policy periodically to reflect changes in legislation or our services. The updated version will always be available on our website with the “Last Updated” date clearly noted.

We recommend reviewing this policy from time to time to stay informed.