~ Updated March 20, 2026
1. Who we are
Still is the data controller for your personal data.
If you need to contact us about data, use the contact details provided at booking.
2. What we collect
We keep it minimal. We may collect: - name - email address - phone number - booking details - health or access information you choose to share
3. Why we use your data (lawful basis)
Under the UK GDPR, we rely on: - Contract – to manage your booking and deliver the session - Legitimate interests – to run and improve our services safely - Consent – for any optional information (like health details) or marketing
4. How we use it
We use your data to: - confirm and manage bookings - contact you about sessions - keep participants safe - improve how we run things
We don’t sell your data. We don’t share it for marketing.
We may share data with trusted providers (for example, payment processors) where needed to deliver the service.
5. How long we keep it
We keep personal data only as long as necessary for bookings, legal obligations, or basic record keeping.
6. Your rights
Under UK GDPR, you have the right to: - access your data - correct inaccurate data - request deletion - restrict or object to processing - data portability (where applicable) - withdraw consent at any time
To exercise these rights, contact us.
If you’re unhappy, you can complain to the Information Commissioner’s Office (ICO).
7. Data security
We take reasonable steps to keep your data secure. No system is perfect, but we keep things tight and limited.
8. Updates
We may update this policy. The latest version applies.