Privacy Policy
Last Updated: 8 December 2025
1. INTRODUCTION
Aurion London Ltd (“we”, “us”, or “our”) is committed to protecting your privacy and security. This Privacy Policy explains how we collect, use, and safeguard your personal information when you visit our website, book a consultation, or undergo our treatments.
For the purposes of the Data Protection Act 2018 and the UK General Data Protection Regulation (UK GDPR), we are the “Data Controller”.
2. INFORMATION WE COLLECT
We collect two types of data from you:
2.1 Personal Identification Data:
- Name, email address, phone number, and residential address.
- Payment information (processed securely by our payment providers; we do not store full credit card details).
2.2 Special Category (Health) Data:
Due to the nature of our services, we also collect sensitive health information, including:
- Medical history and current health conditions (via your intake questionnaire).
- Physiological metrics, including Pulse Wave Velocity (PWV) scores, vascular age data, and other performance biometrics recorded during your sessions.
3. HOW WE USE YOUR DATA
We use your data for the following specific purposes:
- Service Delivery: To design your personalised protocol and ensure our treatments are safe for you.
- Performance Tracking: To compare your baseline metrics with your post-treatment results (this is essential for our Money-Back Guarantee).
- Communication: To manage your bookings, send appointment reminders, and respond to your queries.
4. LEGAL BASIS FOR PROCESSING
Under UK GDPR, we rely on the following legal bases:
- Contractual Necessity: To fulfil the service agreement when you book a package.
- Explicit Consent: We require your explicit consent to process your health data. You will be asked to sign a waiver/consent form before your first treatment. You may withdraw this consent at any time, but this may prevent us from delivering the treatment.
5. DATA STORAGE & SECURITY
5.1 Storage: Your personal and health data is stored on secure, encrypted cloud servers. We utilise industry-standard security protocols to prevent unauthorised access.
5.2 Retention: We retain your health data for as long as you are a client and for a standard limitation period thereafter for liability and insurance purposes. If you do not proceed with a package after an initial enquiry, your data will be minimised or deleted upon request.
6. DATA SHARING
We strictly do not sell or rent your personal data to third parties.
We may share your data internally within Aurion London Ltd to ensuring continuity of care. We may also share strictly necessary data with our trusted software providers (e.g., booking systems) who act as data processors under our instruction and are bound by confidentiality.
7. YOUR RIGHTS
Under the UK GDPR, you have the right to:
- Access: Request a copy of the personal data we hold about you.
- Rectification: Request correction of any inaccurate data.
- Erasure: Request that we delete your data (“Right to be Forgotten”), subject to our legal obligations to retain medical records for safety liability.
8. CONTACT US
If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us at:
Aurion London Ltd
128 City Road, London, EC1V 2NX
Email: support@aurion.com