Privacy & Data

Privacy & Cookies Policy

The Vesey Private Hospital Ltd takes your privacy seriously. This policy explains how we collect, use and protect your personal and health data.

Who we are

The Vesey Private Hospital Ltd. Registered in England and Wales. Unit 3, The Courtyard, Reddicap Trading Estate, Sutton Coldfield B75 7BU. CQC Provider ID: 1-12376210923. ICO data-controller registration: ZB342995. Data controller contact: hello@thevesey.co.uk.

What data we collect and why

When you book an appointment, we collect your name, date of birth, email address, phone number and relevant medical information. This data is used to:

  • → Deliver your healthcare appointment
  • → Communicate with you about your appointments and results
  • → Process payment via Stripe (PCI-DSS compliant)
  • → Issue invoices via Xero (if applicable)
  • → Maintain clinical records as required by CQC regulation

We do not sell your data to third parties. Health data is processed under Article 9(2)(h) of UK GDPR — necessary for healthcare provision.

Cookies

Our website uses cookies for analytics (Google Analytics via GTM), session management and improving user experience. By continuing to use our site you consent to necessary cookies. You can manage cookie preferences in your browser settings.

Third-party services used: Google Analytics (analytics), GTM (tag management), Stripe (payments), Setmore/Medesk (booking), Xero (invoicing), MailerLite (email marketing), Microsoft Clarity (UX analytics). Each operates under their own privacy policy.

Your rights

Under UK GDPR, you have the right to: access your personal data, correct inaccuracies, request erasure (subject to legal retention requirements), restrict processing, and data portability. To exercise these rights, contact hello@thevesey.co.uk. You have the right to complain to the ICO at ico.org.uk.

Data retention

Clinical records are retained for a minimum of 8 years from last contact in accordance with NHS and CQC guidance. Marketing data is retained until you unsubscribe or request deletion. Payment records are retained for 7 years for tax purposes.

Contact

For any privacy queries: hello@thevesey.co.uk | 0121 387 3727

Last updated: May 2026