How SkinSage collects, uses, and protects your personal data.
Last Updated: 26 January 2026
Effective Date: 26 January 2026
SkinSage ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website skinsage.uk (the "Site") and use our services.
We are registered in England and Wales. For the purposes of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, SkinSage is the data controller.
Callback Request Forms:
Lead Magnet Downloads:
Contact Forms:
Analytics Data (with consent):
Technical Data:
We use cookies and similar tracking technologies. See our Cookie Policy for details.
We use your information for the following purposes:
Under UK GDPR, we process your personal data on the following legal bases:
| Purpose | Legal Basis |
|---|---|
| Processing callback requests | Contract performance (connecting you with clinics) |
| Delivering lead magnets | Consent (you provided your email) |
| Analytics (with consent) | Consent (cookie consent) |
| Essential cookies | Legitimate interest (site functionality) |
| Responding to enquiries | Legitimate interest (customer service) |
| Fraud prevention | Legitimate interest (security) |
| Legal compliance | Legal obligation |
When you submit a callback request, we share your contact details and treatment interest with the clinic you selected. This is necessary to fulfil your request.
We use trusted third-party services to operate our Site:
| Provider | Purpose | Data Shared |
|---|---|---|
| Vercel | Hosting | Technical data |
| Supabase | Database | User data (encrypted) |
| Resend | Email delivery | Email address, name |
| PostHog | Analytics (with consent) | Usage data |
| Google Maps | Location services | Search locations |
All service providers are bound by data processing agreements and process data only on our instructions.
We may disclose your information if required by law, court order, or government request, or to protect our rights or the safety of others.
If SkinSage is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
We retain your personal data only as long as necessary:
| Data Type | Retention Period |
|---|---|
| Callback requests | 2 years from submission |
| Lead magnet emails | Until you unsubscribe |
| Analytics data | 26 months |
| Contact enquiries | 1 year from resolution |
After retention periods expire, data is securely deleted or anonymised.
Under UK GDPR, you have the following rights:
To exercise these rights, contact us at privacy@skinsage.uk. We will respond within 30 days.
We implement appropriate technical and organisational measures to protect your data:
No method of transmission is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Your data is primarily processed in the UK and EU. Where we use service providers outside these regions, we ensure appropriate safeguards are in place (Standard Contractual Clauses or equivalent protections).
Our Site is not intended for children under 18. We do not knowingly collect personal data from children. If you believe we have collected data from a child, contact us immediately.
We may update this Privacy Policy periodically. Changes will be posted on this page with an updated "Last Updated" date. Material changes will be communicated via email or site notice.
For questions, concerns, or to exercise your rights:
Email: privacy@skinsage.uk
For complaints about our data handling, you may also contact the Information Commissioner's Office (ICO):