Privacy Policy
Last Updated: June 11, 2026 | San Diego Chic Medical Spa
San Diego Chic Medical Spa ("San Diego Chic," "we," "us," or "our") is committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services. Please read this policy carefully. If you disagree with its terms, please discontinue use of our site.
1. Information We Collect
We may collect the following categories of personal information:
Information You Provide Directly:
- Full name, email address, phone number, and mailing address
- Date of birth and health-related information provided in consultation forms
- Payment information (processed securely through Stripe — we do not store card numbers)
- Membership registration information
- Communications you send us via email, phone, or contact forms
Information Collected Automatically:
- IP address, browser type, operating system, and referring URLs
- Pages visited, time spent on pages, and clickstream data
- Cookie and tracking technology data (see Section 6)
2. How We Use Your Information
We use the information we collect to:
- Schedule and manage your appointments and consultations
- Process membership enrollments and recurring payments
- Send appointment confirmations, reminders, and follow-up communications
- Respond to your inquiries and provide customer support
- Send promotional emails and newsletters (with your consent; you may opt out at any time)
- Improve our website, services, and client experience
- Comply with legal obligations and protect against fraudulent activity
- Analyze website traffic and usage patterns through analytics tools
3. How We Share Your Information
We do not sell, trade, or rent your personal information to third parties. We may share your information with:
- Service Providers: Third-party vendors who assist in operating our website and conducting our business (e.g., Stripe for payment processing, email marketing platforms), bound by confidentiality agreements
- Medical Professionals: Licensed practitioners involved in your care, as necessary to deliver services
- Legal Requirements: When required by law, court order, or governmental authority
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with notice provided to affected individuals
4. Data Security
We implement industry-standard technical and organizational security measures to protect your personal information from unauthorized access, disclosure, alteration, or destruction. These measures include:
- SSL/TLS encryption for all data transmitted through our website
- Stripe's PCI-DSS compliant infrastructure for all payment processing
- Access controls limiting staff access to personal data on a need-to-know basis
- Regular security assessments of our systems and practices
No method of transmission over the Internet is 100% secure. While we strive to protect your information, we cannot guarantee its absolute security.
5. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes described in this policy, maintain your membership or service relationship, comply with legal obligations, resolve disputes, and enforce our agreements. Health-related records are retained in accordance with applicable California state law and federal regulations. When your data is no longer required, we securely delete or anonymize it.
6. Cookies & Tracking Technologies
We use cookies and similar tracking technologies to enhance your browsing experience, analyze site traffic, and personalize content. Types of cookies we use:
- Essential Cookies: Required for the website to function properly
- Analytics Cookies: Help us understand how visitors interact with the site (e.g., Google Analytics)
- Marketing Cookies: Used to deliver relevant advertisements (e.g., Meta Pixel)
You may control cookie settings through your browser preferences. Disabling certain cookies may affect website functionality.
7. Your Rights & Choices
Depending on your location, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data, subject to legal retention requirements
- Opt-Out: Unsubscribe from marketing communications at any time via the link in any email or by contacting us directly
- California Residents (CCPA): You have the right to know what personal information is collected, the right to delete it, and the right to opt out of its sale (we do not sell personal information)
To exercise any of these rights, contact us at [email protected] or call 406-748-6695.
8. Children's Privacy
Our website and services are not directed to individuals under the age of 18. We do not knowingly collect personal information from minors. If you believe we have inadvertently collected information from a minor, please contact us immediately and we will take steps to delete such information.
9. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of those sites. We encourage you to review the privacy policies of any third-party sites you visit.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The updated version will be indicated by a revised "Last Updated" date at the top of this page. We encourage you to review this policy periodically. Continued use of our website after any changes constitutes your acceptance of the updated policy.
11. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
San Diego Chic Medical Spa
Phone: 406-748-6695
Email: [email protected]
Questions about this policy?
406-748-6695