1. Introduction
CIKARTS LTD ("CIKARTS", "we", "us", or "our") is a UK-based beauty and personal care brand specialising in expert hairdressing and tailored beauty treatments. This Privacy Policy outlines how we collect, use, store, and protect your personal information when you visit our website at https://cikarts.site/ (the "Website") or use our in-salon and online booking services (together, the "Services").
We are committed to handling your personal information with care, transparency, and in accordance with applicable data protection laws, including the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. By using our Website or Services, you acknowledge that you have read and understood this Privacy Policy.
This Privacy Policy works alongside, and should be read together with, our Cookie Policy and Terms and Conditions.
2. Information We Collect
We collect personal information that you provide directly to us, information generated when you use our Services, and limited information from third parties where necessary. The specific data we collect will depend on how you interact with us.
2.1 Information you provide to us directly
When you engage with CIKARTS LTD, you may provide us with the following types of personal data:
- Identity details: your full name, title, and, where relevant, date of birth.
- Contact details: email address, mobile or landline number, postal address, and preferred contact method.
- Appointment and booking details: services booked, preferred stylist or therapist, appointment dates and times, booking notes, and any follow-up preferences.
- Consultation and treatment information: hair and beauty preferences, colour history, skin sensitivities, patch test results, and any relevant health or allergy information you choose to share to help us tailor our treatments safely.
- Account and communication data: login credentials (if you create an online account on our booking system), communication preferences, and records of communications with us (such as emails, forms submitted via the Contact Us page, or messages relating to Booking enquiries).
- Feedback and testimonials: comments, reviews, testimonials, and feedback you provide about our Services, including any images you consent to share in connection with your experience.
2.2 Payment and transaction information
When you make a purchase or pay for a service, we collect information necessary to process your payment and manage your booking:
- Payment details: last four digits of your card number, card type, and payment status. Full card details are processed securely by our third-party payment providers and are not stored in full on our systems.
- Transaction records: services purchased, amounts paid, dates of transactions, and related billing information.
2.3 Automatically collected information
When you access our Website, certain information is automatically collected to support functionality, performance, and security:
- Technical data: IP address, browser type and version, device type, operating system, and approximate location (country or city-level where available).
- Usage data: pages visited, time spent on pages, navigation paths, referring websites, and interactions with on-page elements such as buttons and forms.
- Cookie data: information related to cookies and similar technologies used for essential site operation, analytics, and, where applicable, personalisation. For more detail, please see the Cookie Policy.
2.4 Information from third parties
We may receive limited information about you from third parties when this is necessary to deliver our Services or to comply with our legal obligations, for example:
- Payment processors: confirmation that a payment has been authorised or declined, along with basic transaction identifiers.
- Online booking platforms or partners: where you book an appointment with CIKARTS LTD through an integrated or partner booking tool, we may receive your contact and appointment details to manage your booking.
3. How We Use Your Information
We use your personal information to provide, personalise, and enhance our beauty and hairdressing services, to maintain our relationship with you, and to meet our legal and regulatory obligations.
3.1 Providing our services and managing appointments
We process your personal data to:
- Schedule, confirm, and manage your appointments and bookings.
- Tailor treatments and recommendations based on your hair, skin, and service preferences, including allergy or sensitivity information you choose to provide.
- Communicate with you about upcoming appointments, changes, cancellations, or follow-up care.
- Respond to your messages and enquiries submitted via our Contact Us or Booking pages.
3.2 Processing payments and managing transactions
We use your information to:
- Process payments securely for services and products.
- Issue receipts, invoices, and transaction confirmations.
- Manage refunds, adjustments, or disputes relating to payments.
3.3 Improving and developing our services
We analyse usage data, feedback, and booking patterns to:
- Understand how clients use our Website and Services.
- Enhance the usability, performance, and security of our online experience.
- Refine our service menu, pricing structure (as displayed on our Pricing page), and client experience.
3.4 Marketing and client communications
With your consent or where permitted by law, we may use your contact details to:
- Send you updates about new services, offers, or events relevant to CIKARTS LTD.
- Invite you to provide feedback or participate in testimonials featured on our Testimonials page.
You can opt out of marketing communications at any time by following the unsubscribe instructions in our emails or by contacting us directly using the details in the Contact Information section.
3.5 Legal, regulatory, and business purposes
We may also process your data to:
- Comply with our legal, regulatory, and tax obligations.
- Protect our rights, property, clients, and staff, including fraud prevention and security monitoring.
- Maintain internal records, audits, and quality assurance processes.
4. Data Security Measures
We take the security of your personal information seriously and implement technical and organisational measures designed to protect it from unauthorised access, misuse, loss, or disclosure.
4.1 Technical safeguards
Our technical security measures include, where appropriate:
- Encryption: use of encryption technologies, such as HTTPS/TLS, to protect data transmitted between your browser and our Website.
- Secure servers and infrastructure: hosting with reputable providers that apply industry-standard security controls, including firewalls and access monitoring.
- Access controls: restricting access to personal data to authorised staff and service providers who need this information to perform their roles.
4.2 Organisational measures
We also apply non-technical measures to support data security, such as:
- Training relevant team members on data protection and client confidentiality.
- Defining internal policies and procedures for handling personal data and responding to potential incidents.
- Reviewing our security practices and third-party providers on a regular basis.
While we strive to protect your personal information, no method of transmission or storage is completely secure. We cannot guarantee absolute security but are committed to continually improving our safeguards and responding swiftly to any identified risks.
7. Your Rights and Choices
Under data protection laws, you have several rights in relation to your personal information. Your exact rights may depend on your location and how you interact with us, but typically include the following:
- Right of access: to request confirmation as to whether we process your personal data and to receive a copy of the information we hold about you.
- Right to rectification: to ask us to correct or complete any inaccurate or incomplete personal data we hold about you.
- Right to erasure: to request that we delete your personal data in certain circumstances, for example where it is no longer needed for the purpose for which it was collected and we have no legal obligation to retain it.
- Right to restriction: to ask us to suspend or limit the processing of your personal data in specific situations.
- Right to data portability: to request that we provide your personal data in a structured, commonly used, and machine-readable format, or transmit it to another controller where technically feasible.
- Right to object: to object to processing based on our legitimate interests, including certain types of profiling, and to object to direct marketing at any time.
- Rights related to consent: where we rely on your consent to process data, you have the right to withdraw that consent at any time, without affecting the lawfulness of processing carried out before withdrawal.
To exercise any of these rights, please contact us using the details in the Contact Information section below. We may need to verify your identity before responding to your request and will aim to respond within the time limits set by applicable law.
If you have concerns about how we handle your personal data, you also have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) or your local data protection authority. We would appreciate the opportunity to address your concerns directly before you contact a regulator.
8. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, you can contact us using the details below:
CIKARTS LTD Privacy Contact
Company: CIKARTS LTD
Website: https://cikarts.site/
Email: [email protected]
Postal address: 50 Leamington Avenue, Morden, England, SM4 4DW
If you are contacting us in relation to a specific request about your data (such as access, correction, or deletion), please provide enough information for us to identify you and the nature of your request, while avoiding sending any unnecessary sensitive information in your initial message.