GDPR Compliance

Last updated: [Insert Date]

This policy explains how Weight Loss Injections Direct, powered by Raylane Pharmacy, collects, stores, uses, and protects your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

1. Who We Are

Weight Loss Injections Direct operates under the governance of Raylane Pharmacy, a registered UK pharmacy regulated by the General Pharmaceutical Council (GPhC).

For data protection purposes, Raylane Pharmacy is the Data Controller.

2. What Personal Data We Collect

We may collect and process the following categories of personal and health data:

  • Full name, date of birth, and contact details
  • Medical history and current health status
  • Photos submitted for clinical assessments
  • Prescription and treatment records
  • IP address and browsing behaviour (via cookies)
  • Payment and transaction information

3. Why We Collect Your Data

Your data is used for the following purposes:

  • To provide safe, effective healthcare and prescribe medications like Mounjaro or Wegovy
  • To verify your identity and clinical eligibility
  • To fulfil your orders and deliver your treatment
  • To comply with legal and regulatory obligations
  • To improve our website and services
  • For optional marketing (with your consent)

4. Lawful Basis for Processing

Under UK GDPR, we rely on the following lawful bases to process your data:

  • Consent – for optional marketing communications
  • Contract – to fulfil our obligations to you
  • Legal obligation – to comply with healthcare and pharmacy regulations
  • Vital interests – in emergencies or safeguarding situations
  • Legitimate interest – to maintain service quality and performance

5. How We Store and Protect Your Data

We store your data securely using encrypted systems and follow strict internal policies to protect against loss, misuse, or unauthorised access. All staff receive data protection training, and access is limited to authorised personnel only.

6. Data Sharing and Third Parties

We may share your data with:

  • Registered healthcare professionals involved in your care
  • Trusted partners for payment processing and logistics
  • Regulators such as the GPhC, MHRA, or NHS when legally required

We do not sell or share your data for advertising without your explicit consent.

7. Your Data Protection Rights

Under UK GDPR, you have the following rights:

  • Right to access your personal data
  • Right to rectification of inaccurate or incomplete data
  • Right to erasure (“right to be forgotten”)
  • Right to restrict or object to processing
  • Right to data portability
  • Right to withdraw consent (where applicable)
  • Right to lodge a complaint with the ICO

8. Data Retention

We retain your data only for as long as necessary for healthcare provision, legal obligations, and medical recordkeeping. In general, health records are kept for a minimum of 8 years in accordance with NHS guidance.

9. Use of Cookies

We use cookies to improve site performance, remember user preferences, and support secure logins. Please refer to our Cookie Policy for full details.

10. Contact Us

If you have any questions or concerns about how we use your data, or wish to exercise your rights, please contact our Data Protection Officer:

  • Email: [Insert Email]
  • Phone: [Insert Phone Number]
  • Address: [Insert Business Address]

Powered by: Raylane Pharmacy, [Insert Address & GPhC Number]