Privacy Policy

ZAYAE Wellness (“we,” “us,” or “our”) is committed to protecting the privacy and security of your personal information. This Privacy Policy describes how we collect, use, share, and protect information when you visit our website, use our services, or otherwise interact with us. By accessing or using our services or website, you consent to the practices described in this policy.

Information we collect

We collect information in the following categories:

Personal Information (PI)

You may provide us with personal information when you use our services, contact us, or fill out forms. Examples include:

  • Name
  • Email address
  • Phone number
  • Mailing address
  • Date of Birth
  • Appointment information
  • Medical or health information you voluntarily provide (e.g. health history, treatment preferences)
  • Payment/billing information (e.g. credit card, billing address)

Non-Personal / Technical Information

We automatically collect certain information when you access our website:

  • IP address
  • Browser type and version
  • Device type
  • Operating system
  • Pages you visit, time spent, click metrics
  • Referring URLs
  • Cookies, web beacons, tracking pixels, and similar technologies

Information from Third Parties

We may receive information about you from third-party sources such as:

  • Appointment scheduling platforms
  • Marketing or analytics services
  • Social media platforms
  • Affiliates, business partners

How We Use Your Information

We use your information for the following purposes:

  • Appointment scheduling platforms
  • To provide, schedule, and manage our services
  • To process payments and billing
  • To communicate with you (appointment reminders, service updates, newsletters, marketing subject to consent where required)
  • To improve our website, offerings, and customer experience
  • To conduct analytics and aggregate usage statistics
  • To detect, prevent, and respond to fraud, security risks, or misuse
  • To comply with legal obligations and protect our rights
  • For any other purpose with your consent

Legal Basis for Processing (where applicable)

Depending on where you live, the law may require us to explain the legal bases under which we process your personal information. These may include:

  • Contractual necessity: processing to fulfill our contract with you (e.g., to provide you services)
  • Consent: when you explicitly agree (e.g. receiving marketing emails)
  • Legitimate interests: for our business operations, security, analytics, etc., provided we don’t override your rights
  • Legal compliance: to comply with laws or respond to legal requests

How We Share & Disclose Information

We do not sell or rent your personal information. We may share your information in limited circumstances:

  • Service Providers / Vendors

We may share information with trusted third parties who help us operate (e.g., payment processors, scheduling systems, email service providers, IT/hosting providers). These parties are obligated to safeguard your data and use it only for the purposes we specify.

  • Legal Obligations / Protection

We may disclose your information:

  • In response to lawful requests (e.g. subpoenas, court orders)
  • To enforce our agreements, terms, or rights
  • To protect against fraud, imminent harm, or illegal activities
  • Business Transfers

If we merge, are acquired, or transfer assets, your data may be one of the transferred assets (subject to confidentiality commitments).

  • With Your Consent

We may share your information with third parties if you explicitly request or authorize it (for example, referrals to other healthcare providers).

Special Considerations for Health / Medical Information

If ZAYAE Wellness provides medical, aesthetic, or wellness services and collects Protected Health Information (PHI), you must comply with applicable health privacy laws (e.g. HIPAA in the U.S.). Key points:

  • We will safeguard PHI with appropriate administrative, technical, and physical safeguards
  • We will only use/disclose PHI as permitted by law or with your authorization
  • You may have rights to access, amend, or restrict disclosures of PHI
  • We will provide you with a Notice of Privacy Practices if required

Cookies, Tracking & Analytics

We use cookies, web beacons, and similar technologies to:

  • Remember your preferences
  • Analyze how our website is used
  • Provide tailored content or marketing
  • Improve usability and performance

You can manage or disable cookies via your browser settings, but doing so may limit certain features of the site.

Your Rights & Choices

Depending on your jurisdiction, you may have rights over your personal data, which may include:

  • Access & Correction: Request access to or update your personal information
  • Deletion / Erasure: Request deletion of your data (subject to legal obligations)
  • Restriction of Processing: Ask us to limit certain uses
  • Data Portability: Request a copy of your data in a structured, machine-readable format
  • Opt-Out of Marketing: Decline marketing communications
  • Withdraw Consent: At any time, where processing is based on your consent

To exercise your rights, contact us at the address below.

Data Retention

We retain personal data only as long as needed for the purposes outlined, or to comply with legal, accounting, or reporting requirements. For medical records, we may retain data longer in accordance with applicable laws.

Data Security

We implement reasonable safeguards (encryption, access controls, secure servers, policies) to protect your information from unauthorized access, alteration, or destruction. However, no system is entirely secure absolute security cannot be guaranteed.

International Transfers

If you are accessing our services from outside [your country of operation], your information may be transferred to, stored, or processed in [your country]. By using our services, you consent to this. If your local laws require additional protections (e.g. GDPR), we will take additional measures (e.g. Standard Contractual Clauses, adequacy decisions, or explicit consent).

Children’s Privacy

Our services are not directed to children under 18. We do not knowingly collect personal information from people under 18. If we learn that we have done so, we will promptly delete that data.

Third-Party Links & Services

Our website may link to third-party websites, widgets, or services (e.g. social media, booking tools). We are not responsible for their privacy practices review their privacy policies separately.

⁠Changes to This Policy

We may update this Privacy Policy from time to time. Whenever we make material changes, we will notify you (e.g. via posting the new version with a revised effective date). Your continued use constitutes acceptance of the updated policy.

⁠Contact Us

If you have any questions, requests, or concerns about this Privacy Policy or how we handle your data, please contact: