Dorset's Only APP & UKAPP Members

Dorset's Only APP & UKAPP Members

Privacy policy

 

Last updated: 4th April 2026

1. Who We Are

Isha Body Jewellery Ltd (“we”, “us”, “our”) is a UK-based luxury body piercing studio and jewellery retailer, offering both in-store services and online shopping. We are the data controller responsible for your personal information.

If you have any questions about this policy or how your data is handled, you can contact us at:
sales@ishabodyjewellery.co.uk


2. The Information We Collect

We collect personal information in order to provide our services safely, professionally, and to the high standard you expect from us.

This may include your name, address, email address and telephone number, along with details relating to your purchases, bookings, and interactions with us. When you place an order online, we also collect delivery and transaction information so your order can be processed correctly.

For appointments and in-store services, we may retain records relating to your booking, previous services, and consent forms so that we can maintain continuity of care and provide appropriate aftercare support.

Where required for piercing services, we will also collect limited health information. This may include details of medical conditions, medications, allergies, pregnancy status, or any factors that could affect the suitability of a procedure or the healing process.

We may also collect technical information when you use our website, such as your IP address and browsing behaviour, to help us improve our website and customer experience.


3. How We Use Your Information

We use your personal data to fulfil orders, manage appointments, and communicate with you about your purchases or bookings. It also allows us to provide customer support, handle returns or warranty queries, and ensure that our services remain safe, consistent, and tailored to your needs.

For piercing services, your information is used to assess suitability, carry out procedures safely, and provide appropriate aftercare advice.

Where permitted, we may also use your information to send you updates, offers, or news about Isha Body Jewellery Ltd.


4. Legal Basis for Processing

Under UK GDPR, we process your data where it is necessary to fulfil a contract with you, such as completing a purchase or booking. We also process data where required to meet legal obligations, including tax, health and safety, and age verification requirements.

We may also process data where it is in our legitimate interests to operate and improve our business, provided your rights are not overridden.

Where we send marketing communications, we do so either with your consent or in line with soft opt-in rules.

Health-related information is classified as special category data. We collect and use this information only with your explicit consent and only where it is necessary to protect your health and safety during a procedure.


5. Online Orders, Payments and Delivery

When you place an order through our website, we use your information to process payment, fulfil your order, and arrange delivery. We may also contact you with updates relating to your purchase or to resolve any issues.

Payments are handled securely through trusted providers including Shopify, Klarna and Clearpay. If you choose Klarna or Clearpay, your information may be shared with them so they can assess your eligibility and manage your payment plan. These providers operate as independent data controllers and have their own privacy policies.

We may also use your data to help prevent fraud and to maintain accurate financial records. Delivery information is shared with our shipping providers solely to ensure your order reaches you safely.


6. Appointments and Client Records

For bookings and in-store services, we use secure systems such as Square and StabPad to manage appointments and maintain accurate client records.

These records allow us to provide a consistent, safe, and professional service, in line with recognised industry standards including guidance from the UK Association of Professional Piercers.

Access to client and health information is strictly limited to authorised members of the Isha team and is never used for marketing purposes.


7. Marketing Communications

We may send email or SMS communications where you have chosen to receive them, or where you have previously purchased from us and have not opted out.

You can unsubscribe at any time by using the link in our emails, replying STOP to SMS messages, or contacting us directly.


8. Sharing Your Information

We only share your data where necessary to provide our services, such as with payment providers, booking systems, and delivery partners. All third parties we work with are required to handle your data securely and in accordance with data protection law.

We do not sell your personal data.


9. International Data Transfers

Some of the systems we use may process data outside of the UK. Where this occurs, appropriate safeguards are in place to ensure your information remains protected.


10. Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected. This includes retaining financial records for legal and tax purposes, maintaining client records to support ongoing care, and keeping marketing data until you choose to unsubscribe.

Client records, including consent and health-related information, may be retained for up to seven years in line with professional and legal requirements.


11. Your Rights

You have the right to access, correct, or request deletion of your personal data, as well as the right to restrict or object to certain types of processing.

If you would like to exercise any of these rights, please contact us at sales@ishabodyjewellery.co.uk. You also have the right to lodge a complaint with the UK Information Commissioner’s Office.


12. Children’s Data

Where services are provided to minors, we collect and process personal data only with the consent of a parent or legal guardian, and appropriate identification is required. Additional safeguards are applied in these cases.


13. Data Security

We take appropriate measures to protect your personal data, including secure systems, restricted access, and professional handling of all client information.


14. Cookies

Our website uses cookies to enhance your browsing experience, analyse site performance, and support marketing activity. You can manage your cookie preferences through your browser settings.


15. Changes to This Policy

We may update this Privacy Policy from time to time. The most current version will always be available on our website.

 

 

Search