Privacy Policy

Effective Date:

13th February, 2025

Cloud9 Med Spa

📍 Address: 11751 Alta Vista Rd #303, Fort Worth, TX 76244, United States

📞 Phone: +1 972-897-2355

🌐 Website: www.cloudninemedspadfw.com

Cloud9 Med Spa ("we," "us," or "our") values your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you use our services or visit our website. By using our services, you agree to the terms of this Privacy Policy.

1. Information We Collect

We may collect and process the following types of data:

1.1. Personal Information (PII & PHI - Health Data)

  • Name
  • Email address
  • Phone number
  • Mailing address
  • Date of birth
  • Payment details
  • Health-related information (only when voluntarily provided for treatment purposes, in compliance with HIPAA regulations)

1.2. Non-Personal Information

  • IP address
  • Browser type and device details
  • Website activity (via cookies and analytics tools)

2. How We Collect Information

We collect information through:

  • Direct interactions: When you book appointments, fill out forms, or contact us
  • Automated tracking: Cookies, Google Analytics, and social media pixels
  • Third-party sources: Payment processors, marketing tools, or referral sources

3. How We Use Your Information

We use your data for:

  • Providing services: Scheduling, confirming, and managing appointments
  • Improving customer experience: Personalizing your treatments and communications
  • Processing transactions: Securing payments via trusted third-party payment processors
  • Marketing & promotions: Sending newsletters, offers, and reminders (with your consent)
  • Legal compliance: Adhering to regulatory and law enforcement requests

3. How We Use Your Information

We use your data for:

  • Providing services: Scheduling, confirming, and managing appointments
  • Improving customer experience: Personalizing your treatments and communications
  • Processing transactions: Securing payments via trusted third-party payment processors
  • Marketing & promotions: Sending newsletters, offers, and reminders (with your consent)
  • Legal compliance: Adhering to regulatory and law enforcement requests

4. Legal Basis for Processing (GDPR Compliance)

Under GDPR (for EU customers), we process your personal data based on:

Consent: When you voluntarily provide information (e.g., newsletter sign-ups)

Contractual necessity: To fulfill services you request

Legal obligation: Compliance with applicable laws

Legitimate interests: Improving services while protecting your rights

5. Sharing & Disclosing Your Information

We do not sell or rent your data. However, we may share information with:

  • Service providers: Payment gateways, appointment schedulers, and marketing platforms
  • Healthcare providers (if applicable): When necessary for treatments (HIPAA compliance)
  • Legal authorities: When required by law, fraud prevention, or security threats
  • Business transfers: If Cloud9 Med Spa undergoes a merger, acquisition, or sale

6. Your Rights Under GDPR, CCPA, & Other Privacy Laws

6.1. GDPR Rights (For EU Residents)

Right to access your personal data

Right to rectify inaccurate data

Right to erasure ("right to be forgotten")

Right to restrict or object to processing

Right to data portability

Right to withdraw consent at any time

6.2. CCPA Rights (For California Residents)

Right to know what personal data we collect

Right to request deletion of personal data

Right to opt-out of data selling (we do not sell your data)

Right to non-discrimination for exercising privacy rights

💡 To exercise your rights, contact us at cloudninemedspa@gmail.com.

7. Data Security & Retention

We use industry-standard security measures, including SSL encryption, firewalls, and secure payment processing. However, no online platform is 100% secure.

Data Retention Policy:

  • Personal data is retained only as long as necessary for legal, business, or treatment purposes.
  • If no longer needed, data will be securely deleted or anonymized.

8. Cookies & Tracking Technologies

We use cookies and similar technologies for:

Data Retention Policy:

  • Improving website performance
  • Analyzing user behavior
  • Providing personalized marketing

Your choices:

✅ Accept all cookies

❌ Adjust settings via your browser

🔄 Opt out of targeted ads via Google Ads settings

9. HIPAA Compliance (For Health Information)

As a Med Spa, we may collect Protected Health Information (PHI). HIPAA safeguards apply to any medical or health-related data you share with us.

How We Protect Your Health Data:

  • We do not share PHI without your consent (except for treatment, billing, or legal requirements).
  • All PHI is stored securely, accessible only to authorized personnel.
  • You may request access or correction of your health records at any time.

10. Third-Party Links & External Services

Our website may contain links to third-party websites (e.g., Instagram, Facebook, YouTube). We are not responsible for their privacy practices. Please review their policies before sharing your data.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. The latest version will always be available on our website.

Effective Date:

13th February, 2025

12. Contact Us

If you have questions about this Privacy Policy or your data rights, contact us:

📍 Cloud9 Med Spa

📞 +1 972-897-2355

📧 cloudninemedspa@gmail.com

🌐 www.cloudninemedspadfw.com