Privacy Policy — Subtly You
Last Updated: January 1, 2025
Subtly You (“we,” “us,” or “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website, interact with our services, or contact our team.
By using our website, you consent to the practices described in this Privacy Policy.
1. Compliance With Privacy Laws
We follow all applicable privacy and security regulations, including:
HIPAA (Health Insurance Portability and Accountability Act – United States)
For clients receiving healthcare-related services, we protect all Personal Health Information (PHI) in accordance with HIPAA standards, including secure storage, limited access, and safeguards against unauthorized disclosure.
PIPEDA (Personal Information Protection and Electronic Documents Act – Canada)
For Canadian users, we handle all personal information in compliance with PIPEDA, including obtaining meaningful consent, limiting collection, protecting data, and providing access to your information upon request.
Where applicable, we also comply with provincial legislation such as PHIPA (Ontario) regarding health information privacy.
2. Information We Collect
A. Information You Provide Directly
You may provide the following information voluntarily:
Name
Email address
Phone number
Date of birth (optional or for treatments)
Consultation or intake forms
Appointment requests
Treatment interests
Messages and form submissions
Payment information (processed securely; we do not store credit card details)
B. Information Collected Automatically
We may collect:
IP address
Device type and browser
Pages viewed
Time spent on the website
Approximate location
Interaction data (clicks, scrolls, forms viewed)
Collected through:
Cookies
Analytics tools (e.g., Google Analytics)
Meta Pixel or similar tracking technologies
C. Information From Third Parties
We may receive additional information from:
Advertising platforms (Google, Meta, TikTok)
Scheduling software
Clinic management or CRM systems
Referral partners
3. How We Use Your Information
We use information to:
Provide clinic services
Process bookings and inquiries
Deliver treatment recommendations
Respond to support requests
Improve our website and service experience
Send marketing messages you opted into
Maintain HIPAA- and PIPEDA-compliant records
Analyze trends and site performance
Comply with legal or regulatory obligations
4. How We Share Your Information
We do not sell your personal information.
We may share information only with:
Service providers who support our operations (CRM, website host, analytics, payment processors, scheduling platforms)
Professional partners involved in your care
Legal or regulatory authorities when required
All third parties must protect your information and follow HIPAA and/or PIPEDA standards.
5. Cookies & Tracking Technologies
We use cookies to:
Improve website functionality
Enhance user experience
Provide personalized content
Deliver targeted advertising
You may disable cookies in your browser; however, some website features may not function properly.
6. Marketing Communications
By submitting your contact information, you may receive:
Appointment confirmations
Treatment updates
Clinic news or promotions
You can opt out at any time by:
Clicking Unsubscribe in emails
Replying STOP to SMS messages
7. Data Security
We implement administrative, technical, and physical safeguards to protect your information, including:
Secure servers
Encrypted data transmission
Access controls
Staff training on confidentiality
While we strive to protect all data, no system is completely secure.
8. Your Rights
Depending on your location, you may request to:
Access your personal information
Correct inaccurate information
Withdraw consent for marketing
Request deletion (where legally permitted)
Request a copy of your information
To exercise these rights, contact us at:
Email: info@subltyyou.ca
9. Data Retention
We retain personal information only as long as necessary to:
Provide services
Comply with HIPAA/PIPEDA requirements
Maintain medical or treatment records
Meet legal and operational obligations