Last Updated: 26 January 2026
Beyond Basics Medical Day Spa LTD (“Beyond Basics”, “we”, “us”, “our”) is committed to protecting your privacy and handling your personal data in a lawful, fair, and transparent manner. This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you visit our website or interact with our services.
This policy is governed by the Cayman Islands Data Protection Act (2021 Revision) and reflects the Act’s Eight Data Protection Principles.
1. Data Controller
2. What Personal Data We Collect
We may collect the following categories of personal data when you use our website, submit a form, or engage with our services:
Information You Provide
-
- Name
- Email address
- Phone number
- Postal address
- Country
- Company name (if applicable)
- Information submitted through contact forms or inquiry forms
Payment Information
If you make an online payment, we may collect:
-
- Name
- Billing details
- Contact information
- Payment method details (processed securely through our payment provider)
Automatically Collected Information:
-
- IP address
- Browser type and version
- Device information
- Pages visited
- Time spent on pages
- Referring websites
- Cookie and tracking data (see Cookie section)
3. Legal Bases for Processing
We process your personal data under the following lawful bases:
-
- Consent – when you submit a form, sign up for marketing, or accept cookies.
- Contract – when processing payments or providing services you request.
- Legitimate Interests – improving our website, preventing fraud, ensuring security.
- Legal Obligation – where required by Cayman Islands law.
4. How We Use Your Information
We use your personal data for the following purposes:
-
- Responding to inquiries and providing customer support
- Processing payments and issuing receipts
- Internal record keeping
- Improving our website, services, and user experience
- Sending marketing communications (only with your consent)
- Analytics and performance monitoring
- Security, fraud prevention, and compliance with legal obligations
We do not sell your personal data.
5. Payment Processing
When you make an online payment:
-
- You must provide accurate and complete information.
- Payment details are processed securely through our third‑party payment provider.
- We do not store or retain full credit/debit card numbers.
- Non‑essential payment data is deleted once the transaction is completed and reconciled.
6. Cookies & Tracking Technologies
Our website uses cookies to:
-
- Improve functionality
- Understand user behavior
- Personalize your experience
- Support analytics and advertising features
You may manage or disable cookies through your browser settings. Some features may not function properly if cookies are disabled.
We use:
-
- Google Analytics
- Google Ads (Remarketing & Advertising Reporting Features)
7. Targeted Advertising
We may use Google Ads and remarketing tools to display relevant advertisements based on your browsing behavior.
You can opt out of personalized advertising at any time via Google’s Ads Preferences Manager.
8. Third‑Party Service Providers
We use trusted third‑party providers to support our operations, including:
-
- Website hosting
- Email services
- Payment processors
- Form providers (e.g., Jotform)
- Analytics and advertising platforms (e.g., Google)
These providers may process your personal data solely to perform services on our behalf and are bound by data protection agreements.
9. International Data Transfers
Where personal data is transferred outside the Cayman Islands, we ensure that appropriate safeguards are in place, such as:
-
- Standard Contractual Clauses
- Adequacy decisions
- Contractual protections with third‑party processors
10. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
-
- Legal, accounting, or reporting requirements
- Service delivery
- Security and fraud prevention
Retention periods vary by data type. If you wish to request deletion, please contact us.
11. Your Rights Under Cayman Islands Law
You have the following rights regarding your personal data:
-
- Right of Access – request a copy of your data
- Right to Rectification – correct inaccurate information
- Right to Erasure – request deletion where applicable
- Right to Stop or Restrict Processing
- Right to Object to Processing
- Right to Data Portability
- Right to Complain – to the Office of the Ombudsman (Cayman Islands)
To exercise any of these rights, email info@beyondbasics.ky.
12. Security
We implement appropriate technical and organizational measures to protect your data, including:
-
- Encrypted data transmission (HTTPS)
- Secure servers
- Access controls
- Regular security updates
- PCI‑compliant payment processing partners
However, no online transmission is completely risk‑free, and you submit data at your own discretion.
13. External Links
Our website may contain links to third‑party websites. We are not responsible for the privacy practices or content of external sites. You should review their privacy policies before providing personal information.
14. Social Media
If you interact with us on social media:
-
- Do not share sensitive personal information publicly.
- We will never request passwords or financial details via social media.
- Social platforms have their own privacy policies.
15. Promotional Communications
You may opt out of receiving promotional emails at any time by contacting info@beyondbasics.ky or using the unsubscribe link (if available).
16. Changes to This Policy
We may update this Privacy Policy periodically. The “Last Updated” date at the top of this page reflects the most recent version. Continued use of our website indicates acceptance of any changes.
17. Contact Us
For questions, requests, or concerns regarding this Privacy Policy, please contact:
