Privacy Policy
Effective Date: April 8th, 2025
At CareHarmony Medspa, your trust is the foundation of everything we do. We are deeply committed to respecting and protecting your privacy—not just as a legal requirement, but as a core part of our values in client care and confidentiality. This Privacy Policy is designed to help you understand how we collect, use, protect, and share your personal information when you interact with our website or receive services from us.
Legal Disclaimer
The information provided in this Privacy Policy is intended for general awareness and does not replace professional legal advice. Since privacy laws vary based on location, industry, and business structure, we encourage you to consult legal counsel to ensure your specific practices are compliant. CareHarmony Medspa assumes no responsibility for actions taken based on this content without proper legal consultation.
​​
1. Information We Collect
We may collect personal information through our website, in-person consultations, forms, or third-party scheduling platforms. This includes:
• Identity Information: Name, date of birth, and contact details (email, phone number)
• Medical Information: Skin conditions, allergies, health history relevant to treatments
• Appointment & Transactional Details: Appointment history, treatment preferences, billing and payment information
• Website Activity: Browsing behavior, IP address, and other technical data collected through cookies and analytics tools
• Marketing Preferences: Your communication preferences and responses to promotions or surveys
​​
2. Why We Collect This Information
We only collect data that is necessary for delivering a safe, effective, and personalized experience. This includes:
• Booking and confirming appointments
• Understanding your unique skin concerns and customizing treatments accordingly
• Ensuring safe practices through awareness of allergies or sensitivities
• Processing payments securely
• Sending service reminders, promotions, or wellness tips—only with your consent
• Improving the quality of our services through feedback and behavioral insights
​​
3. How We Protect Your Data
We implement a combination of physical, administrative, and technical safeguards to secure your information, including:
• Secure data storage using encrypted platforms
• Access restrictions limited to authorized personnel
• Regular staff training on data privacy and security best practices
• Compliance with HIPAA (where applicable), state privacy laws, and industry standards
Despite our best efforts, no digital transmission or storage method can be 100% secure. However, we are committed to acting swiftly and transparently in the event of any data breach.​
4. Sharing of Information
We will never sell or rent your personal information.
We may share your data with carefully vetted third parties under the following conditions:
• With payment processors to facilitate transactions
• With digital marketing providers (e.g., email platforms), strictly for communications you’ve consented to
• If legally required by law enforcement or regulatory authorities
• With your explicit consent, for example, to share before-and-after photos (never done without written approval)
All partners are required to maintain the same level of data protection and confidentiality that we uphold.​
5. Your Privacy Rights
Depending on your jurisdiction (such as under CCPA or GDPR), you may have the right to:
• Access and review your personal data
• Correct inaccurate or outdated information
• Request the deletion of your data (except where retention is required by law)
• Withdraw consent for communications at any time
• Lodge a complaint with a privacy authority if you feel your rights have been violated
You can exercise any of these rights by contacting us at:
📧
📞 703 - 337 - 8054
​​
6. Data Retention
We retain your information only as long as necessary to fulfill the purposes outlined above, unless a longer retention period is required or permitted by law (e.g., medical record-keeping regulations).
​​
7. Children’s Privacy
CareHarmony Medspa does not knowingly collect personal information from children under 13 without verified parental consent. If we discover such data has been collected, it will be promptly deleted unless legally required to retain it.​
8. Policy Updates
This Privacy Policy may be updated occasionally to reflect new legal requirements, service enhancements, or security practices. When we make significant changes, we will notify you via email or a website announcement.
Last updated on: April 8th, 2025
We Respect You. We Protect You.
Privacy isn’t just about compliance—it’s about care. At CareHarmony Medspa, protecting your personal information is a core part of the harmony we promise to deliver in every experience.