PRIVACY POLICY

(Effective Date: 23 November 225)

1. Introduction

This Privacy Policy explains how Amaryllis Trevithick trading as Lily Earle Coaching (“we”, “us”, “our”) collects, uses, stores, and protects your personal data in accordance with:

  • UK GDPR

  • Data Protection Act 2018

  • PECR (Privacy & Electronic Communications Regulations)

2. Data We Collect

We may collect:

2.1 Personal Information

  • Name

  • Email address

  • Payment information (handled by Stripe/Kajabi)

  • Mailing address (if provided)

  • Contact messages

2.2 Technical Data

  • IP address

  • Device type

  • Browser information

  • Usage data

  • Cookies

2.3 Special Category Data

You may voluntarily share health-related information (e.g., chronic pain details).
This is processed only with your consent and is never required to use the website.

3. How We Collect Data

We collect data through:

  • Kajabi forms

  • Stripe payments

  • Google Analytics

  • Zoom registration

  • Email marketing (Kajabi)

  • Telegram comments

  • Coaching forms

  • Google Workspace emails

4. Lawful Bases for Processing

We process your data under:

  • Contract – to deliver services you purchase

  • Consent – email marketing, special category data

  • Legitimate Interest – improving services, preventing fraud

  • Legal Obligation – tax and accounting requirements

5. How We Use Your Data

We use your data to:

  • Deliver purchased services

  • Process payments

  • Provide customer support

  • Send email updates and educational content

  • Improve our website and offerings

  • Deliver group program access

  • Maintain safety in group spaces

We never sell your data.

6. Sharing Your Data

We share data with trusted third parties who help deliver our services:

  • Kajabi

  • Stripe

  • Google Analytics

  • Google Workspace

  • Zoom

  • Telegram

  • Email marketing service (Kajabi)

All providers have their own GDPR-compliant privacy measures.

7. International Transfers

Some providers store data outside the UK (e.g., USA).
We ensure data is protected through:

  • Standard Contractual Clauses

  • Adequacy decisions

  • Provider compliance certifications

8. Data Security

We take reasonable steps to secure your data including encryption, password protection, limited access, and secure processors (Kajabi, Stripe, Google).

9. Data Retention

We retain:

  • Financial records: 7 years (legal requirement)

  • Coaching notes: up to 2 years

  • Email list data: until you unsubscribe

  • Digital product purchase records: indefinitely for access purposes

10. Your Rights

Under UK GDPR, you have the right to:

  • Access your data

  • Correct inaccuracies

  • Delete your data (in some cases)

  • Restrict processing

  • Object to processing

  • Withdraw consent

  • Request data portability

To exercise your rights, contact: [email protected]

11. Cookies

We use cookies for:

  • Website functionality

  • Analytics

  • Marketing

You can disable cookies in your browser settings.

12. Children’s Data

We do not knowingly collect data from persons under 18.

13. Complaints

If you have concerns, contact: [email protected]

Or contact the UK Information Commissioner’s Office (ICO): www.ico.org.uk

14. Updates

We may update this Privacy Policy periodically.
Last updated: 23rd November 2025