GDPR Data Privacy Notice
Last updated: 16 August 2025
​
1. Introduction
This GDPR Data Privacy Notice explains how HealthTap UK Ltd (trading as MediTapRx) collects, uses, discloses and protects your personal data in compliance with the UK GDPR. By accessing or using our services at MediTapRx.co.uk, you agree to the practices described here. If you do not consent, please discontinue use and contact us.
2. Data Controller and DPO
HealthTap UK Ltd (Company No. 16597038)
Registered office: 71 – 75 Shelton Street, Covent Garden, London, WC2H 9JQ
Our Data Protection Officer (DPO) is Paulo Landig. You can reach the DPO at admin@meditaprx.co.uk for any privacy-related enquiries or to exercise your rights.
3. Personal Data We Collect
We process only the data needed to deliver healthcare services safely and effectively. Categories include:
-
Identity data: name, date of birth, gender, user IDs
-
Contact data: email address, telephone number, postal address
-
Health data: online consultation responses, medical history, prescriber notes
-
Technical data: IP address, browser type/version, operating system, cookies
-
Usage data: page visits, clicks, errors, navigation details
-
Financial data: payment card details (tokenised by payment provider)
4. Purposes and Legal Bases
We use your personal data for these core purposes:
-
To perform and manage your treatment contract with us
-
To verify your identity and comply with GPhC regulations
-
To improve our website, services, and user experience
-
To communicate service updates, account matters, and marketing (with consent)
Legal bases for processing:
-
Contract performance
-
Legal compliance
-
Legitimate interests (e.g., service improvement)
-
Your explicit consent (for special category health data and marketing)
5. Special Category Data
Health data, sexual history and other sensitive information are “special category data.” We process these only with your explicit consent and strictly to:
-
Provide medical diagnosis and treatment
-
Meet regulatory requirements for remote prescribing
-
Fulfil contractual obligations in your care plan
6. Data Sharing and International Transfers
We may share your data with:
-
MediTapRx staff and clinical advisers for treatment provision
-
Third-party service providers under confidentiality agreements (e.g., hosting, analytics, payment processors)
-
Identity verification partners (e.g., Lemverify) to prevent under-age access and misuse
-
Regulatory or law enforcement bodies if legally required
Where transfers outside the UK occur, we use approved safeguards such as standard contractual clauses to ensure GDPR-level protection.
7. Data Retention
We retain personal data only as long as necessary to:
-
Fulfil the purposes outlined above
-
Comply with legal, regulatory or tax obligations
Once no longer needed, data is securely deleted or anonymised. Backup copies may persist for legal reasons but are inaccessible for routine processing.
8. Your Rights
Under the GDPR you have the right to:
-
Access the data we hold about you
-
Correct inaccurate or incomplete data
-
Erase your data (“right to be forgotten”) where lawful
-
Restrict or object to certain processing activities
-
Obtain a copy of your data in a machine-readable format (data portability)
-
Withdraw consent at any time for processing based on consent
To exercise any right, contact our DPO at admin@meditaprx.co.uk. You can also lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk.
9. Data Security
We apply industry-standard technical and organisational measures to safeguard your personal data, including:
-
Secure servers and encrypted connections (SSL/TLS)
-
Unique user credentials and access controls
-
Regular security audits and breach response procedures
If you suspect any data misuse or breach, please notify our DPO immediately at admin@meditaprx.co.uk.
10. Changes to This Notice
We may update this notice to reflect changes in law or our practices. Revised versions will be posted on MediTapRx.co.uk with an updated “Last updated” date. Continued use of our services after changes signifies your acceptance.
11. Contact Information
For questions, concerns or to exercise your rights, please contact:
HealthTap UK Ltd (MediTapRx)
Email: admin@meditaprx.co.uk
Address: 71 – 75 Shelton Street, Covent Garden, London, WC2H 9JQ
