top of page

GDPR Data Privacy Notice

Last updated: 16 August 2025

​

1. Introduction

This GDPR Data Privacy Notice explains how HealthTap UK Ltd (trading as MediTapRx) collects, uses, discloses and protects your personal data in compliance with the UK GDPR. By accessing or using our services at MediTapRx.co.uk, you agree to the practices described here. If you do not consent, please discontinue use and contact us.

 

2. Data Controller and DPO

HealthTap UK Ltd (Company No. 16597038)
Registered office: 71 – 75 Shelton Street, Covent Garden, London, WC2H 9JQ

Our Data Protection Officer (DPO) is Paulo Landig. You can reach the DPO at admin@meditaprx.co.uk for any privacy-related enquiries or to exercise your rights.

 

3. Personal Data We Collect

We process only the data needed to deliver healthcare services safely and effectively. Categories include:

  • Identity data: name, date of birth, gender, user IDs

  • Contact data: email address, telephone number, postal address

  • Health data: online consultation responses, medical history, prescriber notes

  • Technical data: IP address, browser type/version, operating system, cookies

  • Usage data: page visits, clicks, errors, navigation details

  • Financial data: payment card details (tokenised by payment provider)

 

4. Purposes and Legal Bases

We use your personal data for these core purposes:

  • To perform and manage your treatment contract with us

  • To verify your identity and comply with GPhC regulations

  • To improve our website, services, and user experience

  • To communicate service updates, account matters, and marketing (with consent)

 

Legal bases for processing:

  • Contract performance

  • Legal compliance

  • Legitimate interests (e.g., service improvement)

  • Your explicit consent (for special category health data and marketing)

 

5. Special Category Data

Health data, sexual history and other sensitive information are “special category data.” We process these only with your explicit consent and strictly to:

  • Provide medical diagnosis and treatment

  • Meet regulatory requirements for remote prescribing

  • Fulfil contractual obligations in your care plan

 

6. Data Sharing and International Transfers

We may share your data with:

  • MediTapRx staff and clinical advisers for treatment provision

  • Third-party service providers under confidentiality agreements (e.g., hosting, analytics, payment processors)

  • Identity verification partners (e.g., Lemverify) to prevent under-age access and misuse

  • Regulatory or law enforcement bodies if legally required

Where transfers outside the UK occur, we use approved safeguards such as standard contractual clauses to ensure GDPR-level protection.

 

7. Data Retention

We retain personal data only as long as necessary to:

  • Fulfil the purposes outlined above

  • Comply with legal, regulatory or tax obligations

 

Once no longer needed, data is securely deleted or anonymised. Backup copies may persist for legal reasons but are inaccessible for routine processing.

 

8. Your Rights

Under the GDPR you have the right to:

  • Access the data we hold about you

  • Correct inaccurate or incomplete data

  • Erase your data (“right to be forgotten”) where lawful

  • Restrict or object to certain processing activities

  • Obtain a copy of your data in a machine-readable format (data portability)

  • Withdraw consent at any time for processing based on consent

 

To exercise any right, contact our DPO at admin@meditaprx.co.uk. You can also lodge a complaint with the Information Commissioner’s Office (ICO) at ico.org.uk.

 

9. Data Security

We apply industry-standard technical and organisational measures to safeguard your personal data, including:

  • Secure servers and encrypted connections (SSL/TLS)

  • Unique user credentials and access controls

  • Regular security audits and breach response procedures

 

If you suspect any data misuse or breach, please notify our DPO immediately at admin@meditaprx.co.uk.

 

10. Changes to This Notice

We may update this notice to reflect changes in law or our practices. Revised versions will be posted on MediTapRx.co.uk with an updated “Last updated” date. Continued use of our services after changes signifies your acceptance.

 

11. Contact Information

 

For questions, concerns or to exercise your rights, please contact:

HealthTap UK Ltd (MediTapRx)
Email: admin@meditaprx.co.uk
Address: 71 – 75 Shelton Street, Covent Garden, London, WC2H 9JQ

bottom of page