• UK Based Pharmacy
  • Discreet Packaging
  • UK Based Pharmacy
  • Discreet Packaging

Privacy Policy

  1. About Us

My Pharmacy (UK) Ltd (“My Pharmacy”, “we”, “us”, “our”) is committed to protecting your privacy and handling your personal data transparently, lawfully, and securely. We are registered as a data controller with the Information Commissioner’s Office (ICO) under the Data Protection Act 2018 and UK GDPR.

 

  1. What Information We Collect

We collect and process the following categories of personal data:

  • Identity Data: Name, date of birth, title, postal and billing addresses, email addresses, phone numbers.
  • Health Data (Special Category): Prescription information, medical conditions, allergies, NHS electronic records (e.g., medicines, allergies).
  • Financial Data: Payment card details, billing information.
  • Transaction Data: Purchase history, prescription records.
  • Technical Data: IP address, browser type, device information, website usage data, cookies.
  • Verification Data: Identity documents (passport, driving license, national identity card, 18+ card), credit reference checks.

 

  1. How We Collect Your Data

We collect data:

  • Directly from you (e.g., when you register, place an order, contact us, or complete a consultation form).
  • From third parties (e.g., NHS Spine for identity verification, credit reference agencies, payment processors).
  • Automatically via cookies and similar technologies when you use our website.

 

  1. Purposes and Lawful Bases for Processing

We process your personal data for the following purposes and lawful bases:

Purpose Lawful Basis (UK GDPR Art. 6) Special Category Data (Art. 9)
Service provision, order processing Contract performance (Art. 6(1)(b)) Health care provision (Art. 9(2)(h))
Identity verification Legal obligation (Art. 6(1)(c)), Legitimate interests (Art. 6(1)(f)) Health care provision (Art. 9(2)(h))
NHS and regulatory compliance Legal obligation (Art. 6(1)(c)) Health care provision (Art. 9(2)(h))
Customer service, communications Contract performance, Legitimate interests
Marketing (where applicable) Consent (Art. 6(1)(a))
Website analytics, cookies Consent (non-essential cookies)
Fraud prevention, security Legitimate interests
Post-purchase reviews Legitimate interests

Where we process special category data, this is done in accordance with our Appropriate Policy Document (available on request) as required by Schedule 1, Part 1 of the Data Protection Act 2018.

 

  1. Automated Decision-Making

We use automated decision-making (e.g., automated credit checks) to verify your identity for prescription and non-prescription medication. You have the right to request human intervention, express your point of view, and contest any automated decision.

 

  1. Sharing Your Data

We may share your data with:

  • NHS bodies and healthcare providers (including self-employed medical practitioners such as prescribers) for prescribing services, prescription verification and patient safety.
  • Payment processors and delivery partners (for order fulfilment).
  • IT service providers, cloud storage, and data processors (under GDPR-compliant contracts).
  • Regulatory bodies (where required by law).
  • Professional advisors (e.g., lawyers, accountants).

In the event of a sale, merger, acquisition, or other transfer of all or part of our business or assets, your personal data may be transferred to the acquiring entity. We will ensure that any such transfer is subject to appropriate confidentiality and data protection obligations, and you will be notified of any changes to the data controller or your rights.

We will only share your personal information with other third parties where we have your consent or are required or permitted to do so by law.

 

  1. International Data Transfers

Some of your personal data may be stored or processed outside the UK (for example, with cloud service providers). Where this occurs, we ensure appropriate safeguards are in place, such as standard contractual clauses or adequacy decisions, to protect your data.

 

  1. Data Security

We employ security technology, including firewalls and Secure Socket Layers, and have procedures in place to ensure that our paper and computer systems and databases are protected against unauthorised disclosure, use, loss, or damage. Access to your data is restricted to those who need it for legitimate business purposes.

 

  1. Data Retention

We retain your personal data only as long as necessary for the purposes for which it was collected, or as required by law or regulation.

  • Prescription records: at least 2 years from date of supply (NHS requirement)
  • Prescriber records: at least 8 years from the date of last entry
  • Customer account data: 7 years after account closure
  • Payment and transaction data: 6 years for tax/accounting
  • Marketing consent: until consent withdrawn or 3 years after last contact
  • Website usage/cookie data: 2 years from collection

A full retention schedule is available on request.

 

  1. Your Rights

You have the following rights under data protection law:

  • Access to your data (data subject access request)
  • Rectification of inaccurate or incomplete data
  • Erasure (“right to be forgotten”) where there is no overriding legal reason for retention
  • Restriction of processing
  • Objection to processing (including direct marketing)
  • Data portability (to receive your data in a structured, commonly used format)
  • Not to be subject to automated decision-making without meaningful human intervention
  • Withdrawal of consent (where processing is based on consent)

To exercise your rights, contact info@mypharmacy.co.uk or write to us at the address above. We will respond within one month.

 

  1. Cookies

We use cookies and similar technologies to enhance your website experience, analyse usage, and support marketing.

  • Strictly necessary cookies are always active.
  • Other cookies (performance, functional, marketing) are used only with your consent.

You can manage your cookie preferences via our cookie banner or browser settings. For more information visit www.allaboutcookies.org.

 

  1. Data Subject Requests, Complaints, and Contact

You have the right to complain about any matter relating to our service, including how we use your personal data:

 

 

  1. Changes to This Privacy Notice

We may update this privacy notice from time to time. Material changes will be communicated directly to you (e.g., by email or website notice). The latest version is always available at www.mypharmacy.co.uk/privacy-policy.

 

 

How To Contact Us

Telephone: 01695 474 433
Email: Click HERE to visit our contact us page.

By Post:

Innox Trading Limited
1 Penketh Place
Skelmersdale
Lancs
WN8 9QX

Last updated: October 2025

  • UK basedOrders delivered nationwide

  • Free UK Delivery On Orders Over £40

  • Outstanding Support Friendly Expert Advice

  • Best Value Lowest Price Online

  • Verified & Secure 100% Confidential

Trustpilot
GSK
Roche
Pfizer
Merck
Lilly
Janssen
Bayer
[wcas-search-form]