Privacy Policy
How we collect, use, and protect your personal information
Last updated: January 2026
This Privacy Policy describes how Luminaryx Ltd ("we", "our", or "us") collects, uses, and protects your personal information when you visit our website or use our cosmetic treatment consultation services. We are committed to protecting your privacy and ensuring the security of your personal data in accordance with the General Data Protection Regulation (GDPR) and applicable data protection laws.
Data Controller Information
Luminaryx Ltd is the data controller for the personal information we collect about you. Our contact details are:
- Company: Luminaryx Ltd
- Registration Number: C82937
- Address: Triq il-Karmnu 1, Valletta VLT 6668, Malta
- Email: privacy@luminaryx.world
- Phone: +356 27170700
Data Collection
We collect various types of personal data when you interact with our website and services. The data we collect includes information you provide directly to us when booking consultations, contacting us, or using our services. This may include your name, email address, phone number, consultation preferences, and any health or beauty-related information you share during consultations. We also collect technical information automatically when you visit our website, such as your IP address, browser type, device information, and website usage patterns through cookies and similar technologies.
Legal Basis for Processing
We process your personal data based on several legal grounds under GDPR:
- Contract performance: To provide our consultation services and fulfil our obligations to you
- Legitimate interests: To improve our services, website functionality, and customer experience
- Consent: For marketing communications and non-essential cookies (where you have given consent)
- Legal obligation: To comply with legal and regulatory requirements
How We Use Your Information
We use the personal data we collect for various purposes related to providing and improving our consultation services. The use of your data includes delivering our cosmetic treatment consultation services, scheduling appointments, and maintaining consultation records. We also use your information to communicate with you about your consultations, send appointment reminders, and provide follow-up care. Additionally, we may use your data to improve our website functionality, analyse service usage patterns, and develop new consultation offerings. When you have provided consent, we may also use your information for marketing purposes to inform you about relevant services and updates.
Cookies and Tracking Technologies
We may use cookies and tracking technologies for analytics, advertising, and remarketing purposes, including Google Ads. These technologies help us measure campaign effectiveness, deliver relevant advertisements, and improve our services. You can manage your cookie preferences at any time through our cookie consent banner. For detailed information about the cookies we use, please refer to our Cookie Policy.
Data Sharing and Disclosure
We do not sell or rent your personal information to third parties. We may share your data with trusted service providers who assist us in operating our website and delivering our services, such as appointment booking systems, email communication platforms, and website analytics services. These providers are bound by strict confidentiality agreements and are only permitted to use your data for the specific purposes we have outlined. We may also disclose your information if required by law or to protect our legal rights.
Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected or as required by law. Consultation records and related personal information are typically retained for a period of seven years after your last consultation, unless you request earlier deletion. Website usage data and cookies are retained for shorter periods as outlined in our Cookie Policy. Marketing consent records are kept until you withdraw your consent or we determine the data is no longer needed.
Your Rights
Under GDPR, you have several rights regarding your personal data:
- Right of access: You can request a copy of the personal data we hold about you
- Right to rectification: You can ask us to correct inaccurate or incomplete data
- Right to erasure: You can request deletion of your personal data in certain circumstances
- Right to restrict processing: You can ask us to limit how we use your data
- Right to data portability: You can request your data in a portable format
- Right to object: You can object to certain types of data processing
- Right to withdraw consent: You can withdraw consent for processing based on consent at any time
Data Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. Our security measures include encryption of sensitive data, secure server infrastructure, regular security assessments, and staff training on data protection principles. However, no method of transmission over the internet or electronic storage is completely secure, and we cannot guarantee absolute security.
International Data Transfers
As we operate within the European Union, your personal data is primarily processed within the EU/EEA. If we need to transfer your data outside the EU/EEA, we ensure appropriate safeguards are in place, such as adequacy decisions or standard contractual clauses approved by the European Commission.
Children's Privacy
Our services are not intended for individuals under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal data from a child under 16 without appropriate consent, we will take steps to delete such information promptly.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. We will notify you of any material changes by posting the updated policy on our website and updating the "Last updated" date. We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
Contact Information
If you have any questions about this Privacy Policy, wish to exercise your data protection rights, or need to contact us regarding your personal data, please reach out to us using the following contact information:
- Email: privacy@luminaryx.world
- Phone: +356 27170700
- Post: Privacy Officer, Luminaryx Ltd, Triq il-Karmnu 1, Valletta VLT 6668, Malta
You also have the right to lodge a complaint with the relevant data protection authority if you believe we have not handled your personal data in accordance with applicable laws.