Legal

Privacy Policy

Last updated: May 2026

This Privacy Policy explains how Glow Monthly collects, uses, and protects your personal information in accordance with UK GDPR and the Data Protection Act 2018.

1. Who We Are

Glow Monthly ("we", "us", "our") is a tanning salon membership platform based in the United Kingdom. We are the data controller responsible for your personal information. You can contact us at hello@glowmonthly.co.uk.

2. Information We Collect

We collect the following personal information when you sign up or use our services: • Full name and email address • Billing and payment information (processed securely — we do not store full card details) • Membership plan and subscription details • Usage data: session history, check-ins, and salon visits • Device and browser information for analytics and security purposes • Communications you send us (e.g. support requests)

3. How We Use Your Information

We use your personal data to: • Process and manage your membership subscription • Issue and verify your QR code for salon access • Send confirmation emails and membership updates • Process payments and manage billing • Provide customer support • Improve our platform through anonymised analytics • Comply with our legal obligations

4. Legal Basis for Processing

We process your data under the following legal bases: • Contract performance: to provide the membership services you signed up for • Legal obligation: to comply with financial and regulatory requirements • Legitimate interests: to improve our services, prevent fraud, and ensure platform security • Consent: for marketing communications (you may withdraw consent at any time)

5. Sharing Your Information

We do not sell your personal data. We may share your data with: • Partner salons (name and QR code only) to verify your membership on check-in • Payment processors (e.g. Stripe) to handle billing securely • IT service providers who support our platform operations • Law enforcement or regulatory bodies where required by law All third parties are required to handle your data in accordance with applicable data protection laws.

6. Data Retention

We retain your personal data for as long as your membership is active and for up to 6 years after closure of your account, as required for legal and financial record-keeping purposes. Usage data and analytics are retained in anonymised form indefinitely.

7. Your Rights

Under UK GDPR, you have the following rights: • Right to access your personal data • Right to correct inaccurate data • Right to request deletion ("right to be forgotten") • Right to restrict or object to processing • Right to data portability • Right to withdraw consent at any time To exercise any of these rights, contact us at hello@glowmonthly.co.uk. We will respond within 30 days.

8. Cookies

We use essential cookies to maintain your session and preferences. We also use analytics cookies (e.g. Google Analytics) to understand how visitors use our site. You can manage cookie preferences in your browser settings. By continuing to use our site, you consent to our use of cookies as described.

9. Security

We implement industry-standard security measures including SSL encryption, secure payment processing, and access controls to protect your personal data. Despite these measures, no internet transmission is completely secure, and we cannot guarantee absolute security.

10. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of significant changes via email. The "last updated" date at the top of this page reflects the most recent revision. Continued use of our services after changes constitutes acceptance of the updated policy.

11. Contact & Complaints

For privacy-related questions or to exercise your rights, contact us at hello@glowmonthly.co.uk. If you are not satisfied with our response, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk.

Have questions about how we handle your data? Contact us or view our Terms & Conditions.