HOME / LEGAL
Security & Data Protection
How your information is kept safe - before, during and after therapy.
Online sessions
Online CBT sessions are delivered through a GDPR-compliant, end-to-end encrypted video platform selected specifically for use in healthcare. The video link is unique to your session, and no recording is made unless you explicitly request one for your own use.
Booking & scheduling data
Booking information - name, contact details, chosen times and any message you send with your enquiry - is transmitted over TLS (HTTPS) and stored on a secure, UK/EU-hosted scheduling system that meets UK GDPR requirements. Access is restricted to Elizabeth.
Clinical records
If you become a client, session notes are held on encrypted, password-protected systems, entirely separate from website enquiries. Records are retained in line with BABCP and ICO guidance and securely destroyed afterwards.
Confidentiality in therapy
What you share in sessions is confidential. There are only a small number of legal and ethical exceptions where I would need to break confidentiality - and where possible I will always discuss them with you first:
- A serious, imminent risk to your life or someone else's.
- Safeguarding concerns involving a child or vulnerable adult.
- A court order requiring disclosure.
Website security
This website is served over HTTPS with a valid SSL certificate. We use a cookie consent banner in line with UK PECR rules, and only load analytics with your explicit opt-in.
Reporting a concern
If you have any concern about how your data is handled, please email [email protected]. You also have the right to complain to the ICO at ico.org.uk.