Privacy
Your information, and what we do with it.
Counselling only works if you can be honest. This page sets out, in plain terms, what this booking platform collects, why, who can see it, and what you can ask us to do about it — in line with POPIA principles.
What we collect
When you book, we collect your name, email address and mobile number, the service you chose, whether you are meeting online or in person, and the date and time you selected. If you write something in the "what brings you here" field, that is stored with the booking.
If you choose to pay by medical aid, we also collect your scheme name, membership number and the main member’s name — only then, and only because a claim cannot be submitted without them.
We do not collect your identity number, your address, or your medical history through this website.
Payment information
Card details are never entered into this website and never reach our systems. Payments are processed on our payment provider’s own secure checkout, and we receive back only a reference, an amount and a status.
We keep a record of what was paid, when, and against which appointment, because we are required to account for it.
Why we hold it
To schedule and confirm your appointment, to send you reminders and your session link, to process payment, to place the appointment on the practice calendar, and to contact you about a follow-up if one is arranged.
We do not sell your information, we do not share it for advertising, and booking does not add you to a mailing list.
Who can see it
Be Whole Care practitioners and administrative staff, and only to the extent their role requires. Access is controlled by role: an administrator can manage the practice, a staff member sees what they need to run sessions.
You can only ever see your own information in the client portal. Every request is checked against your signed-in identity on the server, not against anything your browser sends.
Third parties involved in delivering the service — our payment provider, our email provider and the practice calendar — receive only what is necessary for their part.
Session notes
Clinical records are not kept in this booking system. What is stored here is administrative: scheduling, payment and communication history.
All sessions are confidential and handled in accordance with ethical and legal requirements.
- Risk of harm to the client or others
- Abuse or neglect of a child, elderly person, or vulnerable individual
- A legal requirement to disclose information
These limits are explained to you during informed consent, before you share anything in a session.
How it is protected
The site is served over HTTPS. Sessions use signed, http-only cookies — nothing about you is readable from a cookie. Passwords, where used, are stored only as a memory-hard hash and are never recoverable.
Administrative actions on client records are written to an audit log. Repeated failed sign-in attempts are rate limited.
Your rights under POPIA
You may ask what personal information we hold about you and request a copy. You may ask us to correct anything inaccurate. You may ask us to delete information we no longer need to keep, and you may withdraw consent to being contacted.
Some records must be retained for a period after your last session to meet professional and legal obligations. Where that applies, we will tell you which records and for how long.
Asking us about your information
Email bewholecare@gmail.com or call . Tell us what you would like to know, correct or delete, and we will come back to you.
Still have a question?
Ask before you book — we would rather answer it now.
