Privacy Policy

Last Updated : 6 August 2025

1. Who We Are

Laser Montreal ("we", "our", "us") operates the website lasermontreal.ca and provides laser‑based aesthetic and dermatological services in Québec, Canada. Our registered office is in Montréal, Québec.

2. Scope of This Policy

This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you visit our website, book an appointment, or otherwise interact with us. It applies to all users worldwide, in compliance with:

  • Québec’s Act Respecting the Protection of Personal Information in the Private Sector (as amended by Bill 64 / Law 25).
  • Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA).
  • The EU General Data Protection Regulation (GDPR).
  • Other applicable privacy laws.

3. Information We Collect

Category Examples How Collected
Contact & Identification Name, phone number, email, mailing address Website forms, phone, email, in‑person
Health & Treatment (Sensitive) Treatment history, skin type, contra‑indications Booking forms, consultations
Payment Partial card digits, transaction ID, billing address Payment processor (we do not store full card numbers)
Technical IP address, device type, browser, pages visited, cookies, analytics identifiers Cookies, analytics scripts
Marketing Preferences Newsletter opt‑in, language preference Consent checkboxes

We do not knowingly collect data from children under 14. If you are a parent/guardian and believe your child provided us personal data, contact us immediately (Section 13).

4. How We Use Your Information

We use personal information to:

  1. Schedule and manage appointments and provide requested treatments.
  2. Communicate with you regarding bookings, reminders, follow‑ups, and promotions (with consent).
  3. Process payments and issue receipts.
  4. Improve website performance and user experience through analytics.
  5. Comply with legal and regulatory obligations (e.g., tax, health & safety).
  6. Protect our rights, property, and safety as well as that of our users.

Sensitive Health Data – We obtain your explicit, informed consent before processing any health‑related information (treatment history, skin type, contra‑indications) during your consultation or via the booking form, as required by Law 25 and Article 9 GDPR.

5. Legal Bases (GDPR)

Where the GDPR applies, our legal bases are:

  • Performance of a contract (providing booked services).
  • Consent (marketing emails, optional cookies).
  • Explicit consent for sensitive health data (Article 9(2)(a) GDPR).
  • Legal obligation (tax and medical recordkeeping).
  • Legitimate interests (fraud prevention, website security), balanced against your rights.

6. Sharing & Disclosure

We share your information only when necessary:

  • Service Providers – booking platform (e.g., Amelia for WordPress), payment processors, IT hosting, email/SMS providers, each bound by confidentiality agreements.
  • Professional Advisors – accountants, legal counsel.
  • Authorities – when required by law or court order.
  • Business Transfers – in the event of a merger or asset sale, subject to the same protections.

We do not sell your personal information.

7. International Transfers

Our service providers may store data on servers outside Québec/Canada (e.g., United States or EU). Before transferring personal information outside Québec, we conduct a Privacy Impact Assessment (ÉFVP) to ensure the destination jurisdiction offers adequate protection, as required by Law 25. We then rely on contractual safeguards such as Standard Contractual Clauses or equivalent mechanisms recognised by the GDPR.

8. Retention

Medical‑related records are retained for at least 5 years after your last visit, as required by Québec professional guidelines.
Contact‑form messages are retained for 24 months after our last communication.
Analytics data are anonymised or deleted after 26 months.
Other data are kept only as long as needed for the purposes outlined or to comply with legal obligations, after which they are securely deleted or anonymised.

9. Security

We use industry‑standard safeguards: SSL/TLS encryption, access controls, regular security audits, and staff training. No method of transmission or storage is 100 % secure; however, we continuously improve our controls to protect your information.

10. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access, rectify, or update your personal information.
  • Withdraw consent at any time (marketing, optional cookies, sensitive data processing).
  • Request deletion (subject to legal retention duties).
  • Obtain a copy of your information in portable format.
  • Restrict or object to certain processing.
  • File a complaint with the Commission d’accès à l’information du Québec, the Office of the Privacy Commissioner of Canada, or your local authority.

To exercise these rights, contact us (Section 13). We will respond within the timelines required by law (generally 30 days in Québec).

11. Cookies & Similar Technologies

We use:

  • Essential cookies for site functionality and security.
  • Analytics cookies (e.g., Google Analytics) to understand website traffic.
  • Marketing cookies to tailor ads (only with consent).

First‑time visitors see a cookie banner enabling you to accept all cookies, accept essential only, or manage preferences, in compliance with Law 25 and GDPR.

12. Third‑Party Links

Our website may link to external sites (social media, partner clinics). We are not responsible for their privacy practices. Review those sites’ policies before providing personal data.

13. Contact Us

Privacy Officer – Laser Montreal
Email: lasermontrealca@gmail.com
Phone: +1 514 993 7999
Mail: 2145 Rue Noël, Saint-Laurent, QC H4M 1R7, Canada

14. Changes to This Policy

We may update this Privacy Policy to reflect operational, legal, or regulatory changes. We will post the revised version with a new “Last Updated” date and, where required, seek your consent.