Plushour

Legal

Privacy

Published 20 September 2026. These are Plushour's live consumer, clinic-supplier and privacy terms for the London marketplace. They describe how the product works. Plushour is not a clinic and these pages do not create a clinician–patient relationship with Plushour.

Who is responsible

Plushour is the controller for marketplace account, booking, payment-identifier and operations data. Contact: edozieizegbu@gmail.com.

The clinic you book with is a separate controller for the clinical record of your sitting. Do not upload diagnoses, prescription charts, clinical photographs or identity documents to Plushour consumer forms.

What we collect

Account details: name, email, password hash, optional phone and postcode, and whether the email is verified.

Booking records: public reference, slot time, treatment name, snapshotted retail / marketplace / clinic-payout amounts, promotion use, attendance and completion events, and cancellation or dispute state.

Payment identifiers from Stripe (customer, checkout session, charge, transfer and connected-account status). We never store raw card numbers. KYC documents stay at Stripe.

Security logs: IP used for rate limits, audit actions on financial and admin events, and optional incrementality answers used as research — not as public reviews.

Clinic operational notes on a booking. Plushour does not want full medical records in the marketplace.

Why we use it

To create your account, reserve a slot, take payment, send booking and check-in messages, settle clinic payouts, prevent fraud and duplicate WELCOME30 redemptions, and run the ledger.

Lawful bases we rely on: contract (booking and payout), legitimate interests (fraud, incrementality research in aggregate, service security), and legal obligation (tax, dispute and payment records).

Who else sees it

The clinic you book with sees what they need to honour the appointment (name, contact, treatment, time, booking reference, check-in state).

Stripe sees payment and Connect data. Email is sent through our mail adapter (Resend when configured). Hosting and the database run on Railway. We do not sell your data. We do not send clinical notes to advertising pixels.

How long we keep it

Booking, ledger and payout records are kept for settlement, chargeback, accounting and tax. Account data can be corrected on request. Deletion is limited where we must keep a payment or dispute trail.

Your choices

You can close a consumer account, decline optional incrementality questions, and ask us to stop waitlist mail. You can ask for access or correction of account data at edozieizegbu@gmail.com.

Clinic staff accounts follow that clinic’s own staff policy. Stripe handles connected-account KYC.