Privacy Policy

WestEnd Med Spa – Privacy Policy

WestEnd Med Spa

Privacy Policy

Last updated May 20, 2026

This privacy notice for WestEnd Med Spa ("we," "us," or "our") describes how and why we might collect, store, use, and/or share ("process") your information when you use our services, such as when you visit our website at westendmedspa.com, or engage with us in other related ways, including any sales, marketing, or events.

Questions or concerns? If you do not agree with our policies and practices, please do not use our Services. Contact us at hello@westendmedspa.com.
Personal Info

We collect info you provide to us when using our Services.

Sensitive Info

We do not process sensitive personal information.

Third Parties

We do not receive information from third parties.

Processing

We process info to provide Services, communicate, and comply with law.

Data Safety

Organizational & technical measures protect your data — though no method is 100% secure.

Your Rights

Depending on your location, you may have rights over your personal information.

1. What Information Do We Collect?

Personal information you disclose to us

In Short: We collect personal information that you provide to us.

We collect personal information that you voluntarily provide to us when you express an interest in obtaining information about us or our products and Services, when you participate in activities on the Services, or otherwise when you contact us.

Personal Information Provided by You. The personal information we collect may include: names, phone numbers, and email addresses.

Sensitive Information. We do not process sensitive information.

All personal information that you provide to us must be true, complete, and accurate, and you must notify us of any changes to such personal information.

Information automatically collected

In Short: Some information — such as your IP address and/or browser and device characteristics — is collected automatically when you visit our Services.

We automatically collect certain information when you visit, use, or navigate the Services. This information does not reveal your specific identity but may include device and usage information, such as your IP address, browser and device characteristics, operating system, language preferences, referring URLs, device name, country, location, information about how and when you use our Services, and other technical information.

Like many businesses, we also collect information through cookies and similar technologies. The information we collect includes:

  • Log and Usage Data. Service-related, diagnostic, usage, and performance information our servers automatically collect when you access or use our Services.
  • Device Data. Information about your computer, phone, tablet, or other device including IP address, device identification numbers, location, browser type, hardware model, and operating system.
  • Location Data. Information about your device's location, which can be precise or imprecise. You can opt out by disabling Location settings on your device.

2. How Do We Process Your Information?

In Short: We process your information to provide, improve, and administer our Services, communicate with you, for security and fraud prevention, and to comply with law.

We process your personal information for a variety of reasons, including:

  • To deliver and facilitate delivery of services to the user.
  • To respond to user inquiries/offer support to users.
  • To send administrative information to you.
  • To send you marketing and promotional communications (you may opt out at any time).
  • To deliver targeted advertising to you.
  • To post testimonials on our Services that may contain personal information.
  • To evaluate and improve our Services, products, marketing, and your experience.
  • To identify usage trends.
  • To determine the effectiveness of our marketing and promotional campaigns.

3. When and With Whom Do We Share Your Personal Information?

In Short: We may share information in specific situations and with specific third parties.

We may need to share your personal information in the following situations:

  • Business Transfers. We may share or transfer your information in connection with any merger, sale of company assets, financing, or acquisition of all or a portion of our business.
  • When we use Google Maps Platform APIs. We may share your information with Google Maps API, Places API, and similar services.

4. Do We Use Cookies and Other Tracking Technologies?

In Short: We may use cookies and other tracking technologies to collect and store your information.

We may use cookies and similar tracking technologies (like web beacons and pixels) to access or store information. Specific information about how we use such technologies and how you can refuse certain cookies is set out in our Cookie Notice.

5. How Long Do We Keep Your Information?

In Short: We keep your information for as long as necessary to fulfill the purposes outlined in this privacy notice unless otherwise required by law.

We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy notice, unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements).

When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize such information, or securely store it and isolate it from any further processing until deletion is possible.

6. How Do We Keep Your Information Safe?

In Short: We aim to protect your personal information through a system of organizational and technical security measures.

We have implemented appropriate and reasonable technical and organizational security measures designed to protect the security of any personal information we process. However, no electronic transmission over the Internet or information storage technology can be guaranteed to be 100% secure. Although we will do our best to protect your personal information, transmission of personal information to and from our Services is at your own risk. You should only access the Services within a secure environment.

7. Do We Collect Information From Minors?

In Short: We do not knowingly collect data from or market to children under 18 years of age.

We do not knowingly solicit data from or market to children under 18 years of age. By using the Services, you represent that you are at least 18 or that you are the parent or guardian of such a minor and consent to such minor dependent's use of the Services. If we learn that personal information from users less than 18 years of age has been collected, we will deactivate the account and take reasonable measures to promptly delete such data from our records. If you become aware of any data we may have collected from children under age 18, please contact us at hello@westendmedspa.com.

8. What Are Your Privacy Rights?

In Short: You may review, change, or terminate your account at any time.

Withdrawing your consent: If we are relying on your consent to process your personal information, you have the right to withdraw your consent at any time by contacting us using the contact details provided in Section 12 below.

Opting out of marketing and promotional communications: You can unsubscribe at any time by clicking the unsubscribe link in our emails, replying "STOP" or "UNSUBSCRIBE" to our SMS messages, or by contacting us directly.

Cookies and similar technologies: Most web browsers are set to accept cookies by default. You can usually choose to remove or reject cookies, though this could affect certain features or services.

If you have questions or comments about your privacy rights, you may email us at hello@westendmedspa.com.

9. Controls for Do-Not-Track Features

Most web browsers and some mobile operating systems include a Do-Not-Track ("DNT") feature or setting you can activate to signal your privacy preference not to have data about your online browsing activities monitored and collected. At this stage no uniform technology standard for recognizing and implementing DNT signals has been finalized. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online.

10. Do United States Residents Have Specific Privacy Rights?

In Short: If you are a resident of Colorado, California, Connecticut, Utah, or Virginia, you are granted specific rights regarding access to your personal information.

What categories of personal information do we collect?

We have collected the following categories of personal information in the past twelve (12) months:

CategoryExamplesCollected
A. IdentifiersName, alias, postal address, phone, email, IP address, account nameYES
B. California Customer RecordsName, contact info, education, employment, financial informationYES
C. Protected classificationsGender and date of birthYES
D. Commercial informationTransaction info, purchase history, financial details, payment informationYES
E. Biometric informationFingerprints and voiceprintsNO
F. Internet / network activityBrowsing history, search history, online behavior, interest dataYES
G. Geolocation dataDevice locationYES
H. Audio, electronic, visualImages and audio, video or call recordingsNO
I. Professional / employmentBusiness contact details, job title, work historyNO
J. Education InformationStudent records and directory informationNO
K. Inferences from personal infoProfile or summary about an individual's preferences and characteristicsYES
L. Sensitive personal informationNO

We have not disclosed, sold, or shared any personal information to third parties for a business or commercial purpose in the preceding twelve (12) months. We will not sell or share personal information in the future belonging to website visitors, users, and other consumers.

California Residents

California Civil Code Section 1798.83 ("Shine The Light") permits our users who are California residents to request information about categories of personal information disclosed to third parties for direct marketing purposes. Contact us at hello@westendmedspa.com to make such a request.

Under the CCPA, California residents have the right to request deletion of data, the right to be informed, the right to non-discrimination for exercising privacy rights, and the right to limit use of sensitive personal information. To exercise these rights, visit westendmedspa.com/book-a-treatment or email hello@westendmedspa.com.

Colorado Residents

Under the Colorado Privacy Act (CPA), Colorado residents have the right to be informed, access, correct, delete, and obtain a copy of their personal data, and to opt out of targeted advertising or profiling. To submit a request, email hello@westendmedspa.com or visit westendmedspa.com/book-a-treatment. Appeals must be responded to within 45 days.

Connecticut Residents

Under the Connecticut Data Privacy Act (CTDPA), Connecticut residents have similar rights as Colorado residents above. To submit a request, email hello@westendmedspa.com. Appeals must be responded to within 60 days.

Utah Residents

Under the Utah Consumer Privacy Act (UCPA), Utah residents have the right to be informed, access, delete, and obtain a copy of their personal data, and to opt out of targeted advertising or data sales. Contact us at hello@westendmedspa.com.

Virginia Residents

Under the Virginia Consumer Data Protection Act (VCDPA), Virginia residents have the right to be informed, access, correct, delete, and obtain a copy of personal data, and to opt out of targeted advertising, data sales, or profiling. Contact us at hello@westendmedspa.com or visit westendmedspa.com/book-a-treatment. Appeals must be responded to within 60 days. If your appeal is denied, you may contact the Virginia Attorney General.

11. Do We Make Updates to This Notice?

In Short: Yes, we will update this notice as necessary to stay compliant with relevant laws.

We may update this privacy notice from time to time. The updated version will be indicated by an updated "Revised" date and will be effective as soon as it is accessible. If we make material changes to this privacy notice, we may notify you either by prominently posting a notice of such changes or by directly sending you a notification. We encourage you to review this privacy notice frequently.

12. How Can You Contact Us About This Notice?

If you have questions or comments about this notice, you may email us or contact us by post:

WestEnd Med Spa
220 W. Main Street, #202
Aspen, CO 81611
United States
hello@westendmedspa.com

13. How Can You Review, Update, or Delete the Data We Collect From You?

Based on the applicable laws of your country, you may have the right to request access to the personal information we collect from you, change that information, or delete it. To request to review, update, or delete your personal information, please visit: westendmedspa.com/book-a-treatment.

14. Independent Contractor & Appointment Policy Disclaimer

WestEnd MedSpa providers, including estheticians and certain treatment specialists, may operate as independent contractors. As independent licensed professionals, providers reserve the right, at their sole professional discretion, to accept, decline, reschedule, or modify appointments, consultations, or treatments based on clinical appropriateness, safety considerations, scope of practice, scheduling availability, client conduct, or other professional factors.

Treatment recommendations, pricing, consultation fees, deposits, cancellation charges, promotional eligibility, and service decisions may vary by provider and are determined at the discretion of the treating provider and/or WestEnd MedSpa management. WestEnd MedSpa and its providers reserve the right to refuse service when deemed appropriate for safety, professional, medical, scheduling, or operational reasons.

By scheduling an appointment, clients acknowledge and agree to these policies.