Rytura Pay privacy
A clear record of what the clinic payment app uses.
This notice covers the Rytura Pay app for authorised clinic staff. It should be read with the clinic's own client privacy information and the service arrangements between the clinic and Rytura.
Notice version
rytura-pay-privacy-2026-08-28-v1
Effective 28 August 2026
Who is responsible
ClinicKind Ltd, trading as Rytura, is responsible for the staff-account, app-security and service-operation information described here. ClinicKind Ltd is registered in England and Wales under company number 17396304. Its registered office is Flat 102, 3, Lofting House Garden Boulevard, Maidenhead, United Kingdom, SL6 1FB. Contact Rytura at hello@rytura.com.
The clinic normally decides why client, appointment and treatment information is used and remains the controller of that information. Rytura handles it for the clinic under the applicable service and data-processing arrangements. Stripe processes payment and device data needed to provide its payment services under its own applicable terms and privacy information.
Information used by Rytura Pay
The app and its protected service may use:
- the authorised staff member's name, role, account identifier, secure session and authentication assurance;
- the clinic, location and connected Stripe-account binding approved for that staff session;
- the client display name, booked service, appointment time, appointment identifier, payment purpose and amount needed to identify the payment due;
- payment identifiers, status, receipt link, payment channel, refund status and, when Stripe returns them, card brand and last four digits;
- a reason entered when staff request a refund review;
- device operating system, app version, install binding, session heartbeat, network state and security or error events; and
- device location, NFC and the permission state needed by Stripe Terminal to assess contactless payment availability, prevent fraud and support disputes. The Stripe library may also require Bluetooth permission to check payment-reader availability.
If the staff member uses a secure Stripe Checkout link or QR code, the app may copy or share that link only when the staff member chooses the action.
Information the app does not store
Rytura Pay does not store a full card number, CVC, PIN or magnetic-stripe data. Payment card entry and contactless acceptance are handled by Stripe. The app does not request contacts, photographs, camera, microphone or advertising identifiers, and it does not use data for third-party advertising or cross-app tracking. It cannot take payments offline.
A device biometric can be used to unlock an existing protected session. The biometric template stays with the device platform; Rytura receives only the success, cancellation or failure result.
Why the information is used
Staff and clinic binding information is used to authenticate authorised users, limit them to the correct clinic and location, keep the payment session secure and provide the service requested under Rytura's contract with the clinic. Security, device and audit information is used for legitimate interests in protecting clinics, clients, Rytura and payment systems, preventing duplicate or unauthorised payments, investigating failures and demonstrating actions. Legal-obligation processing may apply where records must be kept or disclosed by law.
Client, appointment and payment-context information is used only to carry out the clinic's authorised instructions, show the correct balance, create or monitor the selected payment route and maintain the clinic's record. Rytura Pay does not make clinical decisions.
Who receives information
Information is available to authorised people at the relevant clinic and to Rytura personnel who need it for protected support, security or service operation. Stripe receives the information necessary to provide payment and Terminal services. Hosting, authentication, security and technical support suppliers process only the information needed for their services. Information may also be disclosed to professional advisers or public authorities where reasonably necessary for legal claims or obligations. Personal information is not sold.
Storage, security and retention
A bounded staff session can be held in device-protected storage and is removed or revoked when the user signs out, the session expires or access is withdrawn. Payment credentials and card data are not placed in that storage. Sensitive app previews and screen capture are restricted while protected information is visible.
Clinic records, payment status, receipts, refund requests and audit events are retained according to the clinic's instructions, the service arrangements and applicable legal, accounting, security and dispute requirements. A deletion request does not require erasure of a record that must lawfully be retained or that belongs to the clinic's own record.
International transfers
Some payment, hosting, security or authentication suppliers may process information outside the UK. Where UK adequacy regulations do not cover the destination, Rytura requires an appropriate UK transfer safeguard for the processing it controls, such as the UK International Data Transfer Agreement or UK Addendum to the EU standard contractual clauses.
Your rights and choices
Depending on the circumstances, a person may ask for access, correction, deletion or restricted use, object to some processing, or request data portability. Rights are not absolute. Client-record requests should normally be made to the clinic first because the clinic controls those records. Staff-account and Rytura Pay requests can be made through the account and data request page.
Please contact Rytura first so a concern can be investigated. You also have the right to complain to the Information Commissioner's Office at ico.org.uk, by telephone on 0303 123 1113, or by post at Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF.
Changes
This notice will be updated when the app's information, permissions, suppliers, purposes, retention approach or legal and operational details change. The version and effective date above identify this release.