Last updated: December 2025
Introduction
Lucy Cropper, trading as Lucy the Mindset Coach ("we", "us", "our"), is committed to protecting your privacy and personal data.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website (lucythemindsetcoach.com) and our services.
Data Controller:
Lucy Cropper trading as Lucy the Mindset Coach
Email: [email protected]
Location: Hastings, England, United Kingdom
This Privacy Policy complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Information We Collect
Information You Provide Directly
We collect information that you provide to us directly, including:
When you sign up for our waiting list or email list:
Name
Email address
Answers to the 5-Minute Life Audit (if completed)
When you purchase a course or membership:
Name
Email address
Billing address
Payment information (processed securely through our payment provider)
When you contact us:
Name
Email address
Message content
Any other information you choose to provide
When you join a coaching programme:
Information shared during coaching sessions
Progress tracking data
Any other information relevant to the coaching relationship
2.2 Information Collected Automatically
When you visit our website, we automatically collect certain information:
Usage Data:
Pages visited
Time and date of visits
Time spent on pages
Referring website
Browser type and version
Device information
IP address
Cookies and Similar Technologies: We use cookies and similar tracking technologies. See Section 8 for more details.
Information from Third Parties
We may receive information about you from:
Payment processors (Stripe or similar)
Email service providers (Go High Level)
Social media platforms (if you interact with our content)
Analytics providers (Google Analytics, if used)
How We Use Your Information
We use your personal data for the following purposes:
To Provide Our Services
Process your purchases and deliver digital products
Provide access to courses and memberships
Send course materials and updates
Facilitate coaching sessions
Respond to your enquiries
Legal Basis: Performance of a contract
To Communicate With You
Send you the 5-Minute Life Audit results and personalized video
Email you about course launches (Self Growth 101 waiting list)
Send newsletters, tips, and free content
Notify you of updates to courses you've purchased
Send important service announcements
Legal Basis: Consent (for marketing) / Legitimate interests (for service communications)
To Improve Our Services
Analyse how our website and courses are used
Understand what content is most valuable
Identify technical issues
Improve user experience
Legal Basis: Legitimate interests
To Comply With Legal Obligations
Maintain records for tax and accounting purposes
Respond to legal requests
Prevent fraud
Legal Basis: Legal obligation / Legitimate interests
Legal Basis for Processing
Under UK GDPR, we must have a legal basis for processing your personal data. We rely on the following:
Consent: When you sign up for our mailing list or waiting list
Contract: When you purchase our products or services
Legitimate Interests: When we analyze website usage to improve our services
Legal Obligation: When we maintain records for tax purposes
How We Share Your Information
We do not sell your personal data to third parties.
We may share your information with:
Service Providers
We work with trusted third-party service providers who help us deliver our services:
Go High Level (CRM and Email Marketing):
Stores contact information
Manages email communications
Hosts course content
Based in the USA
Subject to appropriate safeguards
Payment Processors (Stripe or similar):
Processes payments securely
We do not store your full payment card details
Subject to PCI DSS compliance
Website Hosting:
Hosts our website
May have access to usage data
Analytics Providers (if applicable):
Google Analytics (if used)
Helps us understand website usage
Can be opted out via browser settings
Legal Requirements
We may disclose your information if required by law or if we believe such action is necessary to:
Comply with legal obligations
Protect our rights or property
Prevent fraud or illegal activities
Business Transfers
If Lucy the Mindset Coach is involved in a merger, acquisition, or sale of assets, your personal data may be transferred. You will be notified via email of any such change.
International Data Transfers
Some of our service providers are based outside the UK (particularly in the USA, such as Go High Level).
When we transfer your data internationally, we ensure appropriate safeguards are in place, such as:
Standard Contractual Clauses approved by the UK government
The service provider's participation in recognised data protection frameworks
Other appropriate safeguards as required by UK GDPR
Data Retention
We retain your personal data only for as long as necessary for the purposes outlined in this Privacy Policy.
Typical retention periods:
Email list subscribers: Until you unsubscribe
Course/membership purchasers: 7 years (for tax and accounting purposes)
Website usage data: 26 months (if using Google Analytics)
Coaching session notes: Up to 7 years after the end of the coaching relationship
Contact form enquiries: 2 years
After these periods, we will either delete your data or anonymize it so it can no longer identify you.
Cookies and Tracking Technologies
What Are Cookies?
Cookies are small text files placed on your device when you visit a website. They help the website function properly and provide information to the website owner.
How We Use Cookies
We use cookies for:
Essential Cookies:
Remember your login status
Maintain your session
Enable core website functionality
These cannot be disabled
Analytics Cookies (if applicable):
Understand how visitors use our website
Identify popular content
Improve user experience
Can be opted out
Marketing Cookies (if applicable):
Track which pages you visit
Help us show you relevant content
Measure effectiveness of our marketing
Can be opted out
Managing Cookies
You can control cookies through your browser settings. However, disabling certain cookies may affect website functionality.
Most browsers allow you to:
View what cookies are stored and delete them individually
Block cookies from specific sites
Block all third-party cookies
Clear all cookies when you close the browser
Third-Party Cookies
We may use third-party services that set their own cookies:
Google Analytics (if used)
Social media platforms (if embedded content is used)
Payment processors
Please refer to these third parties' privacy policies for information about their cookies.
Your Rights
Under UK GDPR, you have the following rights regarding your personal data:
Right to Access
You can request a copy of the personal data we hold about you.
Right to Rectification
You can ask us to correct inaccurate or incomplete personal data.
Right to Erasure
You can request that we delete your personal data in certain circumstances, such as:
The data is no longer necessary for the purpose it was collected
You withdraw consent (where consent was the legal basis)
You object to processing and there are no overriding legitimate grounds
Note: We may need to retain certain data for legal or accounting purposes.
Right to Restrict Processing
You can ask us to restrict how we use your data in certain circumstances.
Right to Data Portability
You can request to receive your personal data in a structured, commonly used format.
Right to Object
You can object to:
Processing based on legitimate interests
Direct marketing (including profiling)
Rights Related to Automated Decision-Making
We do not use automated decision-making or profiling that produces legal effects or similarly significant effects.
How to Exercise Your Rights
To exercise any of these rights, please contact us at: Email: [email protected]
We will respond to your request within one month. In some cases, we may extend this by two further months if the request is complex.
Marketing Communications
How We Use Your Data for Marketing
If you have given consent or we have another lawful basis, we may send you:
Email newsletters with tips and free content
Updates about new courses and services
Special offers and promotions
Information about course launches (e.g., Self Growth 101)
How to Opt Out
You can opt out of marketing communications at any time by:
Email:
Click the "unsubscribe" link in any marketing email
Email [email protected] with "UNSUBSCRIBE" in the subject
Please note: Unsubscribing from marketing does not affect:
Transactional emails (receipts, access information)
Service updates for products you've purchased
Responses to your enquiries
Children's Privacy
Our services are not intended for children under 18. We do not knowingly collect personal data from children.
If you believe we have collected information from a child under 18, please contact us immediately and we will delete it.
Data Security
We take the security of your personal data seriously and implement appropriate technical and organisational measures:
Security Measures Include:
Secure Socket Layer (SSL) encryption for data transmission
Secure password protection for accounts
Regular security updates and patches
Limited access to personal data (only authorized personnel)
Secure, reputable third-party service providers
Your Responsibility:
Keep your login credentials confidential
Use a strong, unique password
Log out after using shared devices
Notify us immediately of any suspected unauthorized access
However: No method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Third-Party Websites
Our website may contain links to third-party websites, including:
Social media platforms
Payment processors
Other relevant resources
We are not responsible for the privacy practices of these external sites. Please review their privacy policies before providing any personal information.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in:
Our practices
Legal requirements
Our services
When we make significant changes, we will:
Update the "Last updated" date at the top of this policy
Notify you via email (if you're on our mailing list)
Post a notice on our website
We encourage you to review this Privacy Policy periodically.
Complaints
If you have concerns about how we handle your personal data, please contact us first at [email protected]
You also have the right to lodge a complaint with the UK's supervisory authority:
Information Commissioner's Office (ICO)
Website: https://ico.org.uk
Telephone: 0303 123 1113
Address: Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF
Contact Us
If you have any questions about this Privacy Policy or how we handle your personal data, please contact us:
Email: [email protected]
Website: lucythemindsetcoach.co.uk and lucythemindsetcoach.com
Data Controller:
Lucy Cropper trading as Lucy the Mindset Coach
Hastings, England, United Kingdom
Lucy the Mindset Coach © 2025 All Rights Reserved
Appendix: Glossary
Personal Data: Any information relating to an identified or identifiable individual.
Processing: Any operation performed on personal data, such as collection, storage, use, or deletion.
Data Controller: The entity that determines the purposes and means of processing personal data (in this case, Lucy the Mindset Coach).
Data Processor: A third party that processes personal data on behalf of the data controller (e.g., our email service provider).
Consent: Freely given, specific, informed indication of your agreement to the processing of your personal data.
Legitimate Interests: A lawful basis for processing when we have a genuine and legitimate reason, and it does not override your rights and interests.

© 2025 Lucy the Mindset Coach. All rights reserved.