PRIVACY POLICY
Effective Date: 14 June 2025
Cocoon Spa & Sauna (“Cocoon,” “we,” “us,” or “our”) operates the website cocoonspa.ph and provides massage, nail care, and women-only dry sauna services at 2nd Floor, Verve Residences 1, BGC, Taguig, Philippines.
This Privacy Policy explains how we collect, use, store, and protect your personal data, and explains your rights under the Philippine Data Privacy Act of 2012.
1. Personal Data We Collect
When collected / Categories of data
• Online booking: Full name, mobile number, email address, birth date, residential address, age, selected service, preferred schedule
• Payment: Cardholder name, card number (tokenised), billing address, transaction details
• Marketing opt-in: Email address, Mobile number
• On-site health declaration: Health conditions such as pregnancy, menstruation, heart issues, recent surgery, blood-pressure concerns, allergies, asthma, skin conditions, fever, infectious disease, diabetes, musculoskeletal pain, and other relevant information
• Cookies & analytics: IP address, device identifier, browser type, pages viewed, session duration, referring URL
2. Purpose and Legal Basis
We process personal data to:
1. Confirm, schedule, and manage bookings
2. Process secure payments
3. Tailor services to declared health conditions
4. Send booking confirmations, reminders, and post-treatment information
5. Improve website performance through analytics
6. Deliver marketing communications (only if you have given consent)
Legal bases: Contract (for bookings and payments), Legitimate Interest (service improvement), and Consent (marketing communications).
3. Payment Processing
We use Xendit, PayMongo, and PayPal to process online payments. Card information is captured and tokenised directly by these PCI-DSS Level 1-certified providers; Cocoon does not store or process raw card data.
4. Data Sharing
We disclose personal data only to:
• Wix.com Ltd. (website host and booking engine)
• Payment processors (Xendit, PayMongo, PayPal)
• Analytics and marketing providers you allow through cookie consent (e.g., Google Analytics, Meta Pixel)
• Government authorities or courts when required by law
We do not sell personal information.
5. Data Retention
• Booking, payment, and treatment records: 10 years from your last visit
• Marketing data: until consent is withdrawn or 5 years after your last interaction, whichever is earlier
• Cookies: duration varies by cookie type; see our Cookie Notice
6. Data Security
We use TLS encryption, secure servers, and role-based access with strong passwords and two-factor authentication. Wix provides additional infrastructure security and built-in tools for data subject requests.
7. Your Rights
Subject to Philippine law, you may request to:
• Access, correct, or erase your personal data
• Restrict or object to processing
• Receive a copy of your data in electronic form
Submit requests by email to hello@cocoonspa.ph. Please provide sufficient details to verify your identity.
8. Children
Individuals under 18 years old may use our services only with a parent or legal guardian present (see Terms & Conditions).
9. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes take effect upon posting the revised version on our website.
10. Contact
Data Protection Officer
Cocoon Spa & Sauna
Verve Residences 1, BGC, Taguig 1630, Philippines
Email: hello@cocoonspa.ph