This Privacy Policy was last updated on: January 1, 2026
Your privacy is important to Nutatu Microblading (“Nutatu,” “we,” “us,” or “our”). This Privacy Policy describes how Nutatu handles personal information that we collect through:
Our websites and other digital properties that link to this Privacy Policy, including without limitation, our online booking system;
Our brick-and-mortar studio location in Toronto;
Appointments and services that we provide directly;
Our client intake forms, consultations, and health history questionnaires;
Our marketing activities, including when you sign up for newsletters or promotions;
Our client communication tools, such as email reminders and follow-ups; and
Our social media accounts on platforms like Instagram, TikTok, and Facebook.
By engaging with our services, you consent to these practices.
We gather personal data necessary for providing microblading and related beauty services, including:
This data is collected directly from you during consultations, bookings via tools like our booking software, online forms, or procedure consent forms.
Your data helps us:
Schedule and manage appointments.
Provide personalized microblading services and follow-up care.
Process payments and send confirmations or reminders.
Improve our services through analytics (anonymized where possible).
Comply with health/safety regulations and send marketing updates (with your consent).
We retain data only as long as needed for these purposes or legal requirements (e.g., 7 years for health records).
We do not ever sell your data. It may be shared with:
Service providers (e.g., payment processors, scheduling software, email tools) under strict confidentiality.
Legal authorities if required by law (e.g., subpoenas).
Business partners for joint services.
All sharing follows PIPEDA principles, and data is not transferred outside Canada without safeguards.
We use reasonable measures like secure servers, firewalls, password protection, and HIPAA-compliant forms (where applicable) to protect your information from unauthorized access or loss. However, no system is fully secure, so we cannot guarantee absolute protection.
Under PIPEDA, you can:
Access, correct, or delete your data. (except where we are legally required to retain your records for a certain length of time ie, consent forms and health records)
Withdraw consent for marketing.
Request details on data sharing.
Our site uses cookies for functionality and analytics. You can manage these preferences via your browser settings.
We may update this policy at any time; and any changes will be posted here with the effective date. Continued use constitutes acceptance.
Questions? Email info@nutatu.com or call 416-605-2378.