Privacy Policy
MyHealthPal is committed to ensuring the privacy and confidentiality of all personal and health information of our patients, team members and website visitors. We adhere to the National Privacy Principles (NPPs), and this policy is consistent with the Australian Privacy Principles within the Privacy Act 1988. The purpose of this Privacy Policy is to outline MyHealthPal’s ongoing obligations in respect of how we manage personal and health-related information and data.
What type of information do we collect?
- Name, address, date of birth, email, gender, racial or ethnic origin
- Health, exercise and medical history, ethnic background and current lifestyle
- Information about where and how individuals were referred to us
- Health information, including medical results, clinical and medical records
- Family medical history and their details
- Other medical service providers' commentary, diagnosis and test results
Why do we collect sensitive information?
- for the primary purpose for which it was obtained
- for a secondary purpose that is directly related to the primary purpose
- with consent
- where required or authorised by law
How do we collect sensitive information?
- Information entered from a sign-up form
- Face-to-face in the clinic
- Over the phone
- Through email communication
- From a direct referral from another provider
- When an individual pays their bill or makes an appointment
- During a consultation
- Completing a form
What do we collect from others?
How do we use the information?
- To allow the Allied Health Professional to use MyHealthPal, including the management of the exercise programs for individuals, the management of the individual's compliance with the exercise program and the exchange of exercise program templates with other users of MyHealthPal
- To allow the individual to use MyHealthPal, including the access to personalised exercise programs provided by the Allied Health Professional and monitoring the compliance and providing feedback to the Allied Health Professional
- To process payments by MyHealthPal
- To verify individuals identities, respond to enquiries and make contact with the individual when necessary
- To communicate with individuals about MyHealthPal programs and other services of MyHealthPal
- To configure the MyHealthPal app to the individual's goals and values
- To generate anonymous statistical data
- For an individual, MyHealthPal will only provide an individual's medical information to a third party if the individual or an individuals healthcare provider has given its consent for an individual's medical information to be disclosed (for example, to a third-party company and we will use reasonable endeavours to de-identify the information if such information can be collected
- MyHealthPal may, in addition to any other rights set out in this privacy policy, provide individuals sensitive information and personal data to third parties in the following cases:
- To any person that the individual authorises MyHealthPal to disclose your personal information to.
- To MyHealthPal partners, affiliates, contractors, and consultants, who are obligated to protect an individual's personal information and assist MyHealthPal or our related body corporates in providing MyHealthPal service or as otherwise set out in this privacy policy.
- To an individual's organisation, if they are acting on behalf of an organisation.
- To regulatory and government authorities, as authorised or required by law.
- To our professional advisors and third parties such as Medicare, DVA, private health insurance, SIRA, and if necessary, Collection Agencies
- To your healthcare provider, case managers, NDIS planners or auditors
- If it is permitted or obliged to do so on account of national or international laws, case law, and regulations, including government and regulatory authorities.
- If MyHealthPal considers it necessary to do so in defence of its rights.
- MyHealthPal may post an individual's testimonials/comments/reviews on the website containing personal information. MyHealthPal shall obtain the individual's consent via email before posting the testimonial.
- An individual can contact us at hello@myhealthpal.com.au if they do not wish to have their personal information used for any particular purpose. However, it is then possible that an individual may not access or use all or part of the MyHealthPal Service or our website. If MyHealthPal later advises the individual of intended use or disclosure and does not object to that use or disclosure or MyHealthPal is permitted or required by law to do so, MyHealthPal may do so.
How do we protect sensitive information and personal data?
To protect the confidentiality and integrity of individuals personal data, we:
- Have internal policies to keep data private and confidential following this privacy policy.
- Encrypt all communications between MyHealthPal and our users (http: via SSL, email via TLS).
- Use reasonable endeavours to encrypt all appropriate individuals health information in our database where practical to do so ("at-rest").
- Limit information access inside our company.
- Use an electronically and physically secured data centre.
- Automatically log off after a certain period of inactivity by Allied Health Professionals.
- All users are required to choose strong passwords and create a new password every 60 days.
- Use up-to-date development and testing systems.
- Use up-to-date server management technologies.
How can an individual view, change or delete sensitive information and personal data?
If an individual wish to know what personal data MyHealthPal has collected about them or if they wish to change data they cannot change in their account, they can send their request to hello@myhealthpal.com.au.
Can this policy be changed?
This policy can be amended in the future. It is recommended to regularly check the website www.myhealthpal.com.au for any changes that have been made to this policy. The continued use of the service and this website after any changes to this policy means that an individual consents to such changes.
Australian Privacy Rights
Questions?
What type of information do we collect?
- Name, address, date of birth, email, gender, racial or ethnic origin
- Health, exercise and medical history, ethnic background and current lifestyle
- Information about where and how individuals were referred to us
- Health information, including medical results, clinical and medical records
- Family medical history and their details
- Other medical service providers' commentary, diagnosis and test results
Why do we collect sensitive information?
- for the primary purpose for which it was obtained
- for a secondary purpose that is directly related to the primary purpose
- with consent
- where required or authorised by law
How do we collect sensitive information?
- Information entered from a sign-up form
- Face-to-face in the clinic
- Over the phone
- Through email communication
- From a direct referral from another provider
- When an individual pays their bill or makes an appointment
- During a consultation
- Completing a form
What do we collect from others?
How do we collect sensitive information?
- Information entered from a sign-up form
- Face-to-face in the clinic
- Over the phone
- Through email communication
- From a direct referral from another provider
- When an individual pays their bill or makes an appointment
- During a consultation
- Completing a form
How do we protect sensitive information and personal data?
To protect the confidentiality and integrity of individuals personal data, we:
- Have internal policies to keep data private and confidential following this privacy policy.
- Encrypt all communications between MyHealthPal and our users (http: via SSL, email via TLS).
- Use reasonable endeavours to encrypt all appropriate individuals health information in our database where practical to do so ("at-rest").
- Limit information access inside our company.
- Use an electronically and physically secured data centre.
- Automatically log off after a certain period of inactivity by Allied Health Professionals.
- All users are required to choose strong passwords and create a new password every 60 days.
- Use up-to-date development and testing systems.
- Use up-to-date server management technologies.
How can an individual view, change or delete sensitive information and personal data?
If an individual wish to know what personal data MyHealthPal has collected about them or if they wish to change data they cannot change in their account, they can send their request to hello@myhealthpal.com.au.
Can this policy be changed?
This policy can be amended in the future. It is recommended to regularly check the website www.myhealthpal.com.au for any changes that have been made to this policy. The continued use of the service and this website after any changes to this policy means that an individual consents to such changes.