Privacy Policy
1. Introduction
Prime Medic Pty Ltd ("Prime Medic," "we," "our," or "us") is committed to protecting the privacy and security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data in compliance with thePrivacy Act 1988 (Cth), theAustralian Privacy Principles (APPs), and other relevant laws.
2. Personal Information We Collect
We collect personal information directly from you, through your interactions with our services, and from third parties. This may include:
- Identifying Information: Name, date of birth, gender, contact details (email, phone number, address).
- Health Information: Medical history, medications, allergies, clinical notes, consultation records, Medicare number, Private Health Insurance, Concession and Health Care Cards, DVA.
- Technical Data: IP address, browser type, operating system, device information, location data.
- Payment Information: Credit/debit card details processed via secure third-party gateways
- Cookies & Tracking: Usage data collected through cookies and similar technologies (see Section 7).
- Third-Party Data: Information received from third parties, including healthcare providers, insurance companies, and analytics services.
- Sensitive Information: Information about sexual orientation, criminal records, and health-related data.
3. Legal Basis for Data Processing
We process your personal information under the following legal bases:
- Your consent (where applicable).
- Performance of a contract to provide healthcare services.
- Legal obligations under Australian health and privacy laws.
- Legitimate interests in improving our services, provided your rights do not override these.
4. How We Use Your Information
Your information is used to:
- Provide medical consultations and related health services.
- Process payments and manage appointments.
- Communicate with you regarding services, updates, and support.
- Improve our website, applications, and service offerings.
- Comply with legal, regulatory, and accreditation requirements.
- Prevent fraud and enhance security.
- Conduct quality assurance, research, and analytics to improve service delivery.
- Personalize user experiences and provide relevant content and recommendations.
- Ensure that all medical content published on our platform is reviewed and approved by licensed healthcare professionals to guarantee accuracy.
- Undertake policy development, program evaluation, and health-related research.
5. Disclosure of Personal Information
We may disclose your information to:
- Registered healthcare providers for clinical purposes.
- Third-party service providers (IT support, payment processors, data storage).
- Legal authorities when required by law (with a person’s consent).
6. Data Security
We implement robust security measures, including:
- Encryption of sensitive data.
- Secure servers with access controls.
- Regular security audits and vulnerability assessments.
- Two-factor authentication for system access.
- Data minimization practices to limit exposure of personal information.
- Employee training programs on data privacy and security protocols.
7. Cookies and Tracking Technologies
We use cookies to enhance user experience, analyze website traffic, and personalize content. This includes:
- Essential Cookies: Required for basic website functionality.
- Performance Cookies: Collect anonymous data to improve site performance.
- Targeting/Advertising Cookies: Personalize ads and track marketing effectiveness.
You can manage cookie preferences via your browser settings. Disabling cookies may affect website functionality.
8. Your Rights
You have the right to:
- Access your personal information.
- Correct inaccurate or outdated data.
- Request deletion of your data (subject to legal obligations).
- Opt-out of direct marketing communications.
- Data portability – request your data in a portable format.
- Restrict the processing of your data in certain circumstances.
- Remain anonymous or use a pseudonym when interacting with us where feasible.
- Complain with theOffice of the Australian Information Commissioner (OAIC) if you believe your privacy has been breached.
9. Data Retention
We retain personal information only as long as necessary for the purposes outlined in this policy or as required by law (e.g., medical records retention laws). Data is securely destroyed or de-identified when no longer needed.
10. Notifiable Data Breaches
In the event of a data breach that is likely to result in serious harm, we will notify the affected individuals and the OAIC in compliance with theNotifiable Data Breaches Scheme under the Privacy Act.
11. Privacy Impact Assessments
For projects that involve new or significantly changed ways of handling personal information, we conductPrivacy Impact Assessments (PIAs) to identify and mitigate potential privacy risks.
12. Changes to This Policy
We may update this Privacy Policy periodically. Any changes will be posted on our website and mobile applications with an updated effective date. Continued use of our services after changes constitute acceptance of the revised policy.
13. Complaints and Contact Us
If you believe we have breached your privacy rights, you can:
- Contact Us Directly: Provide details of your concern via email or mail.
- Formal Complaint: Submit your complaint in writing for a thorough investigation.
- Escalate to OAIC: If unsatisfied with our response, you can contact the OAIC.
- Email: admin@primemedic.com.au
- Phone: 1300090252 - Office, 0240444640 - Fax
- Address: 14 Withers Road, Kellyville NSW 2155
Office of the Australian Information Commissioner (OAIC): www.oaic.gov.au | Phone: 1300 363 992