Aunty Jane Privacy Policy
Effective Date: 1 January 2025
Company: Aunty Jane Pty Ltd (ACN 682 093 312)
Contact: info@auntyjanehealth.com
We do not train AI on information input or output by our Aunty Jane users.
1. Privacy Valuing
Privacy and Data Protection is at the core of Aunty Jane’s mission to deliver exceptional service while respecting the confidentiality and integrity of our users' information.
1.1 Privacy and Data Protection
We understand the sensitivity of the personal and medical data you entrust to us and are committed to protecting it with the highest standards of security and compliance.
1.2 We Value Privacy
This Privacy Policy applies to all personal information collected by Aunty Jane Health Pty Ltd via the website located at www.auntyjanehealth.com.au.
We place the utmost importance on protecting your privacy and your careful attention to security is also very important.
2. Information We Protect
Certain types of information are protected by law and there are regulatory guidelines on the types of information that can be collected and how it can be used.
2.1 What is "personal information"?
The Privacy Act 1988 (Cth) currently defines "personal information" as information or an opinion about an identified individual or an individual who is reasonably identifiable:
-
whether the information or opinion is true or not; and
-
whether the information or opinion is recorded in a material form or not.
If the information does not disclose your identity or enable your identity to be ascertained, it will in most cases not be classified as "personal information" and will not be subject to this privacy policy.
2.2 What is "sensitive information"?
Personal information can be collected without consent - unless it is sensitive information.
The Privacy Act 1988 (Cth) currently defines "sensitive information" as meaning information or an opinion about an identified individual or an individual who is reasonably identifiable regarding their:
-
Racial or ethnic origin;
-
Political opinions;
-
Membership of a political association;
-
Religious beliefs or affiliations;
-
Philosophical beliefs
-
Membership of a professional or trade association;
-
Membership of a trade union;
-
Sexual preferences or practices; or
-
Criminal record.
Sensitive information includes health information which is further legally regulated. Please note that in some cases sensitive information may only be collected with consent.
We are determined to protect your sensitive information and we will only collect such information where we make it clear that it is optional for you to input that information.
2.3 What is "health information"?
In the Australian Privacy Principles, "health information" is defined as information or an opinion about an identified individual or an individual who is reasonably identifiable including:
(i) the health or a disability (at any time) of an individual);
(ii) a health service provided, or to be provided, to an individual;
(iii) other personal information collected to provide, or in providing, a health service;
(iv) an individual's expressed wishes about the future provision of health service;
(v) other personal information about an individual collected in connection with the donation, or intended donation, by the individual of their body parts, organs or body substances;
(vi) genetic information about an individual in a form that is, or could be, predictive of the health of the individual or a genetic relative of the individual;
(vii) other types of genetic information that are not health information; or
(viii) any any information that is classified as ‘sensitive information’ as outlined above.
3. Information We Collect
We may collect personal information from you whenever you input such information into our platform.
3.1 Other Collection Methods
We collect cookies from your computer which enable us to tell when you use the website and also to help customise your website experience.
As a general rule, our cookies are carefully designed so it is not possible to personally identify you.
3.2 Information Types
The kind of personal information that we collect from you will depend on how you use our platform.
In line with the Australian Privacy Principles we endeavour to minimise the data we collect.
The personal information which we collect and hold about you may include:
Personal and Contact Information
(i) Your legal name
(ii) Date of birth
(iii) Current address, including postal address
(iv) Email address
(v) Contact number(s)
(vi) Gender
(vii) Ethnicity, including Aboriginal and/or Torres Strait Islander identification
(viii) Languages spoken
(ix) Country of citizenship and/or birth
Medical Information
(x) Pregnancy history
(xi) Allergy status
(xii) Previous medical procedure information, including type, location, and date
(xiii) Medical test results, including ultrasounds, blood, and urine tests
(xiv) Smoking status
(xv) Medicare number and/or Health Care Card number
(xvi) Emergency contact information
Healthcare Provider Details (if applicable)
(xvii) Your name (as a healthcare provider)
(xviii) Contact details
(xix) AHPRA registered field of practice
(xx) AHPRA registration number
(xxi) Workplace details (name, type, contact information, and location)
(xxii) AHPRA registration details (consolidated)
Administrative and Technical Information
(xxiii) Payment details
(xxiv) Tax file number
(xxv) Usage data when interacting with our platform
(xxvi) Cookies and tracking technologies used to enhance your website experience
4. Data Protection
We use tried and proven data encrypted to protect your health records and your personal information.
4.1 Data Encryption
We store your patients health information temporarily under multiple levels of 'strong encryption'.
4.2 Controlled Use
There are only two known circumstances where health information may leave the platform against a person's wishes:
(i) if your login details are compromised - it remains your responsibility to keep your own login details secure; and
(ii) if we are compelled to make such disclosures under a valid court order.
Please contact us if you have any related questions or concerns.
4.3 Data Protection
Data exploits are becoming increasingly common despite the best efforts of security experts, governments, and law enforcement agencies worldwide.
While we believe our encryption and other security measures will provide a high standard of protection, unknown circumstances could arise if previously new and novel security exploits were illegally used against the platform.
4.4 Proven Security Protection
The security methods we use are commonly deployed in the blockchain and cryptocurrency industry to securely protect many billions of dollars worth of investments.
There is currently no known way to break the 'strong encryption' (AES256) that we use to protect your data and this means your medical records and personal information are inaccessible to anyone except you while you are logged in.
4.5 Where Data is Stored
All personal and health information is only stored within Australia with multiple levels of encryption and can never be viewed by anyone other than you or those to whom you grant access - other than the limited exceptions outlined above.
4.6 Artificial Intelligence Constraints
Due to the nature of processing data through AI and Large Language Models, information must be temporarily within an unencrypted state. This is true of any Large Language Model.
We take multiple security measures to ensure that this state is cryptographically protected and never visible.
4.7 Data Collection and Use
We only collect information that is necessary to provide our services, including personal identification, health information, and usage data.
As discussed above, this information is used to personalise your experience, improve our platform, and communicate effectively about your care, and to let you know if there are any changes to our services.
4.8 Data Security
Our platform employs state-of-the-art security measures, including encryption, firewalls, and secure server facilities to protect your information from unauthorised access, disclosure, alteration, or destruction.
We regularly update our security practices and invest in our infrastructure to defend against emerging threats.
5. User Rights
You have the right to access, correct, or delete your personal information at any time.
5.1 Privacy Tools
Aunty Jane provides tools and settings to manage your data and privacy preferences, and we will also promptly inform you of any data breaches that may affect your personal information.
5.2 Consent and Control
Your privacy is respected at every level of our operations. We will not use or share your personal information without your explicit consent, except as required by law or to provide the services you have requested.
Please be assured that we respect your control and you can change your consent at any time.
5.3 Transparency and Communication
At Aunty Jane, we believe that transparency and open communication are foundational to building trust and accountability with our users.
We are dedicated to being clear about our practices, policies, and the choices available to our users.
6. Our Policies
We commit to clearly communicating with you about any changes to our policies or practices and will aim to do so in clear and understandable language.
6.1 Change Notification
Prior to changes taking effect, we will notify you through our platform, email, or other direct communication methods, allowing you to review the changes and make informed decisions.
Please periodically check to see if changes have been made as we may do so without notifying you.
6.2 User Feedback
We actively encourage and value feedback from our users as it plays a crucial role in our continuous improvement process.
You can contact us through multiple channels provided on our platform to share their feedback, concerns, or suggestions.
7. Ethical Standards
Aunty Jane is built on a foundation of integrity, respect for individual privacy, and the promotion of user welfare.
7.1 Our Ethical Commitments
Our commitment to ethical standards is unwavering, guiding our operations, our interactions with users, and our business practices.
7.2 Integrity in Operations
We conduct our business with the highest level of integrity, adhering to legal and ethical standards in all our operations.
This includes compliance with applicable healthcare, privacy, and data protection laws and regulations.
7.3 Respect and Dignity
We treat all users with respect and dignity, recognising the importance of their data and the trust they place in us.
That is why we aim to design our platform so it is inclusive, accessible, and free from discrimination.
7.4 User Welfare
Our primary concern is the welfare of our users. We strive to ensure that our platform not only meets their needs, but to also contribute positively to their health, safety, and privacy.
8. Accountability
We hold ourselves accountable for adhering to these ethical standards and we are committed to regular audits, user feedback, and continuous learning to uphold our ethical commitments.
8.1 Collection of Sensitive and Health Information
We collect sensitive and health information to allow temporary storage and retrieval where that is necessary for the effective delivery of healthcare services.
8.2 Access and Correction
Australian Privacy Principle 12 permits you to obtain access to the personal information we hold about you in certain circumstances, and Australian Privacy Principle 13 allows you to correct any inaccurate personal information subject to certain exceptions.
If you would like to obtain such access, please contact us.
8.3 Complaint Procedure
If you have a complaint concerning the manner in which we maintain the privacy of your personal information, please contact us as set out below.
8.4 Consultation
All complaints will be considered by Aunty Jane Pty Ltd and we may seek further information from you to clarify your concerns.
If we agree that your complaint is well founded, we will, in consultation with you, take appropriate steps to rectify the problem.
If you remain dissatisfied with the outcome, you may refer the matter to the Office of the Australian Information Commissioner.
8.5 Overseas Data Transfer
Your personal information will not be disclosed to recipients outside Australia unless you expressly request us to do so.
Please take care as if you request us to transfer your personal information to an overseas recipient, as any overseas recipient will not be required to comply with the Australian Privacy Principles.
Where we act on your instructions we will not be liable for any mishandling of your information in those circumstances.
9. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. Updates will be communicated through our website or direct communication. Please review this policy periodically.
10. Governing Law
This Privacy Policy is governed by the laws of Queensland, Australia. Any disputes will be handled in accordance with Australian laws.
Thank you for trusting Aunty Jane with your care. We are committed to protecting your privacy every step of the way.
If you have concerns about how we manage your privacy:
-
Contact us at info@auntyjanehealth.com.
-
We will review your complaint and consult with you to resolve it.
-
If unresolved, you can contact the Office of the Australian Information Commissioner (OAIC).
Comments
0 comments
Please sign in to leave a comment.