TSH’s amended Privacy Policy (Policy) complies with the Privacy Act 1988 (Cth) (Privacy Act) and the Australian Privacy Principles (APPs). The Policy clearly sets out the data collection, use and disclosure practices of TSH as we have understood it from our research.
The Skin & Cancer Foundation Australia (ACN 001 578 105) trading as The Skin Hospital (The Hospital, we, us, our) is committed to protecting the privacy of individuals (you, yours). The Hospital is subject to the Privacy Act 1988 (Cth) (Privacy Act), the Australian Privacy Principles (APPs) and the Health Records and Information Privacy Act 2002 (NSW).
The Hospital is committed to protecting the privacy of the personal information and sensitive information of individuals which it collects. This Privacy Policy (Policy) sets out the scope of The Hospital’s commitment to data privacy and provides a clear statement of how personal information will be managed by The Hospital.
This Policy covers the collection, use, disclosure and storage of all personal information provided to us and explains:
In this Policy we use the following terms:
Personal information means information or an opinion about an identified individual, or an individual who is reasonably identifiable whether the information or opinion is:
Sensitive information means personal information or an opinion about an individual’s:
Health information is personal information or an opinion about:
All staff at The Hospital are responsible for ensuring compliance with this Policy.
The Hospital will only collect information which is necessary to facilitate provision of health care services by a member of The Hospital to you or to manage, conduct and oversee the Hospital’s businesses. This may include (as applicable):
If you provide sensitive information to us voluntarily, you consent to us collecting this information.
Where possible and practicable, you will have the option to deal with The Hospital on an anonymous basis or by using a pseudonym. However, if the personal information you provide us is incomplete or inaccurate, we may not be able to provide the assistance or support you are seeking, or deal with you effectively.
You don’t have to give us all the information we request. However, if you do not provide us with some or all of the personal information required, we may not be able to provide you with services or information you request, to the requested standard or at all. You may also miss out on receiving valuable information about us and our services.
We will usually collect your personal information directly from you, including in person, by phone, our website and through the General Patient Consent Form and patient photographs. Sometimes we may need to collect information about you from third parties, such as:
We will only collect information from third parties where:
The Hospital only use, holds and discloses your personal information for the purpose for which it was collected by us (primary purpose), unless:
The primary purpose may include to:
The Hospital will confine its disclosure of your personal information to the primary purpose for which that information has been collected, or for a related secondary purpose. This includes when disclosure is necessary for a member of The Hospital to provide health care services to you, to help us manage, conduct and oversee the Hospital’s businesses, or for security reasons. We may provide your personal information to:
Where we engage third party service providers, we may disclose personal information to those service providers who may use, process and/or store that information locally. In circumstances where a third party may be based or have servers located overseas, we will take all reasonable steps to ensure that your information is only disclosed and used for authorised purposes and adequately protected using the appropriate technical, organisational, contractual and other lawful means. Currently, The Hospital discloses personal information provided by referral from doctors to servers located in Japan.
We require that all third parties, to whom we disclose personal information or who may have access to personal information, to have appropriate controls to protect your personal information in a manner that is consistent with our Privacy Policy, including in relation to security and confidentiality. They must only process your personal information for authorised purposes.
A ‘cookie’ is a small data file placed on your machine or device which lets The Hospital identify and interact more effectively with your computer. Cookies are industry standard and are used by most websites, including those operated by The Hospital. Cookies can facilitate a user’s ongoing access to and use of a website. Cookies allow The Hospital to customise our website to the needs of our users. If you do not want information collected through the use of cookies, there is a simple procedure in most browsers that allows you to deny or accept the cookie feature. However, cookies may be necessary to provide you with some features of our on-line services via the Hospital website.
The Hospital may provide links to third party websites. These linked sites may not be under our control and the Hospital is not responsible for the content or privacy practices employed by those websites. Before disclosing your personal information on any other website, we recommend that you carefully read the terms and conditions of use and privacy statement of the relevant website.
You have a right to access your personal information which The Hospital holds about you. If you make a request to access your personal information, we will ask you to verify your identity and specify the information you require. You can also request an amendment to any of your personal information if you consider that it contains inaccurate information.
You can contact The Hospital Privacy Officer about any privacy issues using the Contact details below.
While The Hospital aims to meet all requests for access to personal information, in a small number of cases and where permitted to do so by law, The Hospital may not give access or may do so only under conditions. Subject to applicable laws, The Hospital may destroy records containing personal information when the record is no longer required by The Hospital.
If you have a complaint about the Hospital’s information handling practices or consider we have breached your privacy, you can lodge a complaint with:
The Hospital deals with all complaints in a fair and efficient manner.
If you wish to contact us to make an inquiry or notify us of any complaints, our details are as follows: