Data Protection & Privacy Statement

Your information and GDPR
Ciara Fahy Physical Therapy gathers personal details and health-related information about our patients. Medical information falls under the category of sensitive data, known as special category data, according to the General Data Protection Regulations (GDPR) implemented on May 25, 2018. This document outlines our policies and procedures concerning the handling of your personal and medical information within our clinic.

 

Who we are

We, Ciara Fahy Physical Therapy, located in Ennistymon, County Clare, are herein referred to as 'the Clinic' for the purposes of this privacy notice. Our operations are governed by GDPR legislation, the Irish Association of Physical Therapists (IAPT) code of conduct, and we adhere to the Code of Professional Conduct and Ethics established by CORU, the statutory regulator of physiotherapists in Ireland.

What type of data do we collect?

At Ciara Fahy Physical Therapy, we gather two main types of data:

Personal Data: This includes information such as your Name, Address, Date of Birth, Gender, Phone Number, Email address, Family members, and Insurance Provider.

Medical Information or Health Data: This encompasses details like medical notes, health issues, medications, test results, reports exchanged with other health professionals, referral letters, medico-legal data, and other health-related correspondence."

Why We Collect Your Information:

The collection of personal and medical data is essential to provide you, the patient, with optimal physiotherapy care. Here's how specific information is utilized:

Date of Birth: Serves as a unique identifier for your records.

Postal Address: Enables us to send invoices, receipts, statements, or other requested information to your physical location.

Telephone Number: Facilitates the sending of text reminders for appointments and communication outside of scheduled appointment times.

Email Address: Allows us to communicate essential details such as booking confirmations, appointment reminders, invoices, receipts, statements, personalized exercise programs, or other requested information.

Next of Kin Contact Details: Informs us of who to contact in case of an emergency.

Health Information: Helps conduct a detailed and accurate physiotherapy assessment, leading to the development of an appropriate physiotherapy plan.

Occupation: Requested to understand if occupational factors may contribute to musculoskeletal problems.

Hobbies: Requested to identify any physical factors that might contribute to musculoskeletal issues.

Who has access to your Personal Information?

Access to your personal information is limited to pertinent staff members who are bound by professional ethics and/or confidentiality agreements. In addition, we engage the services of a website developer and IT support provider to enhance the security of our website and IT systems. These external providers are also contractually bound by the terms outlined in GDPR legislation, ensuring the protection and lawful handling of your personal information.

Do We Share Your Personal Information?

Your personal information will not be disclosed to any individuals or entities outside of 'the clinic' unless you provide explicit consent, except in cases where disclosure is legally required, in your best interest when you are unable to provide consent, or when it is in the public interest to prevent serious harm to others.

Right of Access to Your Information:

You are entitled to access all the personal information held about you by Ciara Fahy Physical Therapy. To obtain a copy of your medical records, you can submit a formal, written access request.

Your Right to Restrict Information:

You also have the right to request the restriction of information we hold about you.

Data Retention Period:

We retain a patient's personal information and medical records for a duration of 7 years following their last treatment or, in the case of death, until the date of passing. For minors, personal data is retained until they reach the age of 18, and then for an additional 25 years.

How We Use Your Personal Data:

To provide optimal service to our patients and respond to website inquiries, we process specific information about you, obtained through the above mentioned methods. Personal data is used within the defined purposes of use, and client details are stored in our clinic software management system for communication purposes. This information is retained as long as you are a client, and if you choose to discontinue our services, your details will be deleted within 6 months of notification.

Cookies:

This site employs cookies, small text files placed on an internet user's hard drive, to enhance user experience. Cookies store preferences, facilitate tasks like shopping carts, and provide anonymized tracking data to third-party applications such as Google Analytics. While cookies generally improve browsing, you have the option to disable them in your browser settings. We suggest consulting the Help section of your browser or taking a look at the About Cookies website which offers guidance for all modern browsers

 

GDPR:

The General Data Protection Regulation (GDPR) safeguards the rights of EU data subjects, aiming to protect personal data and ensure its lawful processing, movement, and storage. Even after providing your data, you retain various rights. Ciara Fahy Physical Therapy respects these rights and complies with GDPR regulations.

How We Store Your Information:

Received data is treated confidentially, ensuring information collection and storage maintain your identity's integrity. Medical data is securely stored and not disclosed to third parties without your knowledge and consent. We use Writeupp, a GDPR compliant patient management system, for recording personal and medical information. Writeupp employs robust access and security measures. Additionally, we utilize Rehab Guru, a GDPR-compliant digital exercise platform, to send exercise programmes, storing your name and email address securely.

In the unlikely event of a data breach, you will be notified immediately as will the Data Protection Commissioner.

Consent

By agreeing to this privacy notice you are consenting to the Clinic processing your personal data for the purposes outlined above. You have the right to withdraw consent at any time.

In the event that you do not consent to this policy

We require consent from the patient for us to collect and store their personal and medical data, in accordance with this Data Protection Policy. In the event that you do not wish to consent to this policy, we regret that we will be unable to provide you with physiotherapy services.

 

Scroll to Top