This Privacy Policy outlines the commitment of Sorsix to its users and patients in regard to the manner in which Sorsix collects and processes their personal data. It describes: i) why we collect personal data; ii) the nature and extend of our data collection and processing activities; iii) how we look after the personal data collected on users and patients; and iv) the rights users and patients have towards Sorsix, as a controller or processor of their data. At Sorsix, our mission is solving human health, and our products and services are delivered to further this mission for our users. Nothing is more important to us than the health of our patients – it is our purpose. Sharing of information between healthcare providers is an essential part of effective delivery of healthcare, and for this reason we are often the conduit of information being shared between different service providers in the healthcare system. Therefore, the nature of our products and services involves the collection and distribution of sensitive information such as health data, well as other personal data.
Having in mind the sensitivity of such information we have undertaken the commitment to build in data protection in each of the product we design, while also taking the extra effort to ensure an environment with high levels of technical and organizational measures for data protection. This Privacy Policy is intended as an additional statement of these commitments and in no way supersedes the rights of users and patients afforded by the legislation in the jurisdictions in which we operate.
By using our products or services, you agree to the terms of this Privacy Policy. Please read more about our Privacy Policy bellow.
Personal data collected through the use of our products and services is used to deliver health services to our users or to facilitate the delivery of health services by our users to their patients.
With that general purpose in mind, we may use the collected personal data for the following particular purposes:
For the purposes listed in heading I of this Privacy Policy, we may collect personally identifiable data, including health data. This may include the following personal data categories:
In the course of providing our services, we collect the personal data in the following manner:
All of the platforms and services operated by Sorsix have been created to meet the principles of data protection by design and default.
While taking into account state of the art, and the nature, scope and purposes of the processing, as well as the risks of varying likelihood and severity for rights and freedoms of natural persons posed by the processing, Sorsix implements a high level of technical and organisational measures of data protection.
Details about Sorsix security practices are available in our Security Policy.
Sorsix does not disclose any of your data, except to provide the services for which the personal data has been collected or if the disclosure is demanded by a competent government authority.
Sorsix may disclose your data to third parties only in the following cases and under the following conditions:
Sorsix will generally retain data for as long as required to provide services, or comply with Sorsix legal obligations, resolve disputes, or enforce legal agreements.
Data deleted from Sorsix servers may remain as residual copies on offsite backup media for approximately 12 months afterwards.
Personal information that is no longer being used but cannot be disposed of under the Public Records Act will be archived, in a manner that ensures confidentiality and security. All archiving and disposal must also be in accordance with relevant Sorsix records Policies.
When using our products and services, the ultimate owner of personal health information is the person whose health is in question.
Therefore, you have the right to request Sorsix to:
Please contact Sorsix with any request you might have in regarding the data we process about you at our e-mail address [email protected].
Based on the submitted request, these rights will be provided to you as soon as possible, unless this is not possible due to certain legal or contractual restrictions or practical circumstances.
Sorsix collects and processes your data based on your consent as a user of our platforms and services.
You may terminate this consent by informing Sorsix of this termination on our e-mail address [email protected].
Sorsix and its employees comply with the legal framework on personal data protection and privacy in the jurisdictions in which they operate, as follows:
In addition, specific rules in relation to health information are set out in the Health Information Privacy Codes (HIPC). These Codes are codes of practice under the Privacy Acts that apply specifically to health information. It sets out specific rules for agencies in the health sector and covers information collected, used, held, and disclosed by health agencies.
Suppose you believe that by collecting or processing your data, Sorsix has violated any of your rights. In that case, you can submit a redress of grievances directly to Sorsix at our e-mail address [email protected] or you can submit a request for protection of your rights to the competent supervisory bodies as follows:
Upon your request, Sorsix will provide you with additional information on (i) our processing objectives; (ii) categories of personal data being processed; (iii) users or categories of users to whom personal data have been disclosed or will be disclosed; (iv) the estimated period for which the personal data will be kept and, if this is not possible, the criteria used to determine that period; (v) information on how to exercise your right to correct or delete personal data or to restrict the processing of personal data, or the right to object to any processing; (vi) information on how to exercise your right to submit a request for right's protection to the competent supervisory authorities; and (vii) the existence of an automated decision-making process, including profiling.
Please contact Sorsix with a request or the above-cited information at our e-mail address [email protected].
Sorsix may modify this Privacy Policy at any time. If we do so, we will notify all users and post the updated version on our website. The updated version will take effect from the date stated at the top of the Privacy Policy.
For any changes to this Privacy Policy for which the customer is required to provide prior consent, Sorsix will give reasonable notice of such changes before they become effective and provide the opportunity to consent to those changes.