Privacy Policy
Last updated: 13 May 2025
Sunrise Endocrinology is committed to protecting the privacy of patient information and to handling your personal information in a responsible manner. We comply with:
-
The Privacy Act 1988 (Cth)
-
The Australian Privacy Principles (APPs)
-
The Privacy Amendment (Enhancing Privacy Protection) Act 2012
-
The Health Records and Information Privacy Act 2002 (NSW) and its Health Privacy Principles (HPPs)
This Privacy Policy explains how we collect, use and disclose your personal information, how you may access and correct that information, and how to lodge a complaint if you believe your privacy has been breached.
1. Collection of Personal and Health Information
We collect information that is necessary to provide you with safe and effective healthcare and to manage our medical practice. This includes:
-
Your name, date of birth, address, contact details, Medicare number, and health fund information
-
Medical history, medications, allergies, family history, lifestyle factors, and any relevant test results
-
Information collected from other healthcare providers (e.g., specialists, radiologists, hospitals)
-
Payment details including credit card or direct debit information (if applicable)
Where practicable, we collect this information directly from you. We may also collect it:
-
From other health providers (with your consent or as permitted by law)
-
Through telehealth consultations, online forms, phone calls, or written correspondence
-
In emergency situations, from your relatives or carers
In accordance with legal requirements, we retain medical records for at least 7 years from the last date of service, or until a child turns 25, whichever is longer.
2. Legal Basis for Collection
We collect your personal and health information under the following lawful bases:
-
To provide medical treatment and healthcare services
-
To comply with our legal obligations
-
With your informed consent
-
In some circumstances, in the public interest or to prevent serious threats to health or safety
3. Use and Disclosure
Your personal information is treated as strictly confidential and is only used or disclosed for purposes directly related to your care, or for other purposes you would reasonably expect. Examples include:
-
Sharing test results with your referring doctor or treating specialist
-
Uploading or accessing information via the My Health Record system (if you are enrolled)
-
Administrative purposes, including appointment reminders, billing, and referrals
We may also disclose your information where permitted or required by law, including to:
-
Medicare, private health funds, insurers, government agencies, or regulatory bodies
-
Courts, tribunals, police, or law enforcement where legally obligated
-
IT service providers, auditors, legal or financial advisors, or debt collection agents
-
The My Health Record system or electronic prescribing platforms
De-identified information may be used for research or reporting purposes. Identifiable health data will only be shared for research with your explicit written consent.
4. My Health Record Participation
If you are registered for the My Health Record, we may upload relevant clinical information to your record in accordance with your preferences. You may manage access or opt out of the My Health Record at any time by visiting www.myhealthrecord.gov.au.
5. Telehealth Consultations
Our practice offers telehealth consultations. In some cases, and only with your explicit informed consent, your consultation may be audio-recorded to assist in generating accurate clinical documentation using AI-powered tools.
-
You will always be informed in advance if recording is being considered.
-
You can decline to be recorded without any impact on your care.
-
Recordings are securely stored and used only for clinical documentation by your treating doctor.
6. Use of AI-Powered Clinical Note Generation Tools
Some of our practitioners use AI-assisted tools to help prepare clinical notes from recorded consultations. These tools process the audio recording to generate a summary, which is reviewed, edited, and approved by your treating doctor.
-
The tools are used solely to enhance the accuracy and efficiency of note-taking.
-
Recordings and any generated content are stored securely, and access is restricted to authorised staff.
-
Your information is not shared with external parties beyond those directly involved in your care.
Participation in this process is voluntary. Your doctor will seek your consent before recording any consultation, and you may withdraw your consent at any time.
7. Data Quality and Security
We take reasonable steps to ensure your information is accurate, complete, and up to date. This includes confirming your contact details at each visit. Please notify us of any changes to your information.
To protect your data, we use:
-
Secure premises with restricted access
-
Password-protected electronic systems with access controls
-
Locked storage for physical medical records
-
Confidentiality agreements with staff and third-party contractors
8. Access to Medical Records
You are entitled to access the personal information we hold about you. Requests must be made in writing. We will respond within 30 days, as required by law.
An administrative fee may apply to cover the cost of copying or retrieving your records.
In limited circumstances, access may be denied (e.g., if it poses a serious threat to your health or safety). We will explain the reasons for any refusal and your options for further action.
9. Correction of Information
If you believe the information we hold about you is inaccurate, incomplete, or out of date, you may request a correction by contacting us in writing. We will take reasonable steps to update your record promptly.
10. Overseas Transfer of Information
We do not transfer personal information outside Australia unless:
-
You have provided your consent, or
-
It is required by law
Where information is transferred overseas, we will take reasonable steps to ensure that the recipient handles it in accordance with Australian privacy standards.
11. Complaints
If you have a concern or complaint about the privacy of your personal information, including how we use the My Health Record, please contact our Privacy Officer in writing. We will respond promptly and aim to resolve the issue in accordance with our internal complaints handling procedures.
If you remain dissatisfied, you may contact:
-
Office of the Australian Information Commissioner (OAIC): www.oaic.gov.au or 1300 363 992
-
NSW Information and Privacy Commission (IPC): www.ipc.nsw.gov.au or 1800 472 679
12. Policy Updates
We may update this policy from time to time to reflect changes in laws or our practices. The latest version is available on our website or upon request.
13. Contact Information
Privacy Officer – Sunrise Endocrinology
📍 Suite 203, Level 2, South Tower, 1-5 Railway Street, Chatswood NSW 2067
📧 reception@sunriseendo.com.au
📞 +61 2 9159 9158