01About this policy
This Privacy Policy explains how Meddent IT Pty Ltd (Meddent IT, we, us or our) handles personal information collected through this website, www.meddentit.com.au.
We are bound by the Privacy Act 1988 (Cth) and the thirteen Australian Privacy Principles (APPs) it contains. This policy is written to meet our obligation under APP 1 to tell you, clearly and up front, what we do with your information.
This policy covers this website only. Our platforms — SyncStaff, Local Health Care and Book My Chair — each publish their own privacy policy on their own site, and those policies govern any information you provide to them. See Our products have their own policies below.
By using this website you agree to your personal information being handled as set out in this policy. If you do not agree, please do not use the site or send us an enquiry.
02The information we collect
We keep collection to the minimum we need. Through this website we collect two kinds of information.
Information you give us. When you complete the enquiry form on our contact page, or email us directly, we collect:
- your name;
- your email address;
- the area of interest you select (for example a product demo, a listing enquiry, a partnership or a custom build); and
- anything else you choose to include in your message, which may include your phone number, your business name or details of your organisation.
Information collected automatically. Like almost every website, ours is served by a hosting provider that keeps technical logs of each request. These may record your IP address, your browser and device type, the pages you requested, the page that referred you and the date and time of the request. We use these logs to keep the site running, secure and fast. We do not use them to build a profile of you, and we do not attempt to identify you from them.
You can browse this website without telling us who you are. Under APP 2 you may also deal with us anonymously or under a pseudonym — though if you ask us a question and do not give us a way to reply, we will not be able to answer it.
03Health and other sensitive information
Please do not send health information or other sensitive information through this website. This is a corporate and marketing site. It is not a clinical system, it is not a patient portal, and the enquiry form is not a secure channel for personal health information.
Health information, and the other categories of sensitive information defined in the Privacy Act 1988 (Cth), attract additional protections. We do not seek to collect any of it here. If you send us sensitive information anyway, we will handle it in accordance with the APPs and will delete it once we have dealt with your enquiry, unless we are required to keep it.
If you are a patient, a client or a staff member of an organisation that uses one of our platforms, your information is handled under that platform’s own privacy policy and under your provider’s arrangements — not this one.
05How we use your information
We use the personal information we collect only to:
- respond to your enquiry and correspond with you about it;
- arrange and run a product demonstration, a listing, a partnership discussion or a consulting engagement you have asked about;
- provide the services you or your organisation engage us for, and issue and administer the related invoices;
- keep a record of what we discussed, so that we can pick up the conversation where it left off;
- operate, secure, troubleshoot and improve this website; and
- meet our legal, accounting and record-keeping obligations.
We do not use your information for automated decision-making, and we do not sell it. We will only send you marketing material if you have asked for it or would reasonably expect it, and every such message will carry an unsubscribe option that we act on promptly, consistent with the Spam Act 2003 (Cth).
If we ever want to use your information for a purpose you would not reasonably expect, we will ask for your consent first.
06When we disclose your information
We do not sell, rent or trade personal information. We disclose it only in these circumstances:
- Service providers.To the suppliers who help us run the business — website hosting, email, file storage, accounting and similar — and only so far as they need it to provide that service to us. They are required to protect it and to use it for no other purpose.
- Professional advisers. To our accountants, auditors, insurers and lawyers, where they need it to advise us.
- Where the law requires or permits it. To a court, regulator or law enforcement agency where we are required or authorised by law to disclose, or where disclosure is necessary to prevent a serious threat to life, health or safety.
- A business transfer. To a purchaser or successor if all or part of our business is sold or restructured, subject to them continuing to protect the information under the APPs.
- With your consent. Any other disclosure you agree to.
07Overseas disclosure
This website is hosted on Netlify, which serves pages from a global content delivery network. As a result, technical request logs and any message you send through the site may be stored on or transit servers located outside Australia, including in the United States and other countries in which our hosting and email providers operate.
Before disclosing personal information to an overseas recipient, APP 8 requires us to take reasonable steps to ensure that recipient does not breach the APPs. We do this by choosing established providers with published security and privacy commitments and by contracting with them on terms that require the information to be protected.
08Our products have their own policies
Meddent IT builds and operates three platforms: SyncStaff, Local Health Care and Book My Chair. Those platforms handle staff, patient and client information, and each publishes its own privacy policy on its own website.
This policy does not apply to them. If your question concerns information you gave to one of those platforms — a roster, a booking, a health record, a listing — please read the privacy policy published on that platform’s site, which is the policy that governs it.
The pages describing our products on this website are marketing material. Reading them collects nothing beyond the technical log information described above.
09Storage and security
We take reasonable steps to protect personal information from misuse, interference and loss, and from unauthorised access, modification or disclosure, as APP 11 requires. Those steps include encryption of the site in transit (HTTPS), access controls and multi-factor authentication on the systems that hold enquiry correspondence, restricting access to the staff who need it, and choosing reputable providers for hosting and email.
No method of transmission over the internet and no method of electronic storage is completely secure. While we work to protect your information, we cannot guarantee absolute security, and you send information to us over the internet at your own risk.
10Data breaches
We are covered by the Notifiable Data Breaches scheme in Part IIIC of the Privacy Act 1988 (Cth). If a data breach occurs that is likely to result in serious harm to any individual whose personal information is involved, we will contain and assess it promptly, notify the affected individuals, and notify the Office of the Australian Information Commissioner as the scheme requires.
11How long we keep information
We keep personal information only for as long as we need it for the purpose we collected it, or for as long as the law requires us to keep it — for example, records connected to a paid engagement are kept for the periods required by Australian tax and corporations law. When information is no longer needed and we are not required to retain it, we destroy it or de-identify it.
12Accessing and correcting your information
Under APP 12 and APP 13 you may ask us for a copy of the personal information we hold about you, and you may ask us to correct it if it is inaccurate, out of date, incomplete, irrelevant or misleading. You may also ask us to delete information we no longer need.
Email your request to [email protected]. We may need to verify your identity before we act on it. We will respond within a reasonable period — ordinarily within 30 days. Access is free; if a request takes substantial work we may charge a reasonable cost-based fee, and we will tell you what it is before we start. If we refuse access or a correction, we will tell you why in writing and how you can complain about that decision.
13Making a privacy complaint
If you believe we have breached the Australian Privacy Principles or mishandled your personal information, please tell us first. Email [email protected] with the details, marked for the attention of the Privacy Officer. We will acknowledge your complaint promptly, investigate it, and write to you with the outcome, ordinarily within 30 days.
If you are not satisfied with our response, you can refer the complaint to the Office of the Australian Information Commissioner: www.oaic.gov.au or 1300 363 992.
14Links to other websites
This website links to sites we do not control, including the sites for our own platforms and those of third parties. We are not responsible for the privacy practices or the content of those sites. This policy stops at the edge of this website, so we encourage you to read the privacy policy of any site you visit from here.
15Changes to this policy
We may update this policy from time to time to reflect changes in how we operate or in the law. The current version is always published on this page, and the “last updated” date at the top tells you when it last changed. Material changes will be made prospectively, and continuing to use the website after a change means you accept the updated policy.
16How to contact us
For any question about this policy, about the personal information we hold, or to make a privacy complaint, contact our Privacy Officer:
- Meddent IT Pty Ltd
- Email: [email protected]
- Web: www.meddentit.com.au/contact
We aim to reply within one business day.