For Patients Using eHealth AustraliaOrganisation Telehealth Platform

Privacy Policy for Patients Using eHealth Australia Organisation Telehealth Platform

Effective Date: 26th February 2025

At eHealth Oz PTY LTD, trading as eHealth Australia Organisation (referred to as “we,” “our,” or “us”), we prioritize your privacy and the security of your personal and medical data. This Privacy Policy provides a comprehensive explanation of how we collect, use, store, and safeguard your personal and medical information when you use our telehealth services.

By accessing and using our telehealth platform, you consent to the collection, use, and processing of your data as described in this policy. If you do not agree with the terms of this policy, we kindly ask that you refrain from using our services. Your privacy is important to us, and we encourage you to read this policy thoroughly. If you have any questions or concerns, please reach out to us.


1. Company Information

If you have any questions about this Privacy Policy, your rights, or need assistance with your personal data, please feel free to contact us using the details above. We are committed to providing responsive support.


2. Information We Collect

To provide high-quality, safe, and effective telehealth services, we collect different categories of information. Each type of data plays a crucial role in ensuring accurate medical care, secure platform functionality, regulatory compliance, and an optimal user experience. Below is a breakdown of the key types of information we collect:


1. Personal Information

Personal information is the foundation of our ability to communicate with you, verify your identity, and provide seamless healthcare services. It enables us to maintain accurate records, facilitate medical consultations, and comply with legal and regulatory requirements.

We may collect the following personal details:

1.1. Full Name

1.2. Date of Birth

1.3. Contact Details (Email Address, Phone Number, Postal Address)

1.4. Medicare Card Number

1.5. Gender and Demographic Information

1.6. Emergency Contact Details

1.7. Preferred Language and Communication Preferences


2. Medical Information

Medical information is the core of our telehealth services. Without access to your health history, conditions, and treatments, it would be impossible to provide safe and effective medical care. The collection of medical data ensures accurate diagnoses, appropriate treatments, and seamless continuity of care.

2.1. Medical History (Past and Present Conditions, Treatments, Surgeries, Allergies, and Immunization Records)

2.2. Diagnoses Made by Healthcare Professionals During Telehealth Consultations

2.3. Prescriptions, Medications, and Dosages

2.4. Test Results, Including Laboratory Work, Imaging, and Diagnostic Reports

2.5. Health Conditions, Diagnoses, Treatment Plans, and Consultation Notes

2.6. Referrals, Specialist Recommendations, and Consultation Outcomes


3. Technical Information

Technical data is essential for maintaining the security, efficiency, and reliability of our telehealth platform. This information ensures smooth user experiences, detects potential cyber threats, and allows for troubleshooting issues.

3.1. IP Addresses

3.2. Device Type (Mobile, Tablet, Desktop)

3.3. Browser Type and Settings

3.4. Usage Patterns (Session Duration, Frequency, User Behavior)

3.5. Geolocation Information (If Applicable)

3.6. System Logs and Other Technical Data


3. Consent to Use Telehealth Services

By completing our registration process, submitting the required forms, and actively engaging with our telehealth platform, you explicitly provide informed consent to participate in telehealth consultations. This consent includes agreeing to the collection, use, storage, and processing of your personal and medical information in accordance with the terms outlined in this Privacy Policy. Your consent is fundamental to enabling us to deliver healthcare services through our telehealth platform in compliance with Australian privacy laws and healthcare regulations.

Voluntary Participation

Your participation in telehealth consultations is entirely voluntary. You are not under any obligation to utilize our services, and you retain the right to decline or discontinue telehealth consultations at any time. However, it is important to note that withdrawing your consent may restrict or prevent your access to our telehealth platform and may limit your ability to receive medical advice, prescriptions, referrals, and other healthcare services provided through our platform.

Scope of Consent & Data Processing

By providing consent, you acknowledge and agree that:

Withdrawal of Consent

You have the right to withdraw your consent for telehealth services and the processing of your personal and medical data at any time. To do so, you must submit a formal request via the contact details provided in this Privacy Policy. Upon withdrawal of consent:

We are committed to protecting your rights and ensuring transparency regarding your participation in our telehealth services. If you have any concerns or require further clarification about your consent, data processing, or your rights, we encourage you to contact us directly.


4. Use of Your Information

We are committed to ensuring that the personal and medical information we collect is used responsibly, securely, and only for legitimate healthcare-related purposes. Our primary goal is to provide you with the highest standard of telehealth services while maintaining compliance with Australian healthcare and privacy regulations. Specifically, we use your information for the following purposes:

1. Facilitating Telehealth Consultations

Your personal and medical information is essential for enabling high-quality telehealth consultations. We use your information to:

2. Maintaining and Updating Your Medical Records

A comprehensive and up-to-date medical record is critical for ensuring continuity of care. We securely store and manage:

Your medical records will be securely stored in accordance with Australian healthcare data retention laws and will be accessible to authorized healthcare providers when required.

3. Improving the Quality of Our Telehealth Services

We continuously strive to enhance our telehealth platform and services to ensure they remain effective, secure, and user-friendly. To achieve this, we may:

4. Communicating with You About Your Healthcare

We use your contact details to keep you informed about important healthcare-related matters, including:

5. Ensuring Legal and Regulatory Compliance

As a healthcare provider operating in Australia, we are required to comply with legal and regulatory obligations, including:

We are dedicated to ensuring that your information is handled with the highest level of confidentiality, security, and ethical responsibility. If you have any questions about how we use your information, you may contact us at any time for further clarification.


5. Storage and Protection of Your Information

We are committed to maintaining the highest standards of data security to safeguard your personal and medical information. Protecting your sensitive data is a top priority, and we employ multiple layers of security measures to prevent unauthorized access, data breaches, loss, or misuse. Our comprehensive data protection strategy includes industry-leading security protocols, strict access controls, and continuous monitoring to ensure compliance with Australian privacy laws, including the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

1. Data Encryption and Secure Transmission

We utilize advanced encryption protocols to protect your personal and medical information both during transmission and at rest:

2. Secure Servers and Data Storage

All data collected through our telehealth platform is stored on secure, encrypted servers that meet strict security and compliance standards, including ISO 27001 and Australian Government security requirements. Our data storage security measures include:

3. Strict Access Control and Authorization

Access to your personal and medical information is strictly restricted to authorized personnel only, ensuring that only those who have a legitimate need can access your data. Our access control measures include:

4. Regular Security Audits and Compliance Assessments

To maintain a high level of security, we conduct frequent security audits and assessments to identify vulnerabilities and ensure compliance with data protection regulations. Our security practices include:

5. Incident Response and Breach Notification

Despite our extensive security measures, no system is completely immune to potential breaches. In the unlikely event of a data breach, we have a robust incident response plan in place to:

6. Your Role in Protecting Your Information

While we take every precaution to protect your data, maintaining security also requires your active participation. To help keep your personal and medical information safe, we recommend that you:

Commitment to Continuous Security Enhancements

We are committed to continuously improving our security measures and staying ahead of emerging threats. By implementing the latest advancements in cybersecurity and adhering to industry best practices, we strive to provide a safe, secure, and reliable telehealth experience for all our users.

If you have any concerns about data security or believe your information may have been compromised, please contact us immediately using the details provided in this Privacy Policy.


6. Confidentiality

We recognize the sensitive and highly confidential nature of your personal and medical information and are committed to maintaining the strictest levels of privacy and security. Your information will only be shared in limited, specific circumstances where it is necessary to facilitate your healthcare, comply with legal obligations, or with your explicit consent. We ensure that all disclosures are carried out in accordance with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

1. Sharing Information with Your Explicit Consent

We will only share your personal and medical information with third parties when you have explicitly provided consent for such disclosure. Situations where your consent may be required include, but are not limited to:

2. Disclosure as Required by Law or Regulatory Obligations

In certain situations, we may be required by Australian law, government regulations, or legal proceedings to disclose your information, even without your explicit consent. These situations may include:

3. Sharing Information to Support Your Ongoing Care

To ensure that you receive comprehensive and uninterrupted healthcare services, we may need to share relevant medical information with other healthcare providers involved in your treatment. This is always done with your prior consent, unless an emergency situation requires immediate disclosure. Examples include:

4. Ensuring Secure and Confidential Information Sharing

When we share your data, we take rigorous precautions to protect your privacy and ensure that your information is only accessed by authorized personnel. Our security measures include:

5. Your Rights and Control Over Data Sharing

You have the right to control how your information is shared, including:

If you have any concerns about how your information is shared or wish to modify your data-sharing preferences, please contact us using the details provided in this Privacy Policy.


7. Legal Compliance

eHealth Oz PTY LTD, trading as eHealth Australia Organisation, is fully committed to adhering to all applicable Australian laws and regulations concerning the handling of your personal and medical information. By utilizing our telehealth services, you acknowledge and agree to the terms set forth in this section regarding the collection, use, storage, and disclosure of your data. The following laws, standards, and frameworks govern our practices in safeguarding your privacy and health data:

1. Privacy Act 1988 (Cth)

We operate in full compliance with the Privacy Act 1988 (Cth), which regulates the collection, use, disclosure, and storage of personal information. As part of this commitment, we adhere to the Australian Privacy Principles (APPs), which provide a set of standards for how we manage your personal and medical information. These principles ensure that your data is:

As part of our compliance with the Privacy Act, we provide you with rights regarding your personal information, including the right to access, correct, or request the deletion of your data in accordance with the law.

2. Australian Digital Health Agency (ADHA)

We strictly follow the guidelines, standards, and requirements set forth by the Australian Digital Health Agency (ADHA), which is responsible for overseeing the development and implementation of digital health systems in Australia. This includes ensuring that your health data is handled in accordance with the highest standards for digital health.

Our telehealth platform is designed to meet the requirements for privacy, security, and interoperability as prescribed by the ADHA. We also ensure that any data exchanged with other health services, including hospitals or specialists, complies with ADHA’s security and privacy standards.

Additionally, we comply with ADHA’s rules surrounding My Health Record, ensuring that your health data is managed in a secure, digital environment. This includes:

3. My Health Records Act 2012 (Cth)

We comply with the My Health Records Act 2012 (Cth), which governs the operation and management of the My Health Record system, a national digital health record system in Australia. Under this Act, we ensure that:

We commit to ensuring that all health data stored in the My Health Record system is handled securely, and that your privacy is maintained in compliance with the My Health Records Act. You have the ability to access and manage your records at any time via the My Health Record portal.


Legal Compliance and Data Protection

We prioritize the protection of your personal and medical information, and as such, we follow all applicable regulations, including those mentioned above. Our adherence to these laws ensures that:

By using our telehealth services, you consent to the collection, use, and disclosure of your personal and medical information as described in this Terms and Conditions section, subject to the protections afforded by the Privacy Act 1988 (Cth), the Australian Digital Health Agency (ADHA) guidelines, and the My Health Records Act 2012 (Cth).


8. Changes to This Privacy Policy

We reserve the right to update or modify this Privacy Policy at any time. Any changes will be posted on our website, and the updated version will take effect immediately upon posting, along with the updated effective date.

We encourage you to periodically review this Privacy Policy for any updates or modifications. If you have any questions or concerns about changes to this policy, please do not hesitate to contact us.


9. Your Rights and Choices

As a patient, you have important rights regarding the collection, storage, use, and disclosure of your personal and medical information. We are committed to upholding these rights in compliance with Australian privacy laws, including the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). Your rights include the following:

Right to Access

You have the right to request access to the personal and medical information we hold about you. This means you can obtain a copy of your medical records, including consultation notes, test results, diagnoses, prescriptions, and any other relevant health information. To request access, you will need to submit a formal request through the contact details provided above. In some cases, we may require identity verification to ensure your data is protected. While we aim to process access requests promptly, certain legal and operational considerations may apply, and in rare instances, access may be restricted if disclosure would pose a serious risk to your health or another individual’s safety.

Right to Correction

If you believe that any of your personal or medical information is inaccurate, outdated, or incomplete, you have the right to request that we correct or update it. Maintaining accurate medical records is crucial for ensuring high-quality care, and we encourage you to notify us of any necessary changes, such as a change in your name, contact details, medical history, or current treatment. You can make a correction request by contacting us directly. In cases where we are unable to amend certain details due to medical or legal reasons, we will provide an explanation outlining the reasons for our decision.

Right to Deletion (Right to be Forgotten)

Under specific circumstances, you may request that we delete or permanently de-identify your personal and medical information. This right applies if you no longer wish to use our services, if the information is no longer necessary for the purposes for which it was collected, or if you withdraw your consent. However, please note that certain legal and regulatory obligations may require us to retain some or all of your health information for a specified period. For example, under Australian healthcare regulations, medical records must generally be retained for a minimum of seven years from the last consultation (or longer for minors). If we are legally required to retain your information, we will inform you of the reasons for this.

Right to Withdraw Consent

You have the right to withdraw your consent regarding the collection, processing, or sharing of your personal and medical information at any time. If you choose to withdraw your consent, this may impact your ability to access our telehealth services, as we require certain personal and medical details to provide safe and effective care. To withdraw consent, please contact us using the provided details, and we will process your request promptly. Keep in mind that withdrawing consent does not affect the lawfulness of any data processing conducted prior to your request.

If you have any questions regarding your privacy rights or wish to exercise any of these rights, please reach out to us at admin@ehealthaustralia.org. We are committed to safeguarding your privacy and ensuring transparency in how your information is managed.


10. Contact Us

We value your trust and take your health and privacy seriously. If you have any questions or concerns about this Privacy Policy or how your personal and medical information is handled, please contact us at:

Our team is happy to assist you and ensure that your concerns are addressed.


11. Acknowledgment and Consent

By completing our registration forms and accessing our telehealth services, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and storage of your personal and medical information as described herein.

If you have any questions or wish to withdraw your consent, please contact us directly.


Note: This Privacy Policy is subject to change at our discretion. Please review this document regularly to stay informed about how we protect and manage your data.


We thank you for choosing eHealth Australia Organisation. Your health and privacy are our top priority, and we are committed to delivering secure and trusted healthcare services.