The trusted
technology
at the heart of
the Healthcare
Community
Privacy Notice
Policy of Healthcode Limited in respect to customer confidentiality and security of information
It is the policy of Healthcode Limited ("Healthcode"), supported by its board of directors, to take steps to seek to ensure that information held about its customers and their business is kept confidential and secure.
In implementing this policy the steps taken by Healthcode include the following:
- Implementing procedures to comply with all relevant statutory requirements and monitoring internal procedures periodically to ensure that there is such compliance;
- Implementing and complying with the Data Protection Act 1998 (see our policy in relation to Data Protection);
- Making all officers of Healthcode, its employees and sub-contractors aware of the rules and procedures laid down by Healthcode from time to time in respect to the security of information and the importance of confidentiality. Officers of Healthcode, employees and sub-contractors have a duty to follow the rules laid down by Healthcode and to co-operate with Healthcode to ensure that this policy is effective. Healthcode will where it considers it appropriate take disciplinary action against any officer or employee who fails to comply with these rules and procedures;
- Taking measures to ensure the proper training, supervision and instruction of employees dealing with confidential information relating to customers;
- Requiring all sub-contractors to enter into confidentiality agreements in respect to information they acquire from Healthcode;
- Establishing a committee chaired by a Healthcode director to review confidentiality and security arrangements on a regular basis and to put in place measures to maintain and, where possible, improve information security.
It is Healthcode's policy to follow the Code of practice for information security management systems set out in ISO/ISE 27001.
Healthcode is owned jointly by Aviva, AXA PPPh, Bupa, Nuffield Hospitals, and Pruhealth and is aware of the sensitivities of customers who may be competitors of all or any of such companies. The directors of Healthcode, whether they are employees or officers of competitor companies or not, are aware that any information they acquire in their capacity as Healthcode directors must only be used for the purposes of Healthcode supplying services to its customers and not disclosed or used for any other purpose to the detriment of Healthcode's customers.
Scope
Healthcode Limited ("Healthcode") is committed to dealing with personal data in the spirit of the Data Protection Act 1998 ("the Act") and protecting personal privacy in accordance with the law. This statement applies to data Healthcode process on behalf of various parties (known as data controllers) and data collected by Healthcode Ltd and processed at our offices at Swan Court, Watermans Business Park, Kingsbury Crescent, Staines, Surrey, TW18 3BA, UK and (under contract) at the sites of data processors and third parties appointed by us.
Personal Information
Healthcode as data controller
- We maintain e-mail and offline contact information of our customers and prospects (contacts) preferably in their place of business collected from registering with Healthcode.
- We maintain where available information relevant to each contact's corporate affiliation, including position titles and name of company.
- We maintain our contact information in a secure environment to prevent unauthorised use.
- We do not pass your information to any third party companies for marketing and promotional purposes.
Healthcode as data processor
In providing our services Healthcode acts as a data processor on behalf of various parties (medical specialists, hospitals and insurers). These parties are the data controller for personal data generated by using our services.
- We maintain personal information, patient history and information required to process claims on behalf of various parties (medical specialists, hospitals and insurers) received by the data controller.
- We maintain the personal information received from the data controller in a secure environment to prevent unauthorised use.
- We do not pass this information on to any companies for marketing and promotional purposes.
Uses
Healthcode as data controller
- We use the information collected from our registration and subscription process to deliver information regarding the activities of Healthcode including marketing information regarding our services.
- We use the information to manage communication between contacts (you) and Healthcode.
- Data will be processed in accordance with the laws of the United Kingdom.
Healthcode as data processor
- Where Healthcode receives or otherwise processes personal data within the meaning of the Act, Healthcode will only process that data to the extent needed in order to provide its services: which can be:
- to facilitate the electronic payment of medical bills
- to provide practice management tools
- Healthcode do not share or otherwise disclose the data with any other party nor do we process it or any other purposes other than the above mentioned.
- Healthcode will not retain the personal data for longer than is necessary to provide the service or to comply with the contractual obligations imposed on use by the data controllers.
Visitors to our websites
When someone visits www.uat.healthcode.co.uk we collect standard internet log information and details of visitor behaviour patterns. We do this to find out things such as the number of visitors to the various parts of the site. We collect this information in a way which does not identify anyone. We do not make any attempt to find out the identities of those visiting either our websites (www.uat.healthcode.co.uk or www.uat.veda.healthcode.co.uk). We will not associate any data gathered from this site with any personally identifying information from any source. If we do not want to collect personally identifiable information through our website, we will be up front about this. We will make it clear when we collect personal information and will explain what we intend to do with it.
Use of cookies by Healthcode
Cookies are small text files that are placed on your computer by websites that you visit. They are widely used in order to make websites work, or work more efficiently, as well as to provide information to the owners of the site.
The table below explains the cookies we use and why:
| Cookie | Name | Purpose | More information |
| Google Analytics |
_utma _utmb _utmc _utmz |
These cookies are used to collect information about how visitors use our site. We use the information to compile reports and to help us improve the site. The cookies collect information in an anonymous form, including the number of visitors to the site, where visitors have come to the site from and the pages they visited. | Click here for an overview of privacy at Google |
| Healthcode Permanent Preference site cookie acceptance | true or false |
In order for Healthcode to store your preference permanently we will need to set a cookie. This cookie will only contain a "true" or "false" value and nothing more. It is only used to store your preference for this site. Storing your preference permanently will simply stop you being asked this question each time you visit the site but will not effect your ability to use it. |
|
| Session cookie | JSESSIOND | These enable you to carry out some essential functions on our site, such as maintaining log in details for the session or a transaction. They also help by minimising the need to transfer information across the internet. They are not stored on your computer and they expire when you terminate your browser session. |
Most web browsers allow some control of most cookies through the browser settings. To find out more about cookies, including how to see what cookies have been set and how to manage and delete them, visit www.allaboutcookies.org.
To opt out of being tracked by Google Analytics across all websites visit https://tools.google.com/dlpage.gaoptout.
Youtube cookies
We embed videos from our official YouTube channel which may set cookies on your computer once you click on the YouTube video player, but YouTube will not store personally-identifiable cookie information for playbacks of embedded videos. To find out more please visit YouTub'es embedding information page.
Links
Where there are links from the Healthcode website, Healthcode emphasises that it has no control over these sites, their content or the way in which they collect or use personal data. If you follow links to other sites from our website your data will be subject to the privacy policies of those sites. Healthcode therefore strongly advises users to check the privacy policy on any site they visit.
Security
We endeavour to take all reasonable steps to protect your personal information. All the data collected by us and data processed on behalf of various third parties is stored on a secure server. Our security includes the use of user authentication (username and password) 128-bit encryption and the use of secure direct lines to insurers.
Your Choices
- You may opt out of receiving information from us by e-mail, telephone, fax or post.
- To exercise either choice, indicate your wishes on the registration form or call: 01784 263 150, or indicate your wishes by email to custserv@healthcode.co.uk
You may request a copy of the information held about you by writing to: Healthcode Ltd, Swan Court, Watermans Business Park, Kingsbury Crescent, Staines, Surrey, TW18 3BA.
How to reach us
Our telephone and email contact details are:
Healthcode Ltd
Tel +44 (0) 1784 263150
Fax +44 (0) 1784 263155
or email custserv@healthcode.co.uk

