The right of privacy is well established in the South African Constitution which states that everyone has the right to privacy. The Protection of Personal Information Act No. 4 of 2013 (“POPIA”) is aimed at facilitating the protection of this important right.
In terms of POPIA, Dr. Suriette
Botha – Chiropractor qualifies as a “Responsible Party” that “Processes”
“Personal Information” for “Data Subjects” (i.e. you as the patient). Therefore,
we are required to inform you how we use, disclose and destroy Personal
Information we obtain from you.
We are committed to
protecting your privacy and will ensure that your Personal Information is used
appropriately, transparently, and according to the applicable laws of the
Republic of South Africa.
WHAT IS PERSONAL INFORMATION?
Personal information means
information relating to an identifiable, living, natural person, and where it
is applicable, an identifiable, existing juristic person.
WHAT PERSONAL INFORMATION IS COLLECTED?
When you visit, browse, register, or
interact through this practice or the practice’s website, the following
personal information about you may be collected:
- Name and Surname
- ID/Passport Number
- Contact details
- Email address
- Health information
- Information relating to
your computer’s Internet Protocol (IP) address, browser type, browser version,
the pages of our website that you visit, the date and time of your visit, the
duration of time spent on the website pages, and other applicable statistics.
Personal information may also be
collected from you directly during your intake consultation, or ongoing
Where the law requires that
information regarding certain diseases be notified to the authorities, this
practice will do so without delay.
This practice may also collect, use
and share aggregated data such as statistical or demographic data for any
Aggregated data may be derived from
your personal information, but is not considered personal information in law as
this information does not, directly or indirectly, reveal your identity.
PURPOSES FOR WHICH THIS PRACTICE USES YOUR PERSONAL
information collected from you may be processed for, amongst others, the
- To provide you with
healthcare treatment or services;
- To make an online
- To assess your health
- To assess any medical
treatment you may require;
- To process
- For statistical and research purposes;
- To diagnose and attend to
technical issues, support and user queries;
- To comply with legislative
- To process your application for a vacancy; or
- To detect, prevent or deal with actual or alleged fraud,
security breach, or the abuse, misuse or unauthorised use of the website and/or
CATEGORIES OF PERSONAL INFORMATION
This practice processes many
different categories of personal information including, but not limited to:
- Contact details, such as
phone numbers, physical and postal addresses, and email addresses;
- Personal details, such as
names, family information, and ages;
- Demographical details,
such as race and age groups;
- Health information;
- In some cases biometric
- Financial information,
such as account numbers;
- Special personal
information as it may relate to your medical treatment;
- Market intelligence
information that may relate to your well-being;
- Medical scheme
information; and Background information.
PROTECTION OF YOUR PERSONAL INFORMATION
This practice takes the security of
your personal information very seriously.
This practice recognises the vital
role that information technology plays in its daily operations, and the
reliance placed on IT systems in processing personal information.
Although absolute security cannot be
guaranteed, this practice will take reasonable technical and organisational
measures to protect your personal information against accidental, unauthorised
or intentional manipulation, loss, misuse, destruction, disclosure or access.
This practice’s security measures are
regularly verified for its operating effectiveness.
Reasonable mechanisms, tools and
technologies have been implemented to detect, prevent and respond to security
violations. Information security policies and procedures that govern security
safeguards are in place, including dedicated teams and business processes to
govern instances of non-compliance with privacy policies, procedures or
DISCLOSURE OF YOUR PERSONAL INFORMATION
practice may disclose your personal information if authorised to do so by law.
practice also engages with various third parties, to improve its service,
create efficiency in its operations, and contribute towards the overall
wellbeing of users and patients.
practice will share your personal information if:
- you have provided consent;
- it is for the proper
treatment and care of yourself; and/or
- it is in accordance with
this practice shares your information with any third party, they will be
required to respect your right to privacy and this practice will ensure that we
have the necessary safeguards in place to secure your personal information.
practice will only allow third parties to process your personal information for
a specific purpose, in accordance with this practice’s instructions and
RETENTION OF YOUR PERSONAL INFORMATION
This practice may retain all personal
information that is collected from you, as long as it remains necessary for the
purposes for which it was collected unless there is a valid technical, legal or
business reason for it to be deleted, destroyed or to de-identify it.
Records remain active for six years
post last treatment or for as long as it is required by law; if it is required
by a code of conduct; if it is reasonably needed for lawful purposes related to
this practice’s functions and activities; or when it is reasonably needed for
Records shall only be made available
in accordance with the Promotion to Access of Information Act 2 of 2000.
This practice does not use data for
marketing purposes, however to ensure continuous improvement of the care and
service offering, patients may be asked to complete service experience
STORAGE AND TRANSFER OF YOUR PERSONAL INFORMATION
This practice stores your personal
information on its servers and/or on third party servers.
This practice reserves the right to
transfer to and/or store your personal information on servers in a jurisdiction
other than where it was collected. If
the location where personal information is transferred to does not have
substantially similar laws which provide for the protection of personal
information, this practice will take
reasonably practicable steps to ensure that your personal information is
adequately protected in that jurisdiction.
of Dr Suriette Botha – Chiropractor operates https://chiropretoria.co.za
Like many site
operators we also collect unvoluntary information that your browser sends
whenever you visit our site (“Log Data”). This log data includes information such as
your computers or mobile internet protocol (IP), address, browser type, browser
version, the page of our site you visit, the time and date of your visit, the
time spent on those pages and other statistics. Log data may be used to analyse
how our site is used with the intention to improve our site and services.
We may employ third party companies and
individuals from time to time to facilitate our services and site (“service
providers”). Service providers are used to provide a service on our behalf, to
perform service-related services or to assist us in analysing how our services
Our trusted third party application include
Bookem.com ( https://bookem.co.za/privacy-policy)
used to facilitate our online booking page and appointments. Bookem.com therefor
have access to your personal data only to perform these tasks on our behalf and
are obligated not to disclose or use it for any other purpose.
Cookies are files with small amount of
data, which may include an anonymous unique identifier. Cookies are sent to
your browser from a web site and stored on your computer’s hard drive. Like
many sites, we use “cookies” to collect information. You can instruct
your browser to refuse all cookies or to indicate when a cookie is being sent.
However, if you do not accept cookies, you may not be able to use some portions
of our Site.
When you interact with this
practice’s website, you will come across links to other websites and
This practice is not responsible for
the security of those websites, or the information that it contains. In some
cases, links are provided as a value added service for information purposes
only. Please remember that when you click on a link on the practice’s website
and you are taken to another web page or website or application that this
You also acknowledge that by clicking
on a link, that you do so at your own risk and hold this practice harmless
against any loss or damage that may occur.
PROCESSING OF CHILDREN’S INFORMATION
This practice respects the rights of
children and will only process the personal information of children if the
consent of a competent person has been obtained, or if required to do so by
Your personal information as well as
your health records (with your consent) may be exchanged with your other
healthcare providers and/or your medical schemes (while complying with
applicable privacy and data protection legislation):
When you attend at this practice we will
- to improve patients treatment
and healthcare outcomes by sharing clinical information in a secured way among
healthcare professionals and healthcare service providers;
- to facilitate healthcare
system cost savings and
- to improve the quality,
safety and efficiency of the healthcare a consumer receives through an
increased administrative and clinical information interchange process whilst
still protecting consumer privacy.
practice will, at all times, process your personal information in accordance
with applicable laws and your rights are set out below:
- You have the right to
correct your personal information if it is incorrect;
- You have the right to
update your personal information if your details have changed;
- You have the right to
object to the processing of your personal information;
- You have the right to your
personal information being deleted; and
- You have the right to be
informed if your information has been deleted. If you would like to exercise
any of your rights:
- Submit any objection that
you may have; or
- Request destruction of
your personal information if it is being retained for longer than required by
acknowledge that, in some cases, this practice may not be able to comply with
your request to delete or destroy your personal information if this request
conflicts with applicable law.
have the right to complain to the Information Regulator, whose contact details
: (012) 406 4848
: 086 500 3351
you have any questions regarding the contents of this policy you may address
those concerns in writing to:
Officer : Dr Suriette Botha
081 800 76 77
clicking on this page or link:
- You have read the contents
of this policy;
- You understood the
contents of this policy;
- You are in agreement with
the contents of this policy;
- You have no objections to
your personal information being managed in this way by The practice and
- That you have no questions
regarding the contents of this policy.