How does HealthBank protect patient privacy and confidentiality?
Security measures and safeguards to ensure patient privacy and confidentiality
HealthBank uses the following privacy and security safeguards to protect patient data:
Regulatory compliance
HealthBank complies with the Australian Privacy Principles under the Privacy Act 1988 and adheres to standards set by the Australian Digital Health Agency, Australia’s peak digital health body.
Data encryption
All data transmitted to and from HealthBank’s web servers is encrypted using HTTPS with a valid SSL certificate. Patient information, files, and notes stored in a patient record are encrypted both in transit and at rest.
Data storage and sovereignty
All patient data is stored exclusively on secure servers located in Australia and is never transferred offshore. HealthBank does not share patient information with any third parties.
Activity tracking
HealthBank does not track general site interactions or clicks. The only session data retained is your last sign-in time and IP address, which are used solely for security purposes.
Practitioner profile visibility
Practitioner profile pages are only publicly visible if the practitioner chooses to enable them. When enabled, a profile may include the practitioner’s name, photo, profession, professional biography, areas of special interest, and approximate location (for those offering face-to-face clinic services).