PRIVACY POLICY

(Chinese Medicine & Acupuncture Practice)

1. Purpose

This Privacy Policy outlines how Thorpful Touch collects, uses,
stores, and protects personal and health information in accordance with:

  • Privacy Act 1988 (Cth)
  • Australian Privacy Principles (APPs)
  • AHPRA requirements
  • Chinese Medicine Board of Australia Code of Conduct
  • Relevant State Health Records legislation

We are committed to protecting your privacy, dignity, and confidentiality at all times.

2. What Information We Collect

we may collect:

Personal Information
  • Name
  • Date of birth
  • Address
  • Contact details
  • Emergency contact
  • Occupation
Health Information (Sensitive Information)
  • Medical history
  • Current symptoms
  • Medications & supplements
  • Test results
  • Pregnancy/fertility history
  • Mental health information
  • Treatment notes
  • TCM diagnosis & observations
  • Referrals and correspondence

Health information is classified as sensitive information under the Privacy Act.

3. How We Collect Information

Information is collected via:

  • Intake forms
  • Verbal consultations
  • Clinical examination
  • Laboratory reports
  • Referrals
  • Email or phone communication

We only collect information necessary for providing safe and effective healthcare.

4. Why We Collect Your Information

Your information is collected to:

  • Provide Chinese Medicine and Acupuncture treatment
  • Assess and monitor your health
  • Develop a treatment plan
  • Communicate with other health professionals (with your consent)
  • Process payments and insurance claims
  • Meet legal and professional obligations

By completing our intake form and attending consultation, you consent to:

  • The collection and use of your personal and health information for treatment purposes.
  • Secure storage of your records.
  • Use of de-identified information for professional audit if required.

Separate written consent is obtained for:

  • Sharing information with other providers
  • Release of records
  • Photography or marketing use

You may withdraw consent at any time.

6. Disclosure of Information

We will not disclose your personal information without your consent unless:

  • Required by law
  • Mandatory reporting obligations apply
  • There is serious and imminent risk to health or safety
  • Subpoena or court order is issued

We do not provide information over the phone unless identity is verified.

7. Storage & Security

We take reasonable steps to protect your information.

Hard Copy Records
  • Stored in locked cabinets
  • Accessible only to authorised staff
Electronic Records
  • Password protected
  • Secure practice management software
  • Access restricted
  • Regular backups

8. Access & Correction

You have the right to:

  • Access your records
  • Request corrections
  • Obtain a copy of your health information

Requests must be made in writing.

Reasonable administrative fees may apply for copying.

9. Record Retention

As required by AHPRA and health legislation:

  • Adult records are retained for minimum 7 years from last consultation.
  • Records of patients under 18 are retained until age 25.

After this period, records are securely destroyed.

10. Website & Digital Privacy

If applicable:

  • Our website may collect cookies.
  • Online booking systems may store limited information.
  • Payment gateways operate under secure encryption.

We do not sell or trade personal information.

11. Complaints

If you have concerns about privacy:

  1. Contact the Clinic Director in writing at feedback@thorpfultouch.com.au
  2. We will investigate and respond within 30 days.
  3. If unresolved, you may contact:
    • Office of the Australian Information Commissioner (OAIC)
    • AHPRA

12. Policy Review

This policy is reviewed periodically to ensure compliance with current legislation.