1. Who we are

This policy explains how Pracsie (Pracsie, we, us, our), handles personal information. Pracsie provides practice management consulting, clinic setup, accreditation support, training and mentoring to medical and allied health practices across Australia.

It applies to everyone we deal with: practice owners and staff, people who enquire or book a call, training participants, suppliers, job applicants, and visitors to pracsie.com.

2. The laws we follow

We handle personal information in line with:

Where we work with practices in other states or territories, we also follow any local health records laws that apply to that work.

3. What we collect

Depending on how you deal with us, we may collect:

We only collect sensitive information, including health information, with consent or where the law otherwise allows it.

4. How we collect it

Usually we collect it directly from you: through our website form, by email or phone, in meetings and site visits, and while delivering services. Sometimes it comes from someone else, like a practice owner who gives us staff details, a referee, or a practice’s own systems when we’re engaged to work in them. If we collect information about you from someone else, we’ll take reasonable steps to let you know, unless it’s obvious from the situation or the law says we don’t need to.

5. Why we use it

We collect, use and disclose personal information to:

If you don’t give us the information we ask for, we may not be able to provide some or all of our services.

6. Health information in client systems

Practice management often means working inside a clinic’s systems, which may hold patient health information. When this happens:

We handle this information in line with both the APPs and the NSW HPPs. Patients who have questions about their records should contact their practice first.

7. Who we share it with

We may share personal information with:

We don’t sell, rent or trade personal information.

8. Overseas disclosure

Some of our service providers store data on servers outside Australia, including in the United States. For example, our website and enquiry form host, email and video-call tools may do this. When we use overseas providers, we take reasonable steps to make sure they handle personal information consistently with the APPs.

We do not deliberately store patient health information outside Australia.

9. Marketing

We’ll only send you marketing emails or messages if you’ve agreed to receive them, or if the Spam Act 2003 (Cth) otherwise allows it. Every marketing message includes an easy way to unsubscribe, and you can also opt out any time by emailing us. We never use patient information for marketing.

10. Our website, cookies & analytics

Our website doesn’t set its own tracking cookies. It loads fonts from Google Fonts, which means your browser sends your IP address to Google when the page loads. Our website host keeps standard server logs for security and performance.

If we add analytics or advertising tools in the future, we’ll update this policy and, where required, ask for your consent.

11. Storage & security

We take reasonable steps to protect personal information from misuse, interference, loss, and unauthorised access, change or disclosure. These include:

No system is completely secure, but we work hard to keep your information safe.

12. Data breaches

If we have a data breach that is likely to cause serious harm, we’ll notify affected people and the Office of the Australian Information Commissioner under the Notifiable Data Breaches scheme. If the breach involves a client’s systems or patient information, we’ll tell the practice straight away so it can meet its own obligations.

13. How long we keep it

We keep personal information only as long as we need it for the purposes in this policy, or as long as the law requires. For example, tax and business records are generally kept for 7 years. Patient records we access in a client’s systems stay with that practice, which is responsible for keeping them for as long as the law requires. When we no longer need information, we securely delete or de-identify it.

14. Access & correction

You can ask for access to the personal information we hold about you, or ask us to correct it, by contacting us (see section 18). We’ll respond within 30 days. We may need to confirm your identity first. If we refuse a request, we’ll explain why in writing and tell you how to complain. We don’t charge for making a request. If giving access involves significant work, we may charge a reasonable fee, which we’ll tell you about first.

15. Anonymity

You can make general enquiries without identifying yourself or by using a pseudonym. To book services, send invoices or deliver training, we’ll need your real details.

16. Complaints

If you think we’ve mishandled your personal information, please tell us first (see section 18). We’ll acknowledge your complaint within 5 business days and aim to resolve it within 30 days.

If you’re not happy with our response, you can complain to:

17. Changes to this policy

We may update this policy from time to time. The latest version will always be on this page, with the date it was last updated.

18. Contact us

Privacy Officer, Pracsie
Email: sales@pracsie.com
Phone: 02 8552 8609