Privacy Policy
Introduction
Halton Event Medical Services (“we,” “us,” or “our”) respects the privacy of our clients, patients, and website users. This Privacy Policy outlines our practices regarding the collection, use, disclosure, and safeguarding of personal and health-related information. We are committed to protecting your privacy in compliance with the Personal Information Protection and Electronic Documents Act (PIPEDA) in Canada, the Personal Health Information Protection Act (PHIPA) in Ontario, and other relevant data protection laws. By using our services or website, you agree to the practices described in this policy.
1. Information We Collect
We collect personal information to provide our services effectively, including but not limited to:
• Personal Identification Information: Name, contact details (email address, mailing address, phone number), date of birth, and other identifiers.
• Financial Information: Billing information, credit card details, insurance information, and payment records for processing payments and managing accounts.
• Medical and Health Information (PHI): Medical history, medications, allergies, treatment records, and other health-related details necessary for event medical services and patient transfers.
• Technical Information: IP address, browser type, device information, and usage data when interacting with our website to improve functionality and user experience.
2. Legal Basis for Collecting Information
We collect and process personal information based on:
• Consent: Where consent is required, we will obtain explicit permission before collecting or using your information.
• Performance of a Contract: We collect and use information to fulfill our contractual obligations, such as providing event medical services or patient transfers.
• Legitimate Interests: We may collect and use information to improve our services, enhance security, and protect against fraud.
• Legal Compliance: We collect and use information to comply with legal obligations, such as regulatory compliance and health data protection requirements.
3. How We Use Your Information
We use the information collected for various purposes, including:
• Providing Services: To deliver event medical services, patient transfers, and other healthcare-related services.
• Communication: To contact you regarding appointments, service updates, billing inquiries, and customer support.
• Processing Payments: To process billing, insurance claims, and payments.
• Compliance and Security: To comply with legal requirements, secure information, prevent unauthorized access, and conduct audits.
• Marketing and Service Improvements: To improve our services, customize user experiences, and inform you about new services or promotions (where permitted by law).
4. Sharing of Personal Information
We may disclose personal information to third parties under the following circumstances:
• Service Providers: We may share information with third-party vendors who assist in payment processing, IT support, cloud storage, and data management. These vendors are obligated to maintain confidentiality and comply with data protection laws.
• Legal Obligations: We may disclose information if required by law, regulation, legal process, or governmental request.
• Business Transfers: In the event of a merger, acquisition, or asset sale, your information may be transferred as part of the business transaction.
• With Your Consent: We may share information with third parties if we have obtained your explicit consent to do so.
5. Protection of Personal Information
We implement technical, administrative, and physical safeguards to protect personal information, including:
• Encryption: Encrypting sensitive data during transmission and at rest to prevent unauthorized access.
• Access Controls: Limiting access to personal information to authorized personnel who need it to perform their job functions.
• Data Anonymization: Where possible, we anonymize or de-identify information to protect privacy.
• Employee Training: Regular training on data security practices, confidentiality agreements, and compliance requirements.
• Regular Audits: Periodic security audits and risk assessments to ensure compliance and data protection.
6. Retention of Personal Information
We retain personal information for as long as necessary to fulfill the purposes for which it was collected, including legal, regulatory, accounting, or reporting requirements. Health-related information is retained in compliance with applicable health regulations and retention policies.
7. Data Subject Rights
Depending on your jurisdiction, you may have certain rights regarding your personal information, including:
• Right to Access: Request a copy of your personal information.
• Right to Rectification: Request correction of inaccurate or incomplete information.
• Right to Erasure: Request deletion of your personal information when it is no longer necessary for the purposes it was collected.
• Right to Object: Object to processing based on legitimate interests or direct marketing.
• Right to Data Portability: Receive your personal information in a structured, machine-readable format.
• Right to Withdraw Consent: Withdraw consent where it was previously given for data processing.
To exercise any of these rights, please contact us using the details provided below. We may need to verify your identity before processing your request.
8. Cookies and Tracking Technologies
We use cookies, web beacons, and other tracking technologies to collect information about your interactions with our website. Cookies help us analyze usage patterns, improve website performance, and customize user experiences. You can control cookie preferences through your browser settings.
9. Third-Party Links and Services
Our website may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any personal information.
10. International Data Transfers
If your personal information is transferred to a country other than your own, we will ensure that it is adequately protected, including by using appropriate safeguards and compliance with legal requirements for cross-border data transfers.
11. Security Incident Response
In the event of a data breach or security incident, we will notify affected individuals and regulatory authorities as required by law. We have protocols in place to quickly address and mitigate any security vulnerabilities.
9. Third-Party Links and Services
Our website may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any personal information.
12. Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes in our practices, technology, legal requirements, or other factors. Any updates will be posted on our website, and the effective date will be updated. We encourage you to review this policy periodically.
13. Contact Us
If you have any questions, concerns, or requests related to this Privacy Policy, please contact us at:
Halton Event Medical Services
647-232-8809
14. Legal Disclaimer
This Privacy Policy does not create any contractual rights or obligations and should not be interpreted as a legally binding agreement. It is provided for informational purposes only and may be subject to additional terms and conditions.