Privacy Policy
This is the Privacy Policy of At Ease Psychology, ABN 23 606 785 681. If you have any questions or need further information, please reach out to Dr Belinda Barnes, owner on 0473 733 539 or on email belinda@ateasepsychology.com.au.
We are committed to protecting your privacy, whether you are a client, contractor or employee of ours.
This document describes how I collect and manage your personal and sensitive information when you interact with this business. I take this responsibility very seriously. If you have any questions or concerns about how your personal or sensitive information is being handled, please do not hesitate to contact me. I also comply with the Australian Privacy Principles set out in the Privacy Act 1988 (Cth) (Privacy Act) and the Code of Conduct and Practice Standards set out by the Australian Psychological Society here: https://psychology.org.au/about-us/what-we-do/ethics-and-practice-standards.
Personal Information
If you engage with me via this website, or choose to become a client of this business I may ask to collect the following kinds of personal information from you, including:
· your name, email address and phone number
· the country that you live in
· your personal, medical and psychological information
· information that allows me to tailor my website content to your needs when you sign up for one of my webinars or promotional events
· your IP address, and information about your browsing history to help me improve the usability and appeal of my website (more information about this is found in the section on Cookies below)
· if you are an employee or contractor, or propose working with me in that capacity, information about your qualifications, skills and work experience
I may collect and use your personal information to:
· formulate and design your treatment and therapy approach
· respond to your enquiries
· provide you with services at your request
· monitor or improve the use of and satisfaction with my website or services
· share the latest news and developments relevant to psychology and counselling
· let you know about my expertise, and services that may be of interest to you
If you do not provide me with information when requested to do so, I may not be able to carry out your instructions or achieve the purpose for which the information has been sought.
I may, from time to time, send updates about the business. I will only do so if you have requested to receive such communications through a double opt-in process. You can opt out of receiving any further such communications by replying to the message you received, or by clicking the “unsubscribe” option at the bottom of any marketing e-mail received from me.
Collection of Personal Information
Where practicable I will only collect personal information about you directly from you or sources managed by you. However, in some circumstances I may obtain personal information from a third party. If this information is obtained contrary to this Privacy Policy and the Privacy Act, I will destroy or de-identify such information within a reasonable period.
I may collect your personal information by various means including when:
· you contact me with a question, comment or inquiry
· you attend a webinar, seminar or event where I am hosting or presenting
· you opt in to receive a free resource from me or sign up for my newsletter
· you book a consultation or purchase a service from me
· you share general information relating to your personal life and medical history
· my website automatically collects information about you and your activities on my site (including analytics and cookies – more information on this is set out below)
· a third party supplies information to me, such as when you are referred by a doctor or health practitioner
I will only collect your information:
· with your full awareness and written consent
· if I need it to provide you with the most appropriate therapy or intervention
· if I am legally required to collect it
· if collecting the information is necessary to preserve life or keep someone safe from harm
· for necessary administrative processes if you become my client
Sensitive Information
I understand that personal information is particularly sensitive, and that you are trusting me to keep this information confidential.
The sensitive information I collect from you is likely to include:
· your birth date
· your medical history
· your financial data for session payments
· information about your personal / emotional world, lifestyle and relationships
I will only collect sensitive information by methods that are reasonably secure, such as:
· in person in session
· through the intake process when you book an appointment
· in a zoom consultation in session
· when you send me information in an email (please note that email may not be sufficiently secure – if the information is extremely sensitive, ask me about alternative ways to share it with me.)
The reason why I collect your sensitive information is:
· so that I can provide you with the best possible service and most appropriate treatment
· to ensure that I am providing you with the most appropriate service
Secure Storage of Sensitive Information
I am committed to securely storing and handling your sensitive information.
· Sensitive information is stored in a locked filing cabinet or on a password protected computer with a high level of cybersecurity.
· Only myself, the therapist responsible for your treatment, and authorised administration team members, have access to your sensitive information, and only on a need to know basis.
· Some sensitive information may be stored securely online, or in the cloud via One Drive. You can find out more about their security provisions in the section on Security below.
Collection of Information from Minors
All information collected from children under the age of 18 is classified as sensitive information.
Sensitive information may be collected from children under the age of 18 under the following circumstances:
· in the presence of their parents
· or with their parent or guardian’s full consent
All information collected from minors is securely stored in accordance with this privacy policy.
Disclosure of Information
I may disclose your information if required under the following circumstances:
· to provide you with the services you have requested
· to send you information that you have requested
· where disclosure is necessary to complete the treatment and abide by third party conditions (i.e. communicating with other health professionals, Workcover, or Insurance agencies) but is only done with your consent and with transparency
· to engage in professional supervision, although any information I share under these circumstances is de-identified to preserve client confidentiality
· to refer you to other service or health providers at your request.
Who disclosures are made to
You consent to me sharing relevant information, on a strictly need-to-know basis, with:
· people you authorise me to correspond with, as reasonably required to provide therapy effectively
· Third party providers who assist with accounting, administration, auditing or professional supervision.
I will also disclose your information if required by law in response to a subpoena, discovery request or a court order, in compliance with mandatory reporting obligations, or in circumstances permitted by the Privacy Act – for example, where I have reasonable grounds to suspect that someone is engaging in unlawful activity, or misconduct of a serious nature, that relates to my work with you. I may also make a disclosure to an appropriate authority if I have serious concerns about your health, safety or wellbeing but if possible with your consent and with transparency.
If you have any concerns regarding the disclosure of your information, please do not hesitate to get in touch with me to discuss this personally.
Security
I take reasonable physical, technical and administrative safeguards to protect your personal and sensitive information from misuse, interference, loss, and unauthorised access, modification and disclosure.
I manage risks to your information by:
· storing files securely
· ensuring that only myself has access to sensitive information
· releasing information to service providers on a strictly need-to-know basis
· conducting regular audits of my security systems.
As mentioned above, your information may also be stored with a third-party provider, where it will be managed under their security policy. The following security policies may apply during our work together:
· Powerdiary - https://www.powerdiary.com/privacy-policy/
· Google Workspace - https://workspace.google.com/intl/en_au/security/
· Square - https://squareup.com/au/en/legal/general/privacy
· Xero - https://www.xero.com/au/security/
· Zoom - https://zoom.us/docs/en-us/privacy-and-security.html
If you are communicating with me via electronic means such as email, text message, or Zoom, I may not have full control over the transmission or storage or any personal information disclosed (although I try to employ best practice cybersecurity standards at all times). You agree that by participating in such forms of communication you understand and accept that there is an inherent risk of disclosure or loss of your personal information for which I cannot be held responsible. If you are concerned about transferring particularly sensitive information, please ask me about alternative options that may be more secure.
Cookies and Google Analytics
Cookies are small text files that are commonly used by websites to improve a user’s experience, collect statistics or marketing information and provide access to secure areas.
You can choose to configure your browser settings not to accept cookies but this may interfere with the functioning of this website.
My website uses the following cookies:
- Crumb - Squarespace sets this cookie to prevent cross-site request forgery (CSRF).
- ss_cvr and ss_cvt - SquareSpace sets this cookie to identify unique visitors and track a visitor’s sessions on a site.
Access to Information
You can contact me to access, correct or update your personal information at any time. Unless I am subject to a confidentiality obligation or some other restriction on giving access to the information which permits me to refuse you access under the Privacy Act, and I believe there is a valid reason for doing so, I will endeavour to make your information available to you within 30 days.
Complaints
If a breach of this Privacy Policy occurs, or if you wish to a request a change to your personal information, you may contact me by sending an email outlining your concerns to me at belinda@ateasepsychology.com.au.
If you are not satisfied with my response to your complaint you may seek a review by contacting:
· the Office of the Australian Information Commissioner using the information available at - http://www.oaic.gov.au/privacy/privacy-complaints
· The health ombudsman in Queensland https://www.oho.qld.gov.au
· The Australian Health and Practitioner Agency -
https://www.ahpra.gov.au/notifications/concerned-about-a-health-practitioner.aspx
Notification of Change
When I update my Privacy Policy, I will post a copy of the revised policy on my website.
Notification of Breach
If I have reason to suspect that a serious data breach has occurred and that this may result in harm or loss to you, I will immediately assess the situation and take appropriate remedial action. If I still believe that you are at risk, I will notify the Office of the Information Commissioner and either notify you directly, or if that is not possible, publicise a notification of the breach on this website.
Thank you!
This Privacy Policy was created with the support of Carefree Counsel. Look after your business and your clients by creating your own Privacy Policy with a Contracts that Care DIY Pack!