Privacy Policy
Updated: 27/09/2021
WHO IS COLLECTING MY DATA?
Spectrum Homecare Limited a company incorporated in Ireland trading as Care24 (“Care24”) are committed to protecting and respecting your Privacy.
For the purposes of the General Data Protection Regulation (2016/679) (“GDPR”) and the Data Protection Act 2018 (“the Act”), (together “Data Protection Law”), Care24 are the data controller. All definitions in this policy in respect of personal data and processing are as described in the GDPR.
www.care24.ie (“our website” or “the website”), Remote Assistance and Homecare (“the services”) are operated by Care 24.
This Privacy Statement explains how Care24 will process any personal data we collect from you through our website and through the services.
Care24 are registered with the Data Protection Commissioner (DPC) Registration Number 13807/A as data controllers. As data controllers, Care24 employs appropriate technical and organisational measures to meet the requirements of Data Protection Law and ensures that all processors do the same.
WHAT TYPE OF DATA IS COLLECTED?
We may collect and process the following data about you
Information that you provide by filling out forms on our site.
information provided at the time of registering to use our site, such as name, date of birth and address, and login information and password;
payment details to process payments
Statistical information about browsing actions including, but not limited to: o traffic data;
Records of transactions you carry out through our site and of the fulfilment of your use of our site.
If you contact us, we may keep a record of that correspondence.
Telephone calls - we will record the call for record keeping and training purposes
Sensitive personal data – this includes data relating to your health
If you are availing of our Remote Assistance Services - activity Data from sensors, Motion Detectors, Fall Detector and Emergency Pendant
If you are availing of the Homecare Services –reports on the care recipient
WHAT IS THE PURPOSE OF THE PROCESSING?
The purpose of the processing of your personal data is to fulfil our contractual obligations with you.
The specific purposes are set out below.
Signing up to Care24
Registration details: email, name, gender, date of birth, address and password. These details are collected in order to provide access to our service.
Health Status and medical conditions,
The lawful basis for the processing is the provision of the services to you.
Use of our website and the services
Details: email, name, gender, date of birth, and address and password. These details are collected in order to provide the services and for the purposes of log in.
Activity Data from sensors – for the purposes of monitoring activity and the provision of the services and reports.
The lawful basis for the processing of this data is based on your consent. By clicking “I agree” in the relevant box situated on the form on which we collect your data (the registration form) when creating an account on our site, you are consenting to the processing of your sensitive data in accordance with this policy. You have the right to withdraw your consent regarding the processing of sensitive data at any time.
Sensitive Data:
Medication details: we process the details of your medications. This health related data is collected to enable the carer to monitor whether medications have been taken and is necessary to be obtained in order to provide our service to you. The carer will not administer the medication.
Health details: we process the details of your health status. This health related data is processed to ensure that the most appropriate service is provided to you.
We store this sensitive data in order to provide our services to you.
The lawful basis for the processing of this sensitive data is based on your consent. By clicking “I agree” in the relevant box situated on the form on which we collect your data (the registration form) when creating an account on our site, you are consenting to the processing of your sensitive data in accordance with this policy. You have the right to withdraw your consent regarding the processing of sensitive data at any time.
WHAT IS MY DATA BEING USED FOR?
We will ask you to provide, either by phone, face to face or via electronic media, personal data and, where required, sensitive personal data. This information provided will be used by Care24 to:
To fulfil our contractual obligations with you
To verify your identity.
To respond to your enquiries or provide customer support.
To send updates regarding your appointments and programmes.
To contact you in the case of a data breach.
To provide you with advice, dependant on the information you have given.
To seek feedback for ongoing service improvements.
When availing of our Remote Assistance services, the activity data received from sensors (fitted on the Fridge Door and/or Front Door), Motion Detectors (fitted in the Bedroom, Living Room, Kitchen, Hall and/or Dining Room), Emergency Pendant and fall detector will be used to provide this service. The activity data will be used by our Remote Assistance team to monitor activity and inactivity. The Remote Assistance Team may be prompted to make a telephone call to you, your appointed contacts or emergency services.
When availing of our Homecare Service you may be asked to provide sensitive personal data to allow us to provide the most suitable service to match your specific needs. The Homecare Service will also provide weekly / daily reports on your care and monitor whether medications have been taken.
Care24 and other companies with whom we are associated (our “Affiliates”) may use the same diary booking system, therefore, your appointment and service type may be visible to essential personnel across Care24 and our Affiliates, which in some instances will include non-Care24 personnel for the purposes of service provision.
Care24 will never share your personal information with any other third party without your consent unless required to do so to apply with any applicable law, a summons, as search warrant, a court or regulatory order, or other statutory requirement.
WHAT HAPPENS TO MY DATA?
All of your personal and health data is stored securely, offsite and in electronic format. All electronic communications are hosted within platforms which are SSL-secure, password protected and encrypted. Care24 has adequate measures in place to ensure that your information is held securely, within the EU. Any personally identifiable information you elect to make available publicly on our sites – e.g. posting comments on any of our blog posts – will be available to others to see.
WHO HAS ACCESS TO MY DATA?
Access is restricted to essential personnel of Care24 and our Affiliates who are bound by their professional ethics and/or confidentiality agreements.
We may provide non-personal data to third parties, where such information is combined with similar information of other users of our website. For example, we might inform third parties regarding the number of unique users who visit our website, the demographic breakdown of our community users of our website, or the activities that visitors to our website engage in while on our website.
The third parties to whom we may provide this information may include, commercial partners, payment providers, sponsors, licensees, researchers and other similar parties. We will never disclose your Personal Data to third parties unless you have consented to this disclosure or unless the third party is required to fulfil your order (in such circumstances, the third party is bound by similar data protection requirements).
We will disclose your Personal Data if we believe in good faith that we are required to disclose it in order to comply with any applicable law, a summons, a search warrant, a court or regulatory order, or other statutory requirement.
PRIVATE PRACTICES AND DIRECT MARKETING
We will never use your data for direct marketing purposes without your consent. At any time, you may opt out (i.e. refuse the use of your personal data), including at the time the data is collected, or on every subsequent marketing message. Unsubscribing will always be free of charge and fully respected. It should be noted that other methods of communication (confirmation of appointments or reminders, or provision of services etc.) do not fall under “direct marketing”.
HOW LONG IS MY DATA HELD FOR?
Your data will be held by Care24 as long as is legally required. After that time period, your data will be securely deleted, as per our data destruction policy.
We will not keep your personal data longer than we need to, and will only use your personal data for the purposes set out in this Policy. We will always keep your personal data in accordance with applicable legal and regulatory requirements.
In most circumstances this means we will not keep your personal data for more than 7 years after the end of your relationship with us. However, for certain data sets we have the following retention periods:
Health and safety records (example: incident reports) will be deleted 7 years after their creation.
Where your personal data is needed because we are in serious dispute with you (such as litigation), your personal data will be deleted 7 years after closure of the matter.
WHAT ARE MY RIGHTS?
You can contact us at any time to:
To access your personal data. You have the right to request a copy of the personal data that we hold about you;
To correct any information if it is inaccurate, incomplete or misleading;
Erase personal data: - you have the right to request that we delete personal data that we hold about you;
To request restriction of processing or to object to processing: you have the right to request that we no longer process your personal data for particular purposes, or to object to our processing of your personal data for particular purposes;
To withdraw your consent regarding the processing of your data at any time;
Review our Data Protection Policy
Ask any questions about your data
Any request should be put in writing and will be responded to, by us within 30 days. Please contact us either by email at DPO@care24.ie or by post at 26 Rowan Avenue, Stillorgan Business Park, Sandyford, Dublin 18, A94 P7R9 All correspondence should be marked for the attention of our GDPR team. For your protection, we may need to verify your identity to process your request.
SECURITY
We take our security responsibilities seriously, taking all reasonable steps, including appropriate technical and organisational measures to protect your data.
We review our security measures regularly. If you have reason to believe that your interaction with us is no longer secure, please contact us immediately via email DPO@care24.ie.
Upon becoming aware of a breach of personal data we will notify affected data subjects within 72 hours in writing, detailing the circumstances and particulars thereof; report the breach to the Data Protection Commissioner of Ireland (the “Supervisory Authority”); and take such reasonable corrective and mitigating measures as required under Data Protection Law and that are customary under the circumstances.
DISCLOSURE OF YOUR INFORMATION
We may disclose your information to third parties
We reserve the right to transfer information (including your personal data) to a third party in the event of a sale, purchase, merger, liquidation, examinership, receivership or transfer of all or substantially all of the assets of our company in the following cases:
provided that the third party agrees to adhere to the terms of the Privacy Policy
provided that the third party will only use your Personal Data for the purposes that you provided it to us.
You will be notified in the event of any such transfer, and you will be afforded an opportunity to opt-out. If we are under a duty to disclose or share your personal data in order to comply with any legal obligation, or in order to enforce or apply our terms of use as set out in our general terms and conditions and other agreements; or to protect the rights, property, or safety of Care24, our clients, customers, or others.
UPDATES TO THIS PRIVACY STATEMENT
We may change this privacy statement; however the “last updated” date will always be listed at the top of this page. Any changes will be effective immediately.