Privacy Policy
How we collect, use, and protect your information
Privacy Policy
Last Updated: October 2025
1. Introduction
Bob Woo Chiropractic Clinic ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our services, or book appointments.
We are registered with the Australian Health Practitioner Regulation Agency (AHPRA) as a chiropractic clinic. Chiropractor: Chang Sup Woo - Registration No. CHI0002477788. We comply with:
- Privacy Act 1988 (Cth) and Australian Privacy Principles (APPs)
- Health Practitioner Regulation National Law
- AHPRA Privacy and Confidentiality Standards
- NSW privacy and healthcare legislation
2. Information We Collect
We may collect the following types of information:
- Personal Information: Name, contact details (email address, phone number), date of birth, and other identifying information.
- Sensitive Health Information: Health history, current health concerns, medical conditions, medications, allergies, previous injuries, treatment records, examination findings, and other health-related information. This is sensitive personal information and is protected with the highest level of confidentiality.
- Appointment Information: Dates, times, and notes related to your appointments and communications.
- Website Usage Information: IP address, browser type, pages viewed, time spent on pages, and other data collected through cookies and similar technologies.
3. How We Collect Information
We collect information through:
- Direct interactions when you provide information during consultations, appointments, or when completing forms.
- Our online booking system (Halaxy).
- Automatically through cookies and similar technologies when you use our website.
4. How We Use Your Information
We use your information to:
- Provide chiropractic consultation and assessment.
- Communicate with you about appointments, assessment findings, and clinic updates.
- Process payments and manage our business operations.
- Improve our services and website.
- Comply with legal obligations, including maintaining health records.
5. Disclosure of Your Information
We may share your information with:
- Healthcare Practitioners: Other healthcare professionals involved in your care or to whom we refer you (e.g., GP, medical specialists). We only share information relevant to your referral with your consent.
- Third-Party Service Providers: Payment processors, booking system providers (Halaxy), and IT service providers who assist in our operations. We require these providers to maintain confidentiality and implement appropriate security measures.
- Regulatory and Government Agencies: AHPRA, NSW Health Care Complaints Commission, and other authorities when required by law.
Halaxy Booking System: Personal information you provide through Halaxy is subject to both this Privacy Policy and Halaxy's privacy policy. We recommend reviewing Halaxy's privacy terms to understand their data handling practices.
We will NOT: Sell, rent, or share your personal information to third parties for marketing or commercial purposes without your explicit consent.
6. Data Security
We implement appropriate security measures to protect your personal and health information from unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption: Sensitive health information is encrypted during transmission and storage.
- Access Control: Only authorized staff with a legitimate need access your health information.
- Physical Security: Paper and electronic records are stored securely in locked facilities.
- Backup: Regular secure backups are maintained to prevent data loss.
- Staff Training: All staff are trained in privacy obligations and confidentiality.
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
7. Data Retention
Health Records: We retain patient health records for a minimum of 5-7 years after the date of the last consultation, in accordance with AHPRA guidelines and Australian healthcare legislation. Records may be retained longer if required by law or for legal claims.
Personal Information: We retain other personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy. When information is no longer required, we securely delete or de-identify it.
Marketing Communications: If you opt out of marketing communications, we retain your email/contact details to ensure we do not send further marketing materials.
8. Your Rights
Under the Privacy Act 1988 and AHPRA regulations, you have the right to:
- Access: Request access to your personal information and health records. Contact us in writing or by phone, and we will provide your information within 30 days (or as required by law).
- Correction: Request correction of inaccurate, out-of-date, or incomplete information. We will take reasonable steps to correct information.
- Complaint: Lodge a complaint if you believe we have breached the Privacy Act or your privacy rights.
- Deletion: Request deletion of personal information (except where we are required by law to retain it).
- Opt-out: Opt out of marketing communications by contacting us directly.
To exercise your rights: Contact us via phone (0430 460 941) or email (ohuhman1@gmail.com) with your request.
9. Cookies and Similar Technologies
Our website uses cookies and similar technologies to enhance your browsing experience, analyze website traffic, and personalize content. You can control cookies through your browser settings.
10. Third-Party Links
Our website may contain links to third-party websites. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
11. Children's Privacy
Our services are not directed to individuals under the age of 18 without parental consent. If you are a parent or guardian and believe your child has provided us with personal information without your consent, please contact us.
12. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
14. Privacy Complaints and Regulatory Contact
If you believe your privacy has been breached or you have concerns about how we handle your personal information, you can:
- Contact Us: Phone 0430 460 941 or email ohuhman1@gmail.com to discuss your concerns.
- Lodge a Complaint with OAIC: The Office of the Australian Information Commissioner investigates privacy complaints.
- Lodge a Complaint with AHPRA: If your complaint relates to professional conduct or privacy breaches by the chiropractor.
Office of the Australian Information Commissioner (OAIC):
- Phone: 1300 363 992
- Website: www.oaic.gov.au
AHPRA (Australian Health Practitioner Regulation Agency):
- Phone: 1300 419 495
- Website: www.ahpra.gov.au
15. Contact Us
If you have any questions about this Privacy Policy, please contact us at:
Bob Woo Chiropractic Clinic
408/71-73 Archer Street
Chatswood NSW 2067
Email: ohuhman1@gmail.com
Phone: 0430 460 941