We use cookies to make this site work. We'd also like to set optional cookies so we can understand how the site is used and improve it. We will not set optional cookies unless you accept them. You can change your choice at any time from the Cookie settings link in the footer.
Strictly necessary cookies
These cookies are required for the site to work. They store your cookie preferences and keep your session secure. They are exempt from consent under PECR Regulation 6(4) because they are essential to deliver the service you have requested.
Optional cookies
Optional cookies help us understand how the site is used and provide additional features such as analytics, accessibility tools and translation. We will only set them if you accept.
GDPR
Important information about our privacy policy
Penrhyn Surgery fully supports the General Data Protection Regulations (GDPR) that will be enforced as of 25th May 2018.
We take our responsibility to protect your personal data extremely seriously and are updating our policies to reflect the new GDPR regulations.
You can find further information below.
Processors of personal data
In order to deliver the best possible service, the practice contracts Processors to process personal data, including patient data on our behalf.
When we use a Processor to process personal data we will always have an appropriate legal agreement in place to ensure that they keep the data secure, that they do not use or share information other than in accordance with our instructions and that they are operating appropriately.
Examples of functions that may be carried out by a Processor include:
- Companies that provide IT services & support, including our core clinical systems; systems which manage patient facing services (such as our website and service accessible through the same); data hosting service providers; systems which facilitate appointment bookings or electronic prescription services and document management services.
- Delivery services (for example if we were to arrange for delivery of any medicines to you).
- Payment providers (if for example you were paying for a prescription or a service such as travel vaccinations).
Thank you for taking the time to review these changes and we look forward to continuing our work with our patients.
Our Privacy Commandments
- Design for privacy and be accountable
- Protect communications and sensitive data
- Only collect necessary data
- Obtain and manage permissions
- Be open about data collection and use
- Know your data and manage it diligently
- Don't share data without proper controls
- Enable access to data, erasure and portability
- Protect against unauthorised use
- Acquire parental controls