Your personal data is data which by itself or with other data available to The Hand Doctor Ltd (ICO registration: Mr Maxim Horwitz – Z3171354, Daniel Alexander Shaerf – ZB044498, Tomas Tickunas – ZB542057, The Hand Doctor Ltd ZC078048) can be used to identify you as an individual. Maxim Horwitz + Daniel Shaerf + Tomas Tickunas + The Hand Doctor Ltd are the data controllers.
This Privacy Notice sets out the basis on which any personal data we collect from you, or that you provide to us, will be processed by us. You can contact our Data Protection Officer (DPO), Ms Karen Gold, Loretta cottage, Hospital St John St Elizabeth, 60 Grove End Road, London NW8 9NH or by email to info@thehanddoctor.co.uk if you have any questions.
Types of personal data we collect and use
Types of personal data we collect and use may include:
- Your name, address and contact details, including email address and home and mobile telephone numbers, date of birth and gender
- Your previous and current medical health records
- Information about medical or health conditions, test results and other clinically-relevant information (including information about medical or health conditions of your family)
- The terms and conditions of your contract with us for the provision of healthcare and related services
- Your financial information (including your bank account or credit card details) and/or the financial information of the company or individual who is responsible for the payment of invoices or bills relating to your care (e.g. insurer or sponsor)
- Information about your marital status, next of kin, dependents, nominated and/or emergency contacts
- Information received in response to any complaints or claims
Using your personal data and the legal basis for processing
- We will process your personal data under Article 6 (1) and Article 9 (2) of the General Data Protection Regulations
- To support the provision of your healthcare and decide how best to provide treatment to you.
- As necessary to support the healthcare contract with you and to allow us to receive [full] payment for those services.
- To keep your records up to date.
We will process your personal data under Article 6 (1) f of the General Data Protection Regulations:
- As necessary for our own legitimate interests, including for good governance, accounting, and managing and auditing our clinical and business operations and to monitor emails, calls and other communications.
- As necessary to comply with legal and regulatory obligations, including when you exercise your rights under Data Protection Laws and to investigate complaints, legal claims and data protection or clinical incidents.
- Based on your consent, including if you ask us to disclose your personal data to other people or organisations such as a company handling a claim on your behalf; or otherwise agree to disclosures, including to employers. You are free at any time to change your mind and withdraw your consent. The consequence might be that we cannot continue to provide full healthcare services to you.
How we collect data
We may collect and process information that you provide directly to The Hand Doctor or their staff as part of the process of arranging an appointment, in forms completed during the registration process or on our website (thehanddoctorpractice.co.uk), at consultations and through correspondence (by post or email) with the patient, other clinicians (including GPs) and in communication with insurance companies or other funders. By providing this information you consent to Max Horwitz/ Dan Shaerf/ Tomas Tickunas, The Hand Doctor Ltd, retaining it for valid use. We store patient information in a fully compliant secure and paperless practice management system. Your data will only be stored for as long as necessary. Our office undertakes to ensure appropriate security, integrity and confidentiality of your personal data.
Sharing of your personal data
Subject to applicable Data Protection Laws we may share your personal data with:
- Consultants, doctors and other healthcare professionals who provide treatment to you, or to whom we are referring you
- Sub-contractors and other persons who help us to provide healthcare products and services to you
- Our legal and other professional advisors, including our auditors
- Fraud prevention agencies, credit reference agencies and debt collection agencies
- Courts, to comply with legal requirements, and for the administration of justice
- Third parties in an emergency or to otherwise protect your and others’ vital interests.
- Payment systems and providers.
- Anyone else where we have your consent or as required by law.
AI Technology and Note-Taking Policy
Our practice is committed to providing high-quality care while maintaining the confidentiality and security of your personal information. As part of our efforts to improve the accuracy and efficiency of clinical documentation, your consultant may use artificial intelligence (AI)-assisted tools, such as an AI scribe, to generate or support note-taking during your consultation.
Key points:
- Patient Consent:
AI note-taking will only be used with your explicit consent. Before any AI-assisted tool is activated, your consultant will explain its purpose and ask for your permission.
2. Purpose of Use:
The AI scribe is used solely to assist with clinical documentation, allowing your consultant to focus on you during your appointment. It helps record details of your consultation accurately and efficiently.
3. Privacy and Security:
- Any information processed through AI systems is handled in accordance with applicable data protection laws, including the UK GDPR and the Data Protection Act 2018.
- AI tools used by the practice are secure, encrypted, and approved for medical use.
- Recordings or transcripts (if made) are not used to train or improve external AI systems and are deleted once securely transcribed into your medical record.
4. Your Rights:
- You may decline or withdraw consent for the use of AI at any time without affecting your care.
- You may ask how your data is used and stored, and request a copy of your consultation notes in line with your rights under data protection law
5. Human Oversight:
All notes generated by AI are reviewed, edited, and approved by your consultant before being added to your official medical record.