Privacy Policy

1. Introduction

AgiliMed Pty Ltd ("AgiliMed", "we", "us", or "our") respects your privacy and is committed to protecting the personal and health-related information that we collect and process through our digital platforms, products, services, and enterprise implementations.

This Privacy Policy outlines how we collect, use, store, and protect information when you interact with our websites (including www.agilimed.com), web and mobile applications, and associated services. It applies to both individual users and enterprise clients who use our AI-powered healthcare solutions across clinical, operational, and financial domains.

2. Scope of this Policy

This policy applies to all AgiliMed offerings, including:

  • AI-driven health and wellness platforms
  • Remote patient monitoring and digital care solutions
  • Clinical documentation and structured data entry tools
  • Advanced analytics and predictive systems
  • Any services delivered by AgiliMed on behalf of enterprise healthcare organisations

We act as a data controller or data processor depending on the context and relationship with the end user or enterprise partner.

3. Information We Collect

Depending on the services used, we may collect the following types of data:

a. Personal Information

  • Name, contact details (email, phone), job title, organisation affiliation
  • Login credentials and user roles

b. Health & Wellness Data

  • Health records, care plans, medications, clinical observations
  • Wellness-related data such as sleep, activity, and vital signs (where integrated with external systems and with your consent)

c. System & Usage Data

  • IP address, browser/device type, session duration, and user interactions
  • Application logs, access history, error reports
  • Voice or text input used in AI-based features (e.g., clinical scribing, summarisation)

d. Metadata and Derived Insights

  • AI-generated summaries, coded outputs (e.g., SNOMED, ICD-10), structured templates
  • Search terms, usage analytics, and non-identifiable patterns used for feature improvement

4. How We Use Your Information

We use the collected information to:

  • Deliver and maintain our platform features
  • Enable clinical workflows, documentation, and care coordination
  • Facilitate wellness tracking and remote monitoring (where applicable)
  • Support decision-making with context-aware insights and analytics
  • Improve our platform through quality monitoring, feedback, and AI refinement
  • Ensure compliance with medical, legal, and data protection regulations

We do not sell your personal or health information under any circumstance.

5. Data Access and Sharing

We only share data:

  • With your consent or under the instructions of your healthcare provider or organisation
  • With authorised users within your care team or institution
  • With infrastructure providers who host or process data on our behalf (under strict confidentiality and security agreements)
  • When required by law, regulation, or legal process

We do not share data for marketing, behavioural profiling, or advertising purposes.

6. Third-Party Services and Integrations

AgiliMed platforms may integrate with third-party systems (e.g., health data platforms, provider systems, or government registries) based on your organisation's configuration and explicit consent.

All such integrations are:

  • Optional and permission-based
  • Used only for enhancing healthcare services
  • Bound by access controls and data protection agreements

We ensure third-party access is limited, logged, and compliant with relevant regulations.

7. Data Security

We take your data seriously. Measures include:

  • Encryption of all data in transit and at rest
  • Secure hosting in jurisdiction-compliant data centres (e.g., within Australia, India, EU)
  • Access control through authentication, role-based permissions, and audit logs
  • Regular audits, penetration testing, and incident response protocols

Our infrastructure and DevOps practices adhere to industry-standard frameworks such as ISO 27001 and OWASP guidelines.

8. Data Retention

We retain your information for as long as needed to:

  • Deliver services as agreed with you or your healthcare provider
  • Meet clinical, contractual, or legal retention requirements
  • Improve services using anonymised or aggregated data

You may request deletion or export of your data where permissible by law and contractual obligations.

9. Your Rights

You may have the right to:

  • Access or correct your personal data
  • Request data export or deletion
  • Withdraw consent (where applicable)
  • Object to automated decision-making (in jurisdictions where this applies)

We comply with all relevant data protection laws including:

  • Australia's Privacy Act 1988
  • EU General Data Protection Regulation (GDPR)
  • Other local data privacy frameworks, as applicable

10. Cookies and Web Analytics

We use minimal cookies and analytics tools to:

  • Track website performance
  • Analyse usage patterns to improve user experience

No third-party advertising or tracking cookies are used. You may disable cookies through your browser settings without affecting access to core services.

11. International Data Transfers

Where necessary, data may be transferred between jurisdictions to support global operations. All transfers are done:

  • With adequate safeguards (e.g., SCCs, local hosting options)
  • In compliance with applicable data sovereignty requirements
  • Only when essential for service delivery and support

12. Contact Us

If you have any questions, requests, or concerns about your privacy or this policy, please contact:

Privacy Officer – AgiliMed Pty Ltd

📧 Email: contactus@agilimed.com

🧾 ABN: 47 681 944 749

🏷️ ACN: 681 944 749

If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) or your regional data protection authority.

13. Updates to this Policy

We may update this Privacy Policy from time to time. The most recent version will always be available on our website. Material changes will be communicated appropriately.