Last updated: 17 August 2025
Overview
eRequests respects your privacy and is committed to handling personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
What Information We Collect
- Doctor information: name, contact details, provider number, clinic information.
- Patient information: details entered by you into a referral (name, DOB, contact details, clinical notes).
- Usage data: logins, actions taken in the platform, technical data (browser, IP).
- Payment information: handled securely by Stripe – we do not store credit card numbers.
How We Use Information
- To provide the eRequests service, including creating and sending referrals and delivering results.
- To support billing, invoicing, and account management.
- To monitor platform performance and improve features.
- To comply with legal obligations.
Disclosure of Information
- We disclose patient referrals and results only to the intended receiving providers and to you.
- We may disclose limited information to service providers (e.g. hosting, email, fax delivery, Stripe) under strict confidentiality.
- We do not sell, rent, or provide any doctor or patient information to third parties for marketing or unrelated purposes.
- Information will never be shared with third parties except where necessary to deliver the eRequests service or as required by Australian law.
Data Storage and Security
- Data is stored on secure servers in Australia.
- Referrals are transmitted using via email using TLS encryption.
- Data at rest is encrypted using AES 256-bit encryption.
- Access to patient data is restricted to authorised users within the same account or enterprise (depending on the subscription selected).
Access and Correction
You may request access to or correction of your personal information by contacting us.
Data Retention
- Referral and result data is retained for as long as necessary for clinical and legal purposes.
- You may request deletion of your account data, subject to record-keeping obligations under Australian law.
Breach Notification
In the event of a notifiable data breach, we will comply with the OAIC’s Notifiable Data Breaches scheme, including notifying affected users and the OAIC where required.
Your Rights
You may lodge a complaint with the OAIC if you believe we have breached the APPs.
Changes
We may update this Privacy Policy. Material changes will be notified via email or in-app notice.
Contact Us
eRequests Pty Ltd
ABN 34 666 667 670
info@erequests.com.au