Skip to content

Latest commit

 

History

History
84 lines (56 loc) · 6.46 KB

privacy_policy.md

File metadata and controls

84 lines (56 loc) · 6.46 KB

Privacy Policy

OpenMRS built the OpenMRS Android client app as an Open Source app. This service is provided by OpenMRS at no cost and is intended for use as is.

This page is used to inform visitors regarding our policies with the collection, use, and disclosure of personal information if anyone decided to use our service.

If you choose to use our service, then you agree to the collection and use of information in relation to this policy. The personal information that we collect is used for providing and improving the service. We will not use or share your information with anyone except as described in this Privacy Policy.

The terms used in this Privacy Policy are subjected to OpenMRS License.

Information Collection and Use

For a better experience, while using our service, we may require you to provide us with personally identifiable information, including but not limited to

  1. Full name
  2. Full address
  3. Gender, birth-date, and age
  4. Your photographs
  5. Provider information
  6. Notes on symptoms and other information
  7. Medical diagnostics and vitals (body temperature, pulse rate, blood pressure, weight, height, and respiratory rate)
  8. Medical treatment information
  9. Medical appointments

The information that we request will be retained by us and used as described in this privacy policy.

Link to the privacy policy of third party service providers used by the app

Log and App Usage Data

  1. App’s log data: such as certain outputs of the app, success and failure states of network calls, etc.
  2. App usage data: your time zone, application performance measurements, and error conditions.

Cookies

Cookies are files with a small amount of data that are commonly used as anonymous unique identifiers. These are sent to your browser from the websites that you visit and are stored on your device's internal memory.

This service does not use these “cookies” explicitly. However, the app may use third party code and libraries that use “cookies” to collect information and improve their services. You have the option to either accept or refuse these cookies and know when a cookie is being sent to your device. If you choose to refuse our cookies, you may not be able to use some portions of this service.

Data Storage

The app is meant for both offline as well as online use. Therefore, we store the data both locally on the device as well as in our servers.

Security

We value your trust in providing us your personal information, thus we are striving to use commercially acceptable means of protecting it. But remember that no method of transmission over the internet, or method of electronic storage is 100% secure and reliable, and we cannot guarantee its absolute security. Some of the security measures taken by us are:

Client Side

  1. Password Hashing – BCrypt hashing function.
  2. Local database encryption – Uses AES-256 Cipher (using a combination of username and password as its key)

Server Side

  1. Patient’s Identifiers are validated using Mod10 algorithm. This is used while creating new Patient’s Identifiers and avoid errors.
  2. Data is transmitted through a secure SSL connection
  3. Strings are hashed using SHA-512

Data Retention

We retain all the data generated by the Android app and web client. If an account is deactivated/deleted, we move the data related to that account away from our active database but is retained in our backup database.

Further Notes

  1. We do not sell your data
  2. All these personal details help in creating a record of a certain patient. It helps the users of this app (the Providers) to maintain the track of the patient.
  3. For users’ assistance, we may require the personal details of the patients (such as date-of-birth, name, etc) to easily track the patient and find their records.
  4. We may aggregate and combine all personal information that we receive through this app (see the Information Collection and Use) as well as from the app’s log and usage data and use them to provide a better experience across our platforms (both web and mobile).

Information Sharing and Disclosure

  1. Patients are not our immediate/primary/end users of this app
  2. The Providers (Nurse, Doctor, Clerk) are the primary end-users of this app
  3. The Patients’ data is shared across various Providers with respect to the proceedings of the Patient’s visit, treatment, etc
  4. Compliance with Laws and Law Enforcement: We may disclose files stored in your OpenMRS account and other information about you to third parties when we have a good faith belief that disclosure is reasonably necessary to: (a) comply with a law, regulation or legal requests including to meet national security or law enforcement requirements; (b) protect the safety of any person from death or serious bodily injury; (c) prevent fraud or abuse of OpenMRS or its user, or (d) protect OpenMRS’s property rights.

Links to Other Sites

This service may contain links to other sites. If you click on a third-party link, you will be directed to that site. Note that these external sites are not operated by us. Therefore, we strongly advise you to review the Privacy Policy of these websites. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.

Children’s Privacy

These services do not address anyone under the age of 13. We do not knowingly collect personally identifiable information from children under 13. In the case we discover that a child under 13 has provided us with personal information, we immediately delete this from our servers. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us so that we will be able to do necessary actions.

Changes to This Privacy Policy

We may update our Privacy Policy from time to time. Thus, you are advised to review this page periodically for any changes. We will notify you of any changes by posting the new Privacy Policy on this page. These changes are effective immediately after they are posted on this page.

Contact Us

If you have any questions or suggestions about our Privacy Policy, do not hesitate to contact us.