Privacy Policy
Aurum Home Care Ltd
Privacy and Confidentiality Policy and Procedure
Effective Date: 14 November 2024
Review Date: 14 November 2025
Completed By: Lynda Febers
​
1. Policy Statement
Aurum Home Care Ltd is committed to maintaining the privacy, confidentiality, and security of personal information of its clients, employees, and partners. This policy outlines the standards and procedures we follow to ensure compliance with applicable laws, including the Data Protection (Jersey) Law 2018 and relevant healthcare and privacy regulations. Our goal is to uphold the rights of individuals to privacy and confidentiality, ensuring trust and respect in all our interactions.
2. Scope
This policy applies to all Aurum Home Care Ltd employees, contractors, and anyone who has access to confidential information about our clients, staff, or business operations.
3. Purpose
The purpose of this policy is to:
-
Protect the privacy and confidentiality of client and employee information.
-
Comply with the Data Protection (Jersey) Law 2018 and other relevant legal and regulatory requirements.
-
Provide clear procedures for the handling, storage, and sharing of personal information.
-
Outline the consequences of breaches of confidentiality.
​
4. Definitions
-
Personal Data: Any information that relates to an identifiable individual, including names, addresses, contact details, medical history, care plans, and financial information.
-
Confidential Information: All information obtained by employees through their work, which is not public knowledge and may include client health records, company policies, and employee information.
-
​
5. Legal and Regulatory Compliance
Aurum Home Care Ltd adheres to the following laws and regulations concerning privacy and confidentiality:
-
Data Protection (Jersey) Law 2018: Governs the collection, use, and management of personal data.
-
Health and Social Care Act (where applicable): Provides guidelines for handling sensitive health information.
-
Human Rights (Jersey) Law 2000: Recognises the right to privacy.
Failure to comply with these laws may result in penalties for the organisation and disciplinary actions for individuals involved.
​
6. Data Collection and Use
Aurum Home Care Ltd collects only the necessary information required to provide effective and safe care for our clients. Data collection and use are guided by the following principles:
-
Transparency: Clients will be informed of the types of information collected, the purposes for collection, and their rights to access and correct data.
-
Purpose Limitation: Personal data will only be used for the specific purposes for which it was collected and will not be shared without consent unless required by law.
-
Data Minimisation: Only information necessary for care provision and service improvement will be collected.
-
​
7. Consent and Rights of Individuals
-
Client Consent: Consent will be obtained from clients or their legal representatives before collecting or sharing personal information, except in emergency situations or as legally required.
-
Right to Access: Clients have the right to request access to their information and to have any inaccuracies corrected. Requests should be directed to the Data Protection Officer.
-
Right to Withdraw Consent: Clients have the right to withdraw consent to data processing at any time.
-
​
8. Storage and Retention
All personal data is stored securely in accordance with Data Protection (Jersey) Law 2018 requirements:
-
Electronic Records: Securely stored on encrypted devices and password-protected systems. Access is restricted to authorized personnel.
-
Physical Records: Stored in locked cabinets in restricted-access areas.
-
Data Retention: Personal data is retained only as long as necessary for the purposes for which it was collected, after which it will be securely deleted or destroyed.
-
​
9. Data Sharing and Disclosure
Aurum Home Care Ltd may disclose personal data to third parties only under the following conditions:
-
With the client’s explicit consent.
-
When required by law, such as for regulatory audits or legal investigations.
-
When disclosure is necessary to protect the client’s vital interests (e.g., in an emergency).
All third-party service providers must agree to confidentiality agreements and comply with Data Protection (Jersey) Law 2018 standards.
​
10. Confidentiality Obligations of Staff
All Aurum Home Care Ltd employees are required to:
-
Sign confidentiality agreements as a condition of employment.
-
Access and use client information strictly on a need-to-know basis.
-
Avoid discussing client information outside of work or in non-secure environments.
-
​
11. Training
All employees receive initial and ongoing training on privacy and confidentiality, covering:
-
Understanding and implementing this policy.
-
The rights and responsibilities related to data protection.
-
How to report and respond to data breaches.
-
​
12. Breach of Confidentiality
Breaches of this policy are taken seriously and will be investigated promptly. Actions include:
-
Notifying affected individuals if a breach occurs.
-
Reporting to relevant authorities where required.
-
Taking disciplinary actions against employees who fail to comply with confidentiality obligations, up to and including termination of employment.
-
​
13. Monitoring and Review
The policy will be reviewed annually or when significant changes occur in relevant laws or business operations to ensure ongoing compliance and effectiveness.
​
Document Control
Approved By: Lynda Febers – Director / Registered Manager
Signature: LJ Febers
