1. Introduction
HeartLINK+ is committed to protecting and respecting your privacy. This privacy statement sets out the basis on which we will process any personal information that we may collect about you as a visitor to our website, or other business partners.
We therefore ask you to read this privacy statement carefully.
We may process information that we collect about you or that you give to us via filling in forms on our website or applications (or other forms that we ask you to complete), or corresponding with us by telephone, post, email or otherwise.
Information that our website and other systems collect about you:
If you visit our website, it will automatically collect some information about you and your visit, including the internet protocol (IP) address used to connect your device to the internet and some other information such as your browser type and version and the pages on our site that you visit.
Our website may also download "cookies" to your device.
If you exchange emails, telephone conversations or other electronic communications with our employees and other staff members, our information technology systems will record details of those conversations, sometimes including their content.
2. Data To Be Collected
For the purpose of providing you with services set out in our Terms and Conditions, HeartLINK+ may obtain and store your data including the following:
- Personal Data: Name, date of birth, gender, contact details, national identification card details, residential/occupational address.
- Health Data: Vitals, ECG, stethoscope recordings, diagnostic results, medical history.
- Payment Data: Mobile money or card transactions details.
- Location Data: Kiosk/hospital screening locations.
- Device Data: Internet Protocol (IP) address, device ID, cookies, application usage logs.
- Communication Data: In-app messages, notifications, support requests.
3. Data Processing & Use
To enable us provide you with the services aforementioned, we process your data among others, for:
- Patient registration, triage, and referrals to health facilities
- Automated and cardiologist-reviewed diagnostics
- Secure communication and reporting
- Billing and subscription management
- Research and public health initiatives (anonymized where possible)
4. Data Sharing & Access
Your data may be shared with:
- Cardiologists & physicians (for review and diagnosis)
- Hospital administrators (for referrals and follow-up)
- Central HeartLINK+ administrators (for compliance and technical support)
- Hubtel and Twilio (Only limited data such as phone number for SMS)
HeartLINK+ shall not sell or rent your personal data.
5. Data Privacy and Confidentiality
HeartLINK+ is committed to protecting user data in accordance with the Ghana Data Protection Act. Users consent to the collection, storage, and processing of their data for the purposes outlined in this document.
HeartLINK+'s obligations on data protection and confidentiality do not extend to information that is:
- Publicly known at the time of disclosure or subsequently becomes publicly known through no fault of HeartLINK+;
- Discovered or created by HeartLINK+ before disclosure by Disclosing Party;
- Learned by HeartLINK+ through legitimate means other than from the Disclosing Party or Disclosing Party's representatives;
- Disclosed by HeartLINK+ with Disclosing Party's prior written approval;
- Disclosed pursuant to order of Court or Statutory obligation.
6. We may use your information for the following purposes:
- To operate, administer and improve our website or applications and other aspects of the way in which we conduct our operations;
- To comply with our legal and regulatory obligations and bring and defend legal claims;
- To operate, manage, develop and promote our business and, in particular, our relationship with the organisation you represent (if any) and related transactions – for example, for marketing purposes;
- To protect our business from fraud, money-laundering, breach of confidence, cyber-attack, theft of proprietary materials and other financial or business crimes.
Your emails and other communications may also occasionally be accessed by persons other than the member of staff with whom they are exchanged for ordinary business management purposes.
We will only process your personal information as necessary so that we can pursue the purposes described above, and then only where we have concluded that our processing does not prejudice you or your privacy in a way that would override our legitimate interest in pursuing those purposes.
If you are uncertain as to HeartLINK+'s need for information that we request from you, please contact the HeartLINK+ representative asking for the information, or Contact us privacy@heartlink.com, with your query.
7. Retention and deletion of your information
We intend to keep your personal information accurate and up to date. We will delete the information that we hold about you when we no longer need it.
Note that we may retain some limited information about you even when we know that you have left the organisation that you represent, so that we can maintain a continuous relationship with you if we are in contact with you again, representing a different organisation.
8. Your rights
You may have a right of access to the personal information that we hold about you, and to some related information, under data protection law. You can also require any inaccurate personal information to be corrected or deleted.
You can object to our use of your personal information for direct marketing purposes at any time and you may have the right to object to our processing of some or all your personal information (and require them to be deleted) in some other circumstances.
In some circumstances, you may also have a "data portability" right to require us to transfer your personal data to you or to a new service provider.
If you wish to exercise any of the rights referred to above, please contact us on privacy@heartlink.com.
We welcome questions, comments and requests regarding this privacy statement and our processing of personal information.
10. Exclusions
HeartLINK+ shall by its best endeavour ensure satisfactory delivery of services to cherished clients via this digital platform except that HeartLINK+ shall not be held liable for the following:
- Data privacy and security breaches caused by client
- Miscommunication or misdiagnosis, which miscommunication or misdiagnosis was not due to negligence on the part of HeartLINK+, its associates or partners
- Device or connectivity failures which were not caused by the negligence of HeartLINK+, its associates or partners
11. Data Security
Based on our obligation to ensure that personal data disclosed to us as a result of usage of our applications is protected in compliance with the Data Protection Act of Ghana and any other relevant and applicable law, one time password (OTP) authentication, secure password reset, encrypted cloud and regular backups & disaster recovery systems and safeguards have been put in place.
12. Communications
Patients receive updates via push notifications, SMS, or email. However, users may opt-in/opt-out of marketing communications.
13. Third-Party Integrations
HeartLINK+ integrates with AliveCor, Eko stethoscopes, and other approved diagnostic devices. Data is only shared with these devices under strict safeguards.
14. Updates to Policy
We may update this Privacy Policy from time to time. Changes will be posted on our website/app with an effective date. Continued use of HeartLINK+ after updates implies consent.
Contact Us
HeartLINK+ Data Protection Officer
- Email: privacy@hlinkplus.com
- Phone:+1(832) 669-1126
- Location: Ghana