Privacy Notice

1. Introduction

Sidra Medicine (hereinafter referred to as "Sidra", "we", "our" or "us") is committed to respecting your privacy, including your health information, while enhancing your patient experience with us.

We are an ultra-modern, digital academic medical center offering specialty care for women and children and encompass three essential missions: world-class patient care, medical education and research center.

Our registered address is Al Luqta Street, PO Box 26999, Doha, Qatar.

This Privacy Notice provides information about who we are and how we use and share your Personal Data when you register on the Sidra Medicine Mobile App (the "App"). We mainly use your Personal Data so that the App works correctly. It means we can give you access to services and information about your health and care, including for the Purposes specified in Section 5.2 of this Privacy Notice.

The Terms of Use of the App can be found HERE, which also includes terms relating to creating accounts of another individual where you are their legally authorized representative.

Personal Data means any information relating to a person whose identity can be identified or identifiable, whether directly or by combing it with other information.

2. Our Contact Details

If you have any questions about this Privacy Notice, the use of your Personal Data or you wish to exercise any of your rights, please contact us by e-mail to pcg@sidra.org.

3. Type of Personal Data we collect from you

3.1 When you register for the App, we will collect the following information from you:

3.2.1 All the information on your Identification document (National ID or Passport), such as your Full Name, Date of Birth, Nationality, gender ("Identity").

3.2.2 Contact number and/or e-mail Address ("Contact").

3.2.3 Your username, password and requests made by you (such as medical history request and appointment request) ("Profile").

3.2 When you Use the App, your IP address and event logs will be collected by default ("Online Identifier").

4. Type of Personal Data we collect from others

4.1 If you are a resident or citizen of Qatar and you are registering on the App, by providing your QID number to us, Qatar's Ministry of Interior will share the below information with us about you:

5. How we use your Personal Data

5.1 We Qatar's Personal Data Privacy Protection Law allows us to process your Personal Data provided we have a valid legal basis. To process your Personal Data, we rely on one or more of the following legal bases:

5.2 Below is a table format that provides a description of all the ways we plan to use the various categories of your Personal Data and connecting them to the legal bases we will rely on.

Purpose Type of Personal Data Legal Basis
Verify your identification for giving you access to enjoy the services available on the App and to address your data subject rights (a) Identity
(b) Contact
(a) Contract Performance
(b) Legal Obligation
Manage our relationship with you, including contacting you for assistance related to our medical services (a) Identity
(b) Contact
(a) Contract Performance
(b) Legitimate Interest
Provide information to you which has been requested by you through the App (a) Identity
(b) Contact
Contract Performance
Build and maintain Your record relating to the services being provided on the App, so that the App can deliver personalized services to you (a) Identity
(b) Contact
(c) Profile
(a) Contract Performance
(b) Legal Obligation
(c) Legitimate Interest
Facilitate the App's operations Identity (a) Legitimate Interest
(b) Legal Obligation
Identify any violation of the Terms of Use of the App (a) Identity
(b) Profile
(a) Legitimate Interest
(b) Legal Obligation
Maintain Appropriate Security measures Identity
Profile
(a) Legitimate Interest
(b) Legal Obligation
This may be used to log events, trace faults and provide security protective monitoring log data. Online Identifier (a) Legitimate Interest
(b) Legal Obligation
Update you about our services related to the App. Contact Consent

6. Who do we share your Personal Data with

7. How long can we retain your data for?

We keep your Personal Data for as long as it is necessary to fulfill the Purpose/s stated above or until you withdraw your consent (where applicable), unless applicable law requires otherwise, in which case, such Personal Data will be retained for as long as the applicable law mandates. We may retain your Personal Data for a longer period in the event of a complaint or if we reasonably believe there is a prospect of litigation in respect of our relationship with you.

8. Security

The App stores your Personal Data in secure systems and there are facilities designed to protect against unauthorized access, use, or disclosure. We employ stringent physical, technical, and administrative safeguards, which are regularly reviewed and updated to ensure compliance with our security policies and to strengthen our protection capabilities.

Once you have downloaded a file from your health record, or from the record of someone else, it is your own responsibility to keep the file secure. If you use a shared computer or mobile, make sure you delete any downloaded files when you are finished.

9. Your rights

The table below specifies your rights regarding the Personal Data you have shared with us. We may need to validate your identity to fulfill your request. The below rights may be exercised on behalf of a person if you are their legally authorized representative or guardian and their account is under your registration (where applicable).

Once we receive a request from you and we confirm that the requested right applies, we will take all reasonable steps to implement your request.

You can request to exercise your right/s at any time by contacting us on the "Our Contact Details" section above in this Privacy Notice.

Right Description
Right to withdraw consent You have the right to withdraw your consent at any time.
Right to object You may have the right to object to processing your Personal Data or any part of it. This may be done by virtue of the right to withdraw consent and/or if the Personal Data we are collecting is beyond the extent required, discriminatory, unfair or illegal.

Please note, you must give a specific reason for objecting, and we can accommodate your request unless we can otherwise demonstrate your reasoning of objecting.
Right to erasure You can ask us to delete or remove your Personal Data (in whole or in part) when and if: (i) you choose to implement your right to withdraw consent; (ii) the processing is no longer necessary; (iii) such Personal Data is beyond the extent required; (iv) processing of the Personal Data is discriminatory, unfair or illegal; (v) where the purpose or reasons for processing the Personal Data no longer exists.

Please note, the point above may not apply if the law mandates otherwise or if the request is deemed excessive or malicious.
Right to access your Personal Data You have the right to: (i) contact us and understand what Personal Data we hold about you and why; and (ii) obtain a copy of the Personal Data after paying an amount that will not exceed the service charge.
Right to Request for Correction of your Personal Data If you believe that we hold inaccurate or incomplete Personal Data about you or a person you are a legal guardian of, you have the right to request us to rectify or correct such Personal Data. We may request information from you for the purpose of verification.
Right to lodge a complaint If you are not satisfied with how your rights are managed, you may lodge a complaint with Qatar's National Cyber Governance and Assurance Affairs.

10. Notification of Changes to this Privacy Policy

10.1 This Policy may be updated from time to time as new features and services are introduced, as laws change, and as industry privacy and security practices evolve. The most current version of this Policy will be available within the Sidra Medicine Mobile App. We will take reasonable steps to notify you of any material changes. The effective date and the most recent revision date will be displayed at the top of the Policy so you can easily identify updates.

10.2 Your continued use of the Sidra Medicine Mobile App after changes are posted constitutes acceptance of the revised terms. Changes that do not materially impact individual privacy rights may be made at any time without prior notice.