Javascript is required
logo-dastralogo-dastra

GDPR Data processing modelPatient management in a medical practice

PrivateHealthPublic
Processing of patient personal data for the purpose of telemedicine, appointment scheduling, healthcare record keeping, and administrative and accounting tasks related to private or public medical practice operations.

Purposes (6)

A purpose is the objective pursued by the setting up of your file. It indicates what the processing of personal data will be used for, its purpose. This purpose must be clear and understandable

1
telemedicine (physicians)
Legitimate interest
Art. 6(1)(f) Legitimate Interests and Art. 9(2)(h) – medical diagnosis and treatment
2
appointment scheduling
Legitimate interest
Art. 6(1)(b) Contract or 6(1)(f) Legitimate Interests, depending on patient relationship stage
3
bookkeeping
Legal obligation
Art. 6(1)(c) Legal obligation – accounting under UK Companies Act 2006 and HMRC retention rules
4
health care record keeping
Legal obligation
Art. 6(1)(c) Legal obligation, Art. 9(2)(h) – Records Management Code of Practice 2021
5
Telecare (paramedics/pharmacists)
Legitimate interest
Art. 6(1)(f) Legitimate Interests and Art. 9(2)(h) – medical diagnosis and treatment
6
medical record keeping
Legal obligation
Art. 6(1)(c) and Art. 9(2)(h) – required by NHS practice codes and medical professional guidance

Data categories (6)

Personal data is any information relating to an identified or identifiable natural person. A natural person can be identified either directly (eg surname and first name) or indirectly (eg phone number, social security number, email or postal address, but also voice or image)

health

Data details


any element likely to characterize the patient's healthrequiredsensitive data
nature of acts performedrequiredsensitive data
prescribed treatmentsrequiredsensitive data
Therapyrequiredsensitive data
medical diagnosesrequiredsensitive data
Medical Historyrequiredsensitive data
weight and sizerequiredsensitive data

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 years

Destruction

Professional situation

Data details


working conditionsrequired
professionrequired

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 years

Lifestyle & Family

depending on the context, as long as it is collected with the patient's consent and is necessary for the diagnosis and care of the patient

Data details


leisurerequired
diet and eating behaviorrequired
exercise

Definition

intensity, frequency, duration

required
assistance

Definition

aide-ménagère, familiale

required
dependence

Definition

alone, institutionalized, independent, bedridden

required

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 years

Destruction

Audit trails

Data details


Technical audit trails

Definition

Audit trails that report on the activity of the software and hardware components used by the information system to provide the functionality requested by a user or machine.

optional
Functional audit trails

Definition

Audit trails that report on the business actions of users or machines within the information system.

optional

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 years

Destruction

family situation

Data details


Number of childrenrequired
Marital status

Definition

Single, married, cohabiting etc.

required

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 years

Destruction

Patient identification

Data details


Identifiant national de santé (INS) required
National Insurance numberrequiredsensitive data
phone numberrequired
Email addressrequired
Postal Addressrequired
Date of birth

Definition

person's date of birth

required
name

Definition

Name of the person

required
First namerequired

Data conservation rules

Active base:

5 years in active base

Intermediate archiving:

15 years in intermediate archive

Destruction

Data subject (1)

A data subject is any person whose data is collected, retained or processed by the data processing. e.g. In a recruitement process, any candidate for a position proposed in recruitement management process

  • Other

Created at:07/08/2023

Updated on:07/07/2025

License: © Creative commons :
Attribution / Pas d'utilisation commerciale
CC-BY-NC AttributionPas d'utilisation commerciale

Nb using:3


Access the full processing template

Try Dastra now to access all of our data processing templates that you can customize for your organization.It's free and there's no obligation for the first 30 days (no credit card required)

Add to my data processings record
Subscribe to our newsletter

We'll send you occasional emails to keep you informed about our latest news and updates to our solution

* You can unsubscribe at any time using the link provided in each newsletter.