Javascript is required
logo-dastralogo-dastra

GDPR Data processing modelPatient management in a medical practice

By: Ludwig Karneth
PrivatePublicSanté
The purpose of this processing is to manage patients in medical practices: telemedicine, patient record keeping, appointment scheduling, accounting...

Purposes (6)

A purpose is the objective pursued by the setting up of your file. It indicates what the processing of personal data will be used for, its purpose. This purpose must be clear and understandable

1
telemedicine (physicians)
Legitimate interest
Necessary to carry out the remote activity
2
bookkeeping
Legitimate interest
Necessary for the accounting management of the firm
3
medical record keeping
Legal commitment
Article R. 4127-45 du code de la santé publique
4
appointment scheduling
Legitimate interest
Contact necessary to manage the medical appointment
5
telesoin (pharmacists or paramedics)
Legitimate interest
Necessary to carry out the remote activity
6
health care record keeping (e.g. nursing care record)
Legal commitment
Article R. 4127-45 du code de la santé publique

Data categories (6)

Personal data is any information relating to an identified or identifiable natural person. A natural person can be identified either directly (eg surname and first name) or indirectly (eg phone number, social security number, email or postal address, but also voice or image)

health

Data details


any element likely to characterize the patient's healthrequiredsensitive data
nature of acts performedrequiredsensitive data
prescribed treatmentsrequiredsensitive data
Therapyrequiredsensitive data
medical diagnosesrequiredsensitive data
Medical Historyrequiredsensitive data
weight and sizerequiredsensitive data

Data conservation rules

Active base:

5 ans

Intermediate archiving:

15 ans

professional situation

Data details


working conditionsrequired
professionrequired

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 ans

lifestyle information

depending on the context, as long as it is collected with the patient's consent and is necessary for the diagnosis and care of the patient

Data details


leisurerequired
diet and eating behaviorrequired
exercise
required
assistance
required
dependence
required

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 ans

traces fonctionnelles et techniques

Data details


Technical traces
required
traces fonctionnelles
required

Data conservation rules

Active base:

5 ans

Intermediate archiving:

15 ans

family situation

Data details


Number of childrenrequired
Marital status
required

Data conservation rules

Active base:

5 years

Intermediate archiving:

15 ans

patient identification

Data details


Identifiant national de santé (INS) required
Social Security Numberrequiredsensitive data
phone numberrequired
Email addressrequired
Postal Addressrequired
Date of birth
required
prénomrequired
name
required

Data conservation rules

Active base:

5 years in active base

Intermediate archiving:

15 years in intermediate archive

Data subject (1)

A data subject is any person whose data is collected, retained or processed by the data processing. e.g. In a recruitement process, any candidate for a position proposed in recruitement management process

  • Other

Author:
Ludwig Karneth
Ludwig Karneth

Created at:2023-08-08T12:04:16.7731516

Updated on:

License: © Creative commons :
Attribution / Pas d'utilisation commerciale
CC-BY-NC AttributionPas d'utilisation commerciale

Nb using:1


Access the full processing template

Try Dastra now to access all of our data processing templates that you can customize for your organization.It's free and there's no obligation for the first 30 days (no credit card required)

Add to my data processings record
Subscribe to our newsletter

We will send you a few emails to keep you informed of our news and what's new in our solution

* You will always be able to unsubscribe on each newsletter. Learn more.