victoria hospital myanmar

Terms of Use & Privacy Policy


1. Introduction

Victoria Hospital provides digital healthcare services through the Victoria Hospital Mobile Application (“Application” or “App”) to facilitate patient access to healthcare services, medical information, and communication with healthcare providers. The Hospital recognizes that digital health services must operate within strict standards of patient privacy, confidentiality, information security, and ethical healthcare delivery. This policy establishes the terms governing the use of the Application and outlines how Victoria Hospital collects, uses, protects, and manages patient information. All users accessing the Application agree to comply with the conditions described in this document.

2. Purpose

The purpose of this policy is to:

  • Define the terms of use for the Victoria Hospital Mobile Application.
  • Establish privacy and data protection principles for patient information.
  • Ensure secure, ethical, and compliant use of digital healthcare services.
  • Protect patient confidentiality and information security.
  • Clarify the rights, responsibilities, and obligations of users and the Hospital.

3. Objectives

The objectives of this policy are to:

  1. Ensure the safe and secure use of the Hospital mobile application.
  2. Protect patient privacy and confidentiality in digital health services.
  3. Define account registration, authentication, and security requirements.
  4. Establish clear guidelines for data collection, use, disclosure, and retention.
  5. Support regulatory compliance, ethical healthcare practice, and digital governance.
  6. Promote transparency and accountability in handling patient information.

4. Scope

This policy applies to:

  • All patients, caregivers, and legal representatives using the mobile application.
  • Healthcare professionals accessing services through the application.
  • Hospital administrative and technical staff managing the application.
  • All digital services provided through the Victoria Hospital Mobile Application.

The policy covers:

  • Online healthcare services provided through the application
  • Patient data privacy and confidentiality
  • Security and access control measures
  • Use, disclosure, and management of patient information

5. Definitions

Application / App
The Victoria Hospital Mobile Application used to access digital healthcare services.

Central Patient Index (CPI)
The unique identifier assigned to each patient within the Hospital Information System.

Personal Identifiers
Information used to identify a patient, including name, contact information, date of birth, and demographic details.

Health Information
Clinical data such as diagnoses, laboratory results, imaging reports, medications, allergies, and treatment records.

Privacy
The patient’s right to control the collection, use, and disclosure of personal information.

Confidentiality
The obligation to protect patient information from unauthorized access, use, or disclosure.

OTP (One-Time Password)
A temporary authentication code used to verify user identity during account access.

6. Roles and Responsibilities

Hospital Leadership

  • Ensure governance of digital health services.
  • Maintain compliance with privacy laws and healthcare standards.

Information Technology Department

  • Maintain secure infrastructure and system functionality.
  • Implement authentication, encryption, and cybersecurity safeguards.

Healthcare Professionals

  • Access patient information only for legitimate clinical purposes.
  • Maintain confidentiality and comply with professional codes of conduct.

Administrative and Technical Staff

  • Ensure secure management of system data and patient information.

Application Users (Patients / Caregivers)

Users are responsible for:

  • Providing accurate and truthful information
  • Maintaining confidentiality of login credentials
  • Reporting unauthorized access or security concerns
  • Using the Application responsibly and lawfully

7. Policy Statement

7.1 Terms of Use

By downloading, accessing, or using the Victoria Hospital Mobile Application, users acknowledge that they have read and accepted the Terms of Use and Privacy Policy.

If users do not agree with these terms, they must discontinue use of the Application.

7.2 Eligibility and Legal Responsibilities

Users must:

  • Be 18 years of age or older, or
  • Use the Application under the legal authority of a parent, guardian, or authorized representative.

Users confirm that they have the legal authority to provide consent and information on behalf of the patient.

7.3 Account Registration, Verification, and Security

Account Registration

Users must create a secure account linked to their Central Patient Index (CPI) within the Hospital Information System.

Identity Verification

User identity is verified through a One-Time Password (OTP) sent to the registered mobile number.

User Security Responsibilities

Users must safeguard:

  • Username
  • Password
  • OTP and authentication credentials

Victoria Hospital is not responsible for unauthorized access caused by failure to protect login credentials.

7.4 Digital Healthcare Services

The Application provides access to selected digital healthcare services including:

Online Appointment Scheduling

  • Users may request appointments based on physician availability.
  • Availability may change due to operational or clinical requirements.

Access to Medical Reports

Users may view selected:

  • Laboratory results
  • Imaging reports

These reports do not replace medical consultation.

Medication and Treatment Records

Users may review prescribed medications and treatment history for informational purposes.

Clinical decisions must always be made in consultation with healthcare professionals.

7.5 Disclaimer

Information provided through the Application:

  • Is for informational purposes only
  • Does not constitute medical advice, diagnosis, or treatment
  • Should not replace consultation with a qualified healthcare provider

Users rely on Application information at their own risk.

7.6 Service Availability and Limitations

Application services depend on:

  • Internet connectivity
  • Third-party technology providers
  • Hospital information systems

Victoria Hospital cannot guarantee continuous or uninterrupted access and is not liable for service interruptions caused by technical limitations.

Privacy and Confidentiality

7.7 Collection of Patient Information

The Hospital collects only the minimum information necessary for healthcare services.

Categories of information include:

Personal Identifiers

  • Name
  • CPI
  • Contact details
  • Demographic data

Health Information

  • Diagnoses
  • Laboratory results
  • Imaging reports
  • Medications
  • Treatment records
  • Allergies and medical history

Administrative Information

  • Appointment schedules
  • Visit history
  • Communication logs

Technical Data

  • Device type
  • Operating system
  • IP address
  • Login timestamps

7.8 Purpose of Data Collection

Patient data is collected for:

  1. Clinical care delivery
  2. Care coordination
  3. Administrative management
  4. Legal and regulatory compliance
  5. Quality improvement and research
  6. System security and maintenance

Victoria Hospital follows the Minimum Necessary Principle in accordance with WHO digital health guidance.

7.9 Patient Consent and Rights

Patients retain autonomy over their personal health information.

Key consent principles include:

Implied Consent
Use of patient information for routine clinical care.

Explicit Consent
Required for research or specific disclosures.

Withdrawal of Consent
Patients may withdraw consent where legally permissible.

7.10 Use, Disclosure, and Retention

Patient information may be disclosed only when necessary:

  • Healthcare providers directly involved in care
  • Contracted service providers under confidentiality agreements
  • Legal or regulatory authorities
  • Public health reporting
  • Approved research activities

Information is retained according to clinical, legal, and regulatory requirements.

Secure disposal procedures apply when information is no longer required.

7.11 Safeguards and Data Security

Victoria Hospital implements:

Technical Safeguards

  • Encryption
  • Secure authentication
  • Role-based access controls
  • System monitoring and audit trails

Physical Safeguards

  • Restricted access to server infrastructure
  • Environmental and security controls

Organizational Safeguards

  • Staff confidentiality agreements
  • Privacy training
  • Incident reporting mechanisms

7.12 Transparency and Accountability

Victoria Hospital promotes transparency in data handling by:

  • Publishing the Privacy Policy in the Application and on the Hospital website
  • Providing information upon patient request
  • Conducting internal audits and compliance monitoring

7.13 Complaints and Reporting

Patients or staff may report concerns regarding privacy or confidentiality.

All reports are:

  • Investigated promptly
  • Handled confidentially
  • Addressed through corrective action and staff education when required.

8. Monitoring

Victoria Hospital will monitor compliance with this policy through:

  • Internal audits
  • Information security reviews
  • Privacy compliance assessments
  • Incident reporting systems

Findings will be reviewed by relevant hospital governance committees.

9. Training

All personnel involved in managing or accessing the Application must receive training on:

  • Privacy and confidentiality
  • Data protection practices
  • Secure handling of patient information
  • Digital health governance

Training will be conducted periodically and during staff onboarding.

10. Reviewing

This policy shall be reviewed:

  • Every two years, or
  • Earlier if required due to regulatory changes, technological updates, or operational needs.

Revisions must be approved through hospital governance processes.

11. References

  • World Health Organization Digital Health Guidelines
  • Joint Commission International (JCI) Standards
  • National Health Information Privacy Regulations
  • Victoria Hospital Information Security Policies

12. Authorization