RGPA Self Referral - Privacy Policy

We (Bluestep Solutions) collect your personal information on behalf of HOUNSLOW AND RICHMOND COMMUNITY HEALTHCARE NHS TRUST so we can provide you with their physiotherapy service.

What personal data do you collect?

In order to provide you with this service, we collect the following personal information:

  • Full Name
  • Gender
  • Date of Birth
  • Email address
  • Postcode
  • Address
  • Contact telephone number
  • NHS Number (if known)
  • Registered GP Surgery
  • Language spoken
  • Ethnicity
  • Occupation
  • Details about your medical symptoms
  • How your symptoms are affecting you
  • Details of existing medical conditions
  • Any medication you may be taking
  • Any other relevant information

Who do you share my personal data with?

We will only share your personal information with the following organisations:

  1. HOUNSLOW AND RICHMOND COMMUNITY HEALTHCARE NHS TRUST - who have contracted us to help them provide this service

How long do you keep my personal information?

We will only keep your personal information on our system for six months this is to allow queries to be resolved and analytical reporting of the service.

What are my rights in relation to my personal information?

Bluestep Solutions is not the Data Controller for the personal information we collect and hold about you. For further details about your rights in relation to your personal information, please contact:

Data Protection Officer (Information Governance Manager)
180 High St
Teddington
TW11 8HU

Or

View HRCH's Privacy Notice at hrch.nhs.uk/privacy-policy/

How are you protecting my personal information?

Communications between your computer/device and our server is secured using a Secure Socket Layer (SSL) Certificate which keeps your personal information secure by encrypting it. This prevents any computer in the middle from reading the information. We also protect your personal information by storing it in a secure database.

Do you use cookies?

We use the following cookies:

  • laravel_session - used to run our service, this is not used to store personal information about you.
  • XSRF-TOKEN - used to run our service, this is not used to store personal information about you.