top of page

Privacy Policy

This Privacy Policy sets out our commitment to protecting the privacy of personal information provided to us, or otherwise collected by us, offline or online, including through our website (Site). In this Privacy Policy we, us or our means Patienteer PTY LTD (ABN 70 600 607 768) and all associated companies.

1. Who we are
For the purposes of this notice, the data controller is Teerco UK LIMITED and all related entities. ("Patienteer", "we", "us", "our"), company number, registered office at Harwood House, 43 Harwood Road, London, SW6 4QP.
Our ICO registration number is ZA933188 (you can verify this on the ICO's public register).
Where a specific product, instance or service has its own privacy notice, that notice applies in place of this one for that product or service — see section 16.


2. What this notice covers
This notice explains what personal data we collect through this website and our wider business dealings, how and why we use it, who we share it with, how long we keep it, and what rights you have. It applies to visitors to patienteer.com, people who contact us, prospective and existing customer organisations and their staff, and anyone else who interacts with us other than through the Patienteer application itself.


3. Our role: when we are a processor, and when we are a controller
Patienteer occupies two different positions under data protection law, and it matters which one applies to your question:
•    Patient and service-user data handled within the Patienteer application (care and administrative information about patients) — Patienteer acts only as a data processor. The NHS trust, ICB, PCN or GP practice using Patienteer is the data controller for that data and is responsible for telling patients how it's used. This website notice does not cover that processing — see section 13 for how to find the right contact.
•    Everything else covered by this notice (this website, enquiries, marketing, events, supplier and customer-organisation contacts, recruitment) — Patienteer acts as the data controller, and the rest of this notice explains that processing directly.


4. The personal data we collect
A. Information you provide directly
•    name, job title and organisation
•    business email address and phone number
•    account or login details, where you have an account with us
•    the content of enquiries, messages, demo requests or support requests you send us
•    information you give us when registering for events, downloading content, or subscribing to updates
•    marketing preferences
B. Information we collect automatically
•    IP address, browser/device type, referral source, pages visited, dates/times of visits, cookie identifiers
Some of this is collected via cookies and similar technologies
C. Information we receive from other sources
•    the customer organisation you work for, where relevant to our contract with them
•    business partners, resellers or implementation partners
•    event organisers
•    publicly available sources, such as your organisation's website or professional networking profiles


5. How we use personal data
We may use personal data to:
•    respond to enquiries and requests, and provide information, demonstrations or materials you ask for
•    manage our relationship with your organisation, including account administration and support
•    operate, maintain and improve this website and our services
•    monitor the performance, security and reliability of our systems
•    send marketing communications where you've asked for them or where the law otherwise permits
•    organise and administer events, webinars and newsletters
•    carry out business administration, reporting and record-keeping
•    prevent fraud, misuse and security incidents
•    establish, exercise or defend legal claims
•    comply with our legal, regulatory and contractual obligations


6. Our legal bases for processing
We only use personal data where we have a valid legal basis, and only for the purpose we collected it for unless a new purpose is compatible with the original one (in which case we'll tell you). Depending on the activity, we rely on:
•    Consent — for certain marketing activity and non-essential cookies. You can withdraw consent at any time; this doesn't affect processing already carried out.
•    Contract — where processing is necessary to enter into or perform a contract with you or your organisation.
•    Legal obligation — where we must process data to comply with the law.
•    Legitimate interests — where processing is necessary for our legitimate business interests (or a third party's) and isn't overridden by your rights. Examples include running and improving our website and services, managing customer relationships, keeping our systems secure, understanding how our site is used, and reasonable business-to-business marketing.


7. Marketing and communications
Where you've asked to hear from us, or the law otherwise permits, we may send information about Patienteer's products, services, events and updates, which may be informed by your organisation type, the content you've engaged with, or events you've attended. We don't use this to make solely automated decisions with legal or similarly significant effects on you.
You can object to marketing, or withdraw consent where that's the basis we rely on, at any time using the contact details in section 18.


8. Cookies and similar technologies
We use cookies to support core website functionality and, where you consent, to analyse usage and improve the site. Non-essential cookies are only set with your consent, which you can manage at any time via our cookie settings tool. Declining non-essential cookies won't stop you using the core site.


9. Who we share personal data with
We may share personal data, where necessary, with:
•    service providers who support our operations — for example website hosting, analytics, IT, security, communications and event management providers
•    professional advisers, including legal, audit and insurance advisers
•    regulators, law enforcement or public bodies where we're required or permitted to
•    business partners or resellers, where relevant to services requested
•    a potential buyer, investor or their advisers in connection with a corporate transaction, subject to appropriate safeguards
Where a third party processes personal data on our behalf, we require them to do so only on our instructions and under appropriate contractual and security safeguards. A current list of our sub-processors is:
Provider    Details    Data Subjects
Microsoft 365    Used by Staff to carry out business operations.    All Customers
JIRA / Atlassian    Provision of resource management, customer ticketing and asset management services.     All Customers
Mohawk    Security Monitoring  and service provision for corporate activities.    All Customers

This section covers Patienteer's own business-related data sharing. It does not describe how patient data within the Patienteer application is shared — that's governed by the contract between the relevant NHS organisation and Patienteer, and by that organisation's own privacy notice.


10. International transfers
We are primarily a UK-based business. Where a service provider or the data itself is processed outside the UK, we put appropriate safeguards in place, such as a UK adequacy regulation, the UK International Data Transfer Agreement, the UK Addendum to the EU Standard Contractual Clauses, or another lawful transfer mechanism. Contact us for more detail on a specific transfer.


11. How long we keep personal data
We keep personal data only as long as necessary for the purpose it was collected for, including to meet legal, regulatory, tax or accounting obligations, or to establish, exercise or defend legal claims. Typical periods:
•    enquiry records may be retained for a limited period after the enquiry has been resolved
•    contract and customer relationship records retention period may be for the duration of the relationship and a reasonable period after.
•    Technical/security log retention periods may depend on the operational and / or security needs.
Where possible, we may anonymise data so it can no longer identify you, and may then keep and use it without further notice.


12. How we protect personal data
We use technical and organisational controls designed to protect personal data such as access controls, authentication, encryption, monitoring, staff training and supplier contracts. No method of transmission or storage is completely secure, but we take reasonable steps consistent with applicable law and our DSPT commitments.


13. Your rights
Subject to applicable law, you may have the right to access, correct, erase or restrict your personal data, object to processing (including marketing), request data portability, withdraw consent, and complain to the ICO. To exercise these rights over data Patienteer controls (see section 3), contact us using the details in section 18.
Important — if your query relates to a patient or care record processed using the Patienteer application on behalf of an NHS organisation, ICB, PCN or GP practice, Patienteer acts only as a processor for that organisation. You'll need to contact that organisation directly, as they are the data controller responsible for that record and for handling your request. If you contact us about this instead, we will do our best to direct you to the right place.
You have an absolute right to object to direct marketing; if you do, we'll stop using your data for that purpose.


14. Children
This website isn't intended for children, and we don't knowingly collect personal data from children through it. If you believe a child has given us personal data via the website, please contact us so we can take appropriate steps.


15. Third-party links and services
This website may link to third-party sites or embed third-party content. If you follow those links, the third party's own privacy practices apply — we're not responsible for them and encourage you to review their notices.


16. Other notices that may apply
Notices related to the specific use of Patienteer services are managed by data controllers; with links provided from each specific customer instance of Patienteer.


17. Changes to this notice
We may update this notice to reflect changes in our services, technologies, service providers or legal requirements. We'll update the "last updated" date above and, where appropriate, take further steps to let you know.


18. Contact us and complaints
Questions about this notice, or to exercise your rights: support@patienteer.co
Complaints: please email us first and we will acknowledge and look into your concern. If you're not satisfied with our response, you can complain to the ICO at ico.org.uk.
 

Email: support@patienteer.co

Last update: 14/08/2026

bottom of page