2.1.2: Confidentiality in all px care Flashcards
What is GDPR?
DPA 2018 implemented GDPR
Increased responsibility to demonstrate compliance and accountability
Increased penalities
What is Data Protection Act (1998)?
controls how personal info is used by an organisation, business or government
What does the person have the right to in regards to DPA?
Data is accurate
Data is used for specific purposes which should be disclosed to them
Data is used fairly, lawfully and transparently
How long can data be kept?
HES- 10 years
General - 8years
Children & young people until px’s 25th bday or 8 years after their death
Clinical trial records - 15 years
Who can access the patient’s data?
The patient
Applicant acting on px’s behalf: child’s parent/guardian, someone authorised in writing by px, person appointmend by court
What are the 7 principle of GDPR 2018?
- Lawfulness, fairness & transparency
- Purpose limitation
- Data minimisation
- Accuracy
- Storage limitation
- Accountability
- Integrit & confidentiality (security)
What does the store do to meet GDPR?
Not leaving px records open
Password protected screens
Logging off
When can GDPR be broken?
When px is at risk of harm - e.g. not reaching driving standard - don’t want to break it, work with px
Safeguarding issues - know who to speak to in practice
Criminal investigations