Glow Health Care Australia

Privacy Policy

ARIIA Skin Integrity Platform · Last updated: April 2026

1. About This Policy

Glow Health Care Australia (GHCA) is committed to protecting the privacy and confidentiality of all personal and health information collected through the ARIIA Skin Integrity Platform. This policy explains what information we collect, how we use it, and your rights in relation to it.

This policy applies to all clients, support workers, registered nurses, care partners, and administrators who use the ARIIA platform. We comply with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

2. What Information We Collect

We collect the following categories of information:

Client Health Information

Skin integrity observations, wound descriptions, pain levels, fall incidents, medication support notes, visit dates and times, and clinical assessments made by registered nurses.

Client Personal Information

Full name, address, program type, and assigned care team details.

Staff Information

Full name, email address, role, and activity logs within the platform.

3. How We Collect Information

Health information is collected by GHCA support workers at the time of a client visit through the ARIIA digital form. Support workers are required to obtain verbal or written consent from the client prior to documenting health observations. Clients are informed of the purpose of this documentation before it is recorded.

4. How We Use This Information

  • To monitor and manage client skin integrity and wound care
  • To trigger timely clinical escalation when concerns are identified
  • To enable registered nurses and care partners to review and respond to cases
  • To produce clinical reports and track outcomes over time
  • To comply with aged care quality standards and NDIS practice standards
  • To maintain audit records for quality assurance and compliance

We will not use or disclose health information for any purpose other than the primary purpose of care, except where required by law or with the client's express consent.

5. Who Has Access to This Information

Access is strictly role-based and limited to:

Support Workers

Can submit visit forms. Cannot view other clients or past records.

Registered Nurses

Can view and assess cases assigned to them.

Care Partners

Can review completed RN assessments for coordination.

Administrators

Full platform access for oversight and reporting.

No health information is shared with third parties without client consent, except where required by law (e.g. mandatory reporting obligations).

6. Data Storage & Security

All data is stored in a secure cloud database provided by Supabase. GHCA takes reasonable technical and organisational steps to protect personal and health information from misuse, loss, and unauthorised access. These measures include:

  • Encrypted connections (HTTPS/TLS) for all data in transit
  • Role-based access controls limiting data visibility by job function
  • Password-protected accounts required for all staff
  • Audit logs recording all significant system actions

Note on data location: Data may be stored on servers outside Australia. GHCA takes steps to ensure any overseas storage providers maintain equivalent privacy protections consistent with APP 8.

7. Data Retention

Health and care records are retained for a minimum of 7 years from the date of last service, in accordance with Australian healthcare record-keeping requirements. After this period, records are securely deleted or de-identified.

8. Your Rights

Under the Privacy Act 1988, clients and staff have the right to:

  • Access their personal information held by GHCA
  • Correct inaccurate or out-of-date information
  • Complain about how their information has been handled
  • Withdraw consent for non-essential use of their information

To exercise any of these rights, contact GHCA using the details below.

9. Data Breach Notification

In the event of an eligible data breach involving health information, GHCA will notify affected individuals and the Office of the Australian Information Commissioner (OAIC) as required under the Notifiable Data Breaches (NDB) scheme. We will take immediate steps to contain any breach and prevent recurrence.

10. Contact & Complaints

If you have a question or complaint about how GHCA handles your information, please contact us:

Glow Health Care Australia

Privacy enquiries: andrew@aria.ghca.com.au

Website: aria.ghca.com.au

If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au or by calling 1300 363 992.