SJAA Medical Website - Privacy Policy: Your Privacy Rights
Table of Contents
Scope and purpose of this policy
What information do we collect?
How do we use your information?
Sharing your information
Updates to this Privacy Policy
Our data protection and security policy
Key terms
This policy is effective as of April 2018
Scope
and purpose of this policy
This privacy policy (the "Policy") describes the practices of the Steeplechase Jockeys Association of America Medical Website (the "SJAA website") with regards to information about you that we obtain through your use of the SJAA website. The SJAA website is an Internet service, powered by The Steeplechase Jockeys Association of America, Inc. ("The SJAA," "us," or "we") which allows jockeys and other authorized users (race day doctors and your PCP) to coordinate and manage medical care in electronic format.
This Policy applies to information we collect through the SJAA website and how it is used.
Return to top
What
information do we collect?
Information you provide the National Steeplechase Association (NSA) when applying for a license to ride:
Including:
First name, last name, date of birth, blood type, allergies, emergency contact details
Information we collect from your use of our services:
We may automatically collect and store information in our server logs regarding your use of our services and the content you viewed. This information may include: your IP address; device specific information about the device you used to access the SJAA website.
We may ask you to supply further medical information not included in your NSA license application
We will gather and store information about your incident history at the races as you are seen by a race day doctor.
Return to top
How
do we use your information:
We may use your information for the following purposes, including but not limited to:
To respond to your inquiries and fulfill your requests;
To inform you about relevant and important information about the SJAA website, other services from the SJAA for which you are eligible and may be interested in applying, updates to terms, conditions, and policies, and other relevant administrative changes and information relating to the website;
When requested by the National Steeplechase Association, we will supply injury reports and concussion reports from a specific incident. The NSA do not have access to all of your data, though your data can be released with your consent;
For business purposes including but not limited to; enhancing the functionality of the SJAA website, data analysis, audits, and to comply with all laws, regulations, and law enforcement requirements;
To pull requisite data to adhere to government incentive programs, including but not limited to, your provider's achievement of Meaningful Use standards;
To plan risk control measures, like fraud and abuse detection and prevention.
We may de-identify and aggregate your data - meaning this data cannot be used to identify or contact you - for our business purposes, including but not limited to analyzing data trends, research, or offering new products and services.
We track the number of visitors using certain portions and features of the SJAA website to make any necessary changes to improve the functionality of it and to comply with HIPAA.
Return to top
Sharing
your information:
We have business relationships with third-party vendors that deliver certain services and content for the SJAA website. The use and collection of information by these third-party vendors is governed by their respective privacy statements and is not covered by this Policy.
We can disclose your health information to third party vendors in accordance with HIPAA requirements and your providers' internal privacy practices. For further details regarding these requirements, refer to the HIPAA Privacy Rule at 45 C.F.R. section 164.506.
Unless otherwise provided in this Policy, we will not disclose your personal information except when:
You have given us your consent to share or use information about you;
We believe that we need to share information about you to provide a service that you have requested from us or from others;
We are required by law to disclose information; or
We believe it is necessary to protect our rights or to avoid liability or violations of the law.
Return to top
Updates
to this privacy policy:
The SJAA reserves the right to make periodic updates and revisions to this Policy. Any updates will be posted on this page. Please check this page to review whether any changes have been made to the Policy.
The SJAA values the protection of sensitive health information. If you have any specific questions about the SJAA website privacy policy, please contact us at admin@thesjaa-medical.com. SJAA website support requests (e.g. trouble logging in, password assistance, access to family members information etc.) or general questions about the site should be directed to the SJAA.
Our
data protection and security policy:
The SJAA takes the security and privacy of protected health information very seriously. We have implemented technical, administrative, and physical safeguards, which are designed to protect your information from unauthorized use and access. These safeguards are intended to ensure that our system is secure and that it meets our obligations under the HIPAA Security Standards Final Rule, as well as CCHIT Meaningful Use Security Requirements to specifically protect all electronic health information created or maintained by our certified Electronic Health Record technology. Prudent security practices dictate that some of our procedures cannot be disclosed in detail. However, certain information regarding our security features can be provided upon request by you to the contact information detailed above.
Key
Terms:
COOKIES: Cookies are small amounts of text files that are sent from a website to your computer's browser when you visit the site. These cookies are then stored in files within your computer's browser. Web sites can access only the cookies that they have stored on your computer. For example, if the Acme Computer Company stores a cookie on your browser, Acme may access its own cookie to improve the user's online experience, but it could not access any cookies belonging to another company. For every future time you access the website, your browser sends the cookie back to the server, which notifies the website of the user's previous activities on the website. Thus, cookies serve several useful purposes, like letting you navigate between pages more efficiently, saving your preferences, and enhancing your user experience with the website.
INTERNET PROTOCOL (IP) ADDRESS: An IP Address is a numerical label separated by periods that identifies every device (e.g., computer, printer) that participates in a network. IP addresses allow these devices to communicate with one another and transmit relevant information.