Data Protection Notice
This notice describes the principles and measures implemented by SireeNova to help protect data processed within the platform. It should be read together with the Privacy Policy and Terms of Service.
Data Processed
The platform is used to process information related to blood services operations, including donor identification data, donation records, screening results, blood unit records, blood inventory, blood transfer requests, and user account information.
Protection of Donor Data
Donor information is processed solely for operational and clinical purposes related to blood services and only in accordance with the permissions assigned to authorized users.
Access Control
The platform applies role-based access controls so that users can access only the information required to perform their assigned responsibilities.
Data Isolation
The platform uses mechanisms designed to separate the data of each participating hospital or organization in accordance with the configured permissions and system settings.
Data Protection Measures
The platform implements technical measures to help protect data during transmission, together with access controls and security features provided by the underlying cloud infrastructure.
Activity Logging
The platform may maintain logs of significant system activities, including user sign-ins, record creation, data modifications, and selected sensitive operations, to support security monitoring, auditing, and authorized use verification.
Responsibilities of Participating Organizations
Each participating hospital or organization is responsible for the accuracy of the data it enters, managing user accounts and permissions, and ensuring compliance with its own data protection policies.
User Responsibilities
Users are responsible for protecting their login credentials, keeping their accounts confidential, and using the platform in accordance with their organization's policies.
Platform Responsibilities
SireeNova provides technical measures designed to help protect data and manage access. Participating organizations remain responsible for the data they submit, the management of their users, and compliance with applicable healthcare and data protection laws and regulations.
Incident Reporting
Any suspected unauthorized access or security incident should be reported promptly to the participating organization's administrator or the SireeNova support team.
Contact
For questions regarding data protection, please contact your hospital administrator or the SireeNova team through the Contact page.
