Information Governance
Curigo's Information Governance Statement — how we manage and protect information.
1. INTRODUCTION
Curigo is committed to protecting the confidentiality, integrity and availability of the information we hold. Good information governance is essential to delivering safe, effective and trusted healthcare services.
This Information Governance Statement explains how we manage patient, clinical and business information responsibly and in accordance with applicable legal, professional and regulatory requirements.
2. OUR COMMITMENT
Curigo is committed to:
- Protecting the confidentiality of patient information.
- Maintaining accurate, complete and reliable records.
- Processing information lawfully, fairly and transparently.
- Preventing unauthorised access, loss or misuse of information.
- Supporting safe and effective clinical care through appropriate information management.
- Continually improving our information governance practices.
3. INFORMATION WE HOLD
As part of providing our services, we may hold information including:
- Personal information.
- Contact details.
- Clinical and health records.
- Consultation records.
- Prescribing information.
- Payment and transaction records.
- Communications with patients.
- Operational and regulatory records.
Information is collected only where necessary for legitimate healthcare, legal or business purposes.
4. CONFIDENTIALITY
We recognise that patients place their trust in us when sharing personal and health information.
All confidential information is handled with care and accessed only by authorised individuals who require it to perform their professional responsibilities or where otherwise permitted or required by law.
5. INFORMATION SECURITY
We use appropriate technical and organisational measures designed to protect information from unauthorised access, alteration, disclosure, loss or destruction.
These measures may include:
- secure systems and networks;
- controlled access to information;
- authentication and password protection;
- encryption where appropriate;
- secure storage of records; and
- regular review of security arrangements.
6. INFORMATION SHARING
Information is shared only where there is an appropriate legal or professional basis to do so.
Where appropriate, information may be shared with:
- healthcare professionals involved in your care;
- laboratories or diagnostic providers;
- payment and delivery providers;
- regulators or statutory authorities; or
- other organisations where required by law or necessary to protect patient safety.
Information sharing is limited to what is necessary for the specific purpose.
7. INFORMATION QUALITY
Maintaining accurate information supports safe clinical decision-making.
We encourage patients to notify us promptly if their personal details, medical history or other relevant information changes.
Reasonable steps are taken to ensure that records remain accurate, complete and up to date.
8. RECORD RETENTION
Information is retained only for as long as necessary to fulfil legal, regulatory, professional and operational requirements.
When information is no longer required, it is securely deleted or destroyed in accordance with recognised information management practices.
9. DATA PROTECTION
Curigo processes personal information in accordance with applicable UK data protection legislation.
Further information about how we collect, use and protect personal information is available in our Privacy Policy.
10. INCIDENT MANAGEMENT
We take information security seriously.
Any suspected information governance or security incident is assessed promptly and managed in accordance with our internal procedures.
Where required, appropriate remedial action will be taken, and relevant authorities or affected individuals will be notified in accordance with legal obligations.
11. TRAINING AND AWARENESS
Curigo is committed to maintaining high standards of information governance.
Individuals handling information on our behalf are expected to understand and comply with applicable confidentiality, data protection and information security requirements appropriate to their role.
12. CONTINUOUS IMPROVEMENT
We regularly review our information governance arrangements to ensure they remain effective and reflect changes in legislation, technology, professional guidance and best practice.
Patient feedback, audits and lessons learned from incidents are used to strengthen our approach wherever appropriate.
13. CHANGES TO THIS STATEMENT
This Information Governance Statement may be updated periodically to reflect changes in legislation, regulatory guidance or our information governance practices.
The latest version will always be available on our website.
14. CONTACTING CURIGO
If you have any questions about this Information Governance Statement or how we manage information, please contact Curigo using the contact details provided on our website.
15. ENTIRE STATEMENT
This Information Governance Statement should be read alongside our:
- Privacy Policy;
- Clinical Governance Statement;
- Clinical Services Terms & Conditions;
- Safeguarding Statement;
- Website Terms & Conditions; and
- other policies published on our website.
Together, these documents demonstrate Curigo's commitment to protecting information, maintaining confidentiality and delivering safe, secure and patient-centred healthcare.
