Back to Homepage
Medly Pty Ltd (ABN 81684799353) respects your right to privacy and is committed to protecting your personal information in accordance with the Privacy Act 1988 (Cth), including the Australian Privacy Principles (APPs), State and Territory health privacy laws, and where applicable, the Health Insurance Portability and Accountability Act of 1996 (HIPAA) (US). We also adhere to the expectations and obligations imposed by the Australian Health Practitioner Regulation Agency (AHPRA) on healthcare providers and platforms.
This Privacy Policy explains how Medly collects, uses, discloses, and protects your personal and health information, and your rights in relation to that information.
By accessing or using Medly’s services, applications, platforms, or websites (collectively, the “Platform”), you agree to the collection, use and disclosure of your information in accordance with this Policy.
Contact Information:
Privacy Officer: support@medly.com.au
Postal Address: PO Box 876, Mooloolaba, QLD 4557
We collect personal information when it is reasonably necessary for delivering healthcare or fulfilling our legal and regulatory obligations. This may include:
Medly will only use de-identified data for research or study purposes if you have explicitly consented during the booking process. Without your consent, your data is not included in the Medly Study or related analysis.
This data is analysed to enhance the accuracy of our intake process, improve triage efficiency, and refine our pricing model for patients with similar conditions in the future.
No information that could reasonably identify you is used in this analysis, and your personal health data is never sold, shared, or disclosed to third parties for commercial purposes.
You may withdraw consent at any time by contacting support@medly.com.au. This data is never used to make decisions about your care or to identify you. Our systems comply with OAIC and APP guidance regarding de-identification and ethical secondary data use.
Your personal and health information is used for the following purposes:
We will not use your health information for secondary marketing purposes unless you provide explicit, informed consent.
We do not use identifiable or de-identified data to train or develop AI tools without explicit patient consent.
We only share your information when necessary for your care or as required by law. This may include:
Medly does not share your personal or health information with unrelated external healthcare providers or advertisers without your explicit consent.
Third-party service providers will not receive any health information, but may (as required by their service) require your basic information to process their service. This includes, but is not limited to, payment processors such as Stripe.
In the event of a corporate acquisition, merger or change in control, your personal information may be transferred as part of that transaction, subject to this policy.
All personal information is stored securely in Australia. Where overseas transfer is required (e.g. for limited third-party processing or analytics), it will be:
You will be notified if future changes involve regular overseas disclosure.
We take data security seriously and implement technical and organisational measures to safeguard your information:
Access to health records is restricted to Medly-authorised staff who require it to perform their duties.
Patient health records are retained for a minimum of 7 years (or longer for minors), in line with State, Territory and Commonwealth health legislation.
Practitioner compliance documents (e.g. AHPRA, indemnity insurance) are retained according to professional requirements and Medly’s internal governance standards.
Where deletion is legally permitted, we will comply with your request, otherwise your data may be securely archived.
We destroy or de-identify information when it is no longer required, unless legal obligations require us to retain it.
Medly uses cookies and similar technologies for:
We do not use cookies to collect sensitive health information. Where third-party analytics (e.g. Google Analytics, Hotjar) are used, data is anonymised unless you consent otherwise.
You can disable cookies in your browser settings, but this may limit your access to some Platform features.
Medly may send you:
You can manage your communication preferences at any time by:
We do not sell your data to third parties. No third-party marketing will be sent unless you explicitly opt in.
You have the right to:
To make a request, contact our Privacy Officer. We will respond within 14 days and resolve all valid concerns in a timely and respectful manner.
If you are not satisfied with our response, you may escalate your concern to:
Office of the Australian Information Commissioner (OAIC): www.oaic.gov.au
State Health Complaints Commissioner (where applicable)
Medly ensures that:
The platform is governed by internal clinical protocols overseen by Medly’s Medical Director.
This policy may be updated from time to time. We will notify users of significant changes through our Platform or by email.
The most current version will always be available at www.medly.com.au/privacy-policy.
Effective Date: June 24, 2025
Version: 1.0
If you have any questions or concerns about how your privacy is handled at Medly, please contact:
Privacy Officer
Email: support@medly.com.au
Address: PO Box 876, Mooloolaba, QLD 4557
Last updated: June 24, 2025
Version 1