Privacy Policy

Effective date: 29 March 2026

Introduction

Sandton Sport & Family Chiropractic ("we", "us" or "our") is a chiropractic practice located at 3rd Floor, North Block, MediMix at 200 Rivonia, Morningside, Sandton. We are committed to protecting the privacy and personal information of our patients and website visitors.

This privacy policy explains how we collect, use, store and share your personal information in accordance with the Protection of Personal Information Act, 2013 (POPIA). It applies to information collected through our practice, our website at sandtonchiropractor.co.za and any related communications.

What personal information we collect

Depending on how you interact with us, we may collect the following types of personal information:

  • Contact details: your name, phone number, email address and physical address
  • Health and medical history: information about your current complaints, past medical history, medications, lifestyle factors and related health information
  • Treatment records: clinical notes, examination findings, diagnoses, treatment plans and progress notes
  • Billing information: medical aid details, account information and payment records
  • Website usage data: anonymous, aggregated analytics data such as page views and traffic patterns (no personal information is collected through our website analytics)

Why we collect your information

We collect and use your personal information for the following purposes:

  • Providing chiropractic care, including assessment, diagnosis and treatment
  • Managing appointments and communicating with you about your care
  • Billing, invoicing and processing medical aid claims
  • Communicating important practice information (such as appointment reminders)
  • Improving our website and the services we offer
  • Complying with our legal and professional obligations

Lawful basis for processing under POPIA

We process your personal information on one or more of the following lawful grounds as set out in sections 6 to 11 of POPIA:

  • Consent: you have given us your consent to process your personal information for a specific purpose
  • Contractual necessity: processing is necessary to carry out the agreement between you and our practice (for example, providing treatment you have requested)
  • Legal obligation: processing is necessary to comply with a legal duty (for example, maintaining patient records as required by the Health Professions Act)
  • Legitimate interest: processing is necessary for our legitimate interests, provided your rights are not overridden (for example, improving our services)

Special personal information: health data

Health information is classified as "special personal information" under section 26 of POPIA and receives additional protection. We process your health information with your explicit consent and because it is necessary for the provision of healthcare services. This includes clinical assessments, diagnoses, treatment records and any related health data required to provide you with appropriate chiropractic care.

How we protect your information

We take reasonable steps to protect your personal information from unauthorised access, loss, misuse or alteration. Our security measures include:

  • Physical security: patient files and records are stored securely within our practice with restricted access
  • Electronic security: digital records are protected by password controls, encryption where appropriate and secure backup systems
  • Staff awareness: our team is made aware of their obligations regarding the handling of personal information

Who we share your information with

We do not sell or trade your personal information. We may share your information with the following parties where necessary:

  • Medical aid schemes: to process claims on your behalf
  • Referring practitioners: where you have been referred to or from another healthcare provider, and with your consent
  • Third-party service providers: companies that assist us with website hosting, practice management software and related services. These providers are required to handle your information in accordance with POPIA.
  • Legal requirements: where we are required to disclose information by law, regulation or court order

Website analytics

Our website uses Vercel Web Analytics, a privacy-focused analytics service that helps us understand how visitors use the site. This service does not use cookies, does not collect personal information and does not track you across websites. Data collected is anonymous and aggregated (for example, page views and general traffic patterns).

We do not use Google Analytics, advertising cookies, tracking pixels or any third-party tools that monitor your individual browsing behaviour. Your browser may store a preference for light or dark mode display, but this is stored locally on your device and is not transmitted to us.

Our contact page includes an embedded Google Map to help you find our practice. This embed is provided by Google and may set its own cookies on your device. These cookies are managed by Google, not by us. You can review Google's privacy policy at policies.google.com/privacy.

Your rights under POPIA

You have the following rights in relation to your personal information:

  • Right to access: you may request confirmation of whether we hold personal information about you and request access to that information
  • Right to correction: you may request that we correct or update inaccurate or incomplete personal information
  • Right to deletion: you may request the deletion of your personal information, subject to legal retention requirements
  • Right to object: you may object to the processing of your personal information in certain circumstances
  • Right to withdraw consent: where processing is based on your consent, you may withdraw that consent at any time
  • Right to lodge a complaint: you may lodge a complaint with the Information Regulator if you believe your personal information has been mishandled

To exercise any of these rights, please contact us using the details below.

Data retention

We retain patient records for the minimum periods required by the Health Professions Act and related legislation. Other personal information is retained only for as long as necessary to fulfil the purposes for which it was collected or as required by law.

When personal information is no longer needed, we will securely delete or destroy it.

Information Regulator

If you are not satisfied with how we handle your personal information, you have the right to lodge a complaint with the Information Regulator (South Africa):

Contact us

If you have any questions about this privacy policy or wish to exercise your rights, please contact us:

  • Information Officer: Matthew Proctor
  • Email: admin@sandtonchiropractor.co.za
  • Telephone: 011 656 1444
  • Address: 3rd Floor, North Block, MediMix at 200 Rivonia, Morningside, Sandton

Changes to this policy

We may update this privacy policy from time to time to reflect changes in our practices or legal requirements. The updated version will be published on our website with a revised effective date. We encourage you to review this page periodically.