Privacy Policy

NEW SITE VENTURES PTY LTD trading as ‘My Medical Cert’ (ACN 692 699 246/ABN 74 692 699 246) (My Medical Cert, we, us or our) is committed to protecting your personal information in accordance with the Privacy Act 1988 (Cth) (Privacy Act).

My Medical Cert is a virtual care platform that facilitates consultations between you and independent registered health practitioners (Partner Practitioners), allied support persons, pharmacists, and diagnostic and other providers (e.g. pathology and radiology providers) (collectively, Partner Providers).

This Privacy Policy (Privacy Policy) explains how we collect, hold, use and share your personal information, and how you can access or correct it or make a privacy-related query or complaint.

Personal information is defined in the Privacy Act. Capitalised terms not defined in this Privacy Policy have the same meaning given to them in the Terms & Conditions.

This Privacy Policy, together with our Terms & Conditions, applies to your use of the My Medical Cert Platform, including the My Medical Cert website (https://mymedicalcert.com.au/), app and our social media accounts and pages that we control or manage (My Medical Cert Platform). Please read each document carefully.

What types of personal information do we collect?

The personal information we collect depends on how you interact with us – whether you provide personal information to us, someone provides it on your behalf, or we otherwise receive it as permitted by applicable Laws.

The type of personal information we collect includes:

  • details of your identity, including your full name, date of birth and gender, and any other information you provide to verify your identity;

  • contact details, including your email, address, phone number and driver’s licence details;

  • information in communications between you and us, including any photos and documents you choose to share with us;

  • purchase and account activity, including goods and services you view on the My Medical Cert Platform and which you purchase or add to your cart;

  • digital information, including your device ID, type and attributes, IP address, geolocation, standard web log information, browsing behaviour, page views, app launches and actions, and information gathered through cookies, pixels or similar technologies;

  • search information including interactions with the My Medical Cert Platform and social media platforms;

  • information that you provide through surveys;

  • where you apply for employment with us or apply to provide services through the My Medical Cert Platform, details of your employment history or experience, educational qualifications and similar information; and

  • any other information you choose to provide to us.

Sensitive information

We may also collect personal information that is sensitive information—health information (as defined in the Privacy Act). For example, when we facilitate the Services (including where Partner Providers provide products and services to you), we may collect:

  • identifiers and other information that you provide when submitting a request through the My Medical Cert Platform;

  • medical history, symptoms and other health information you (or someone on your behalf) provide to us or a Partner Provider (including in connection with your request for Services), and any session media captured during the provision of the Services (e.g. audio or video recordings where enabled). You may request that such session media not be retained by My Medical Cert unless we are legally required to keep it as part of a health record or otherwise by Law; and

  • where required, family history and lifestyle information (which may include information about your ethnicity, religion, genetic information and sexual orientation).

If you provide us with another individual’s personal information, you must only do so with their consent where otherwise authorised by Law.

How do we collect your personal information?

How we collect personal information depends on our relationship with you. Where practicable, we collect personal information directly from you, including when you:

  • interact with the My Medical Cert Platform;

  • create an account, complete a form or questionnaire, place an order or make a request through the My Medical Cert Platform;

  • communicate with us or a Partner Provider by phone, video call, email, chat or other channels – this may include session media captured during the provision of the Services (e.g. audio or video recordings where enabled) to support the delivery of such Services, including for quality, training and security purposes;

  • use the My Medical Cert Platform, where we automatically collect device details, log information, location data or usage statistics through cookies, pixels or similar technologies;

  • upload documents, images or test results to the My Medical Cert Platform; or

  • take part in surveys, market-research activities, competitions and promotional activities that are managed by us.

We may also receive personal information about you from other sources, including from:

  • our Partner Providers, including where you and your Partner Practitioner communicate about goods and services;

  • our Affiliates so we can provide, or facilitate the provision of, goods and services;

  • a person authorised by you (e.g. a family member, carer or legal guardian);

  • Authorities and related databases relevant to the Services (e.g. Medicare, My Health Record and electronic prescription services) (Health System Operators);

  • third party service providers (e.g. payment processors, hosting providers and customer support providers); or

  • other people or entities who help us facilitate the provision of the Services.

We may use analytics to develop additional insights from the personal information we already hold about you. If you provide us with personal information about someone else, you must have their consent to do so.

Our purpose for collecting your personal information and how we use it

We collect, hold, use and share personal information so that we can operate our business, facilitate the provision of goods and services and meet our legal obligations. In addition, we may use your personal information to:

  • provide and facilitate goods and services, including establishing and maintaining your Account, processing your requests, providing support, sending reminders and arranging collection or delivery;

  • keep you informed about goods and services, including confirmations, dispatch and tracking updates, return or exchange authorisations, and reminders or follow-ups (either on our own initiative or at the request of Partner Providers);

  • tailor the Services to you (including health services), including making us or our Partner Providers aware of any special requirements that you may have;

  • verify your identity and authorise payments either directly or through third party providers;

  • provide you with offers and direct marketing that may be of interest to you (unless you opt out), show relevant online advertisements and personalise your experience on the My Medical Cert Platform (including by email and SMS);

  • invite you to provide feedback (including about the My Medical Cert Platform and the goods and services you receive through it);

  • improve your experience, including in relation to goods and services that we or our Affiliates facilitate through Partner Providers;

  • analyse and match data to better understand your preferences and develop insights about our users (as a whole or in groups);

  • enable third parties to contact you about our goods or services that be of interest to you;

  • in connection with a merger, acquisition, organisational restructure, financing, sale of business or assets, bankruptcy or insolvency event;

  • comply with our legal and regulatory obligations (including reporting and record-retention requirements of Health System Operators and other Authorities);

  • enforce or protect our rights and obligations, obtain advice, and exercise or defend claims;

  • for any other purpose for which it was collected or for a related purpose we are permitted to use your personal information for.

We may also use automated tools to improve the efficiency and accuracy of our dealings (and the dealings of our Partner Providers) with you for the purposes outlined above.

Disclosure of personal information to third parties

Where reasonably necessary for, or directly connected with, the operation of our business, we may disclose your personal information to third parties, including, but not limited to:

  • our professional advisors, dealers and agents;

  • any person who introduces you to us or who is acting as your referee;

  • your authorised agents or your executor, administrator or legal representative;

  • third parties that provide goods and services to you, including Partner Providers;

  • third parties that provide administrative and operational services to us, including IT and hosting providers, data storage providers, marketing and social media service providers, payment processors and debt-recovery providers;

  • third parties that provide services to us in connection with our business, including data monitoring, data analysis or data matching, monitoring trends in customer preference or transactions and the operation and maintenance of the My Medical Cert Platform, and marketing and advertising services;

  • Authorities and other third parties where required or authorised by Law or as necessary to assist us to investigate or prevent actual or suspected breaches of Law;

  • where a Partner Provider forms the professional opinion that you are at risk of imminent harm and where consistent with their professional and ethical obligations to do so, contact your next of kin or emergency services to request a welfare check or other assistance;

  • other persons disclosed to you at the time the relevant personal information is collected.

In addition, if you (or someone on your behalf) provides a digital copy of your Outcome (e.g. a medical certificate) to a third party, that third party may use a tool on My Medical Cert’s website to confirm its validity. My Medical Cert may provide a brief confirmation as to whether we have an Outcome on record that matches the information provided.

Security of your personal information

We take reasonable steps to protect your personal information that is under our control from misuse, interference and loss, and from unauthorised access, modification or disclosure.

Some of our safeguards include HTTPS, hashed (non-reversible) credential storage, monitoring of errors and logs, secure cloud infrastructure, TLS-encrypted database connections, and role-based access on a need-to-know basis supported by physical, technical and administrative controls. We also destroy or de-identify personal information once it is no longer needed for a valid purpose or required to be kept by law.

While we take reasonable steps to protect your personal information, no internet transmission or storage system is fully secure. Please keep your passwords, links and account details confidential. Any transmission of personal information through the My Medical Cert Platform is at your own risk.

Overseas Transfers of Personal Information

Some of our service providers and Affiliates may be located overseas or store or process personal information that we provide to them overseas. The countries that your personal information may be held or processed include the United States, the United Kingdom and member states of the European Union. Where we disclose personal information overseas, we take reasonable steps to ensure the overseas recipient handles it in a manner consistent with the Privacy Act.

Marketing and Advertising

From time to time, we may use and disclose your personal information to promote and market products and services (provided by us, our Affiliates or selected third parties) that we think may be of interest to you.

We may also share your information with selected third parties, our Affiliates and third party platforms (such as social media providers and other digital advertisers) so we can derive insights and run targeted advertising and marketing in relation to products, services or other offers (whether provided by us, our Affiliates or selected third parties).

You may withdraw your consent at any time using the unsubscribe facility in our communications or by contacting our Privacy Officer at contact@mymedicalcert.com.au. Once we receive an opt-out, we will stop sending marketing within a reasonable time. Our marketing may include telephone calls to any phone number you provide to us between 9am and 6pm (AEST) on business days.

Cookies

We may use cookies on the My Medical Cert Platform. Cookies are small text files stored on your browser to remember your preferences. Cookies do not, by themselves, tell us your email address or other personally identifiable information. They do, however, recognise you when you return and may allow third parties, such as Google and Facebook, to display our advertisements as part of our retargeting campaigns.

If, and when, you choose to provide us with personal information through the My Medical Cert Platform, this information may be linked to the data stored in the cookie. See the help pages or settings menu in your browser to adjust cookie preferences.

Accessing or correcting your personal information

If you would like to access your personal information, please contact us using the details below. We may require you to verify your identity and specify the information you require access to. In certain circumstances, we may refuse access in which case we will explain why we cannot comply with your request.

We take reasonable steps to ensure the personal information we hold about you is accurate, up-to-date, complete and relevant. If you believe it should be updated or corrected please contact us using the details below and we will take reasonable steps to correct it where appropriate. In some situations, we may be legally permitted not to correct your personal information. If we cannot correct your information, we will advise you as soon as reasonably possible, explain why, and outline any mechanism available to complain about the refusal.

Links to other websites

The My Medical Cert Platform may contain links to third party websites. We do not control those websites and are not responsible for the privacy practices of those websites or any personal information you provide while visiting them. Those websites are not governed by this Privacy Policy.

Resolving concerns about your personal information

If you have questions, concerns or complaints about this Privacy Policy, or how we handle your personal information, please contact our Privacy Officer at contact@mymedicalcert.com.au.

We take privacy complaints seriously. We always endeavour to respond to your questions, concerns or complaints about your personal information within a reasonable period. If you are not satisfied with how we have handled your complaint, you can refer your complaint to the Office of the Australian Information Commissioner by phone on 1300 363 922 or online at www.oaic.gov.au.

Changes

We may amend this Privacy Policy from time to time. Where required by law, we will notify you of changes. Any revised Privacy Policy is effective immediately upon posting on our website. By continuing to use the My Medical Cert Platform you will be deemed to have agreed to the revised Privacy Policy.

This Privacy Policy was last updated in March 2026.