CareCoder Ltd. Privacy Policy
This privacy policy will explain how our organization uses the personal data we collect from you when you use our website.
Topics:
What data do we collect?
CareCoder Ltd. collects the following data:
How do we collect your data?
You directly provide CareCoder Ltd. with most of the data we collect. We collect data and process data when you:
How will we use your data?
CareCoder Ltd. collects your data so that we can:
How do we protect your data?
CareCoder Ltd. securely stores your data at EU regional AWS cloud based data servers
Cliffrun Media will keep your personal and usage data while the associated accounts are active and for a period of 6 months from the time of last activity. Once this time period has expired, we will delete your data automatically from our servers archive.
Encryption
We ensure all sensitive data is encrypted both in transit and at rest using industry-standard encryption protocols, providing robust protection against unauthorised access. Specifically, we utilize the following encryption mechanisms:
S3 Encryption: Our S3 storage is encrypted using Server-Side Encryption with S3 Managed Keys (SSE-S3). Each object in S3 is encrypted with a unique key, which is itself encrypted with a master key that AWS regularly rotates.
Data in Transit: Secure Socket Layer / Transport Layer Security (SSL/TLS) connections are employed to encrypt data in transit, ensuring that data remains secure while being transferred over networks.
Access Controls
We employ role-based access controls (RBAC) to ensure that only authorized personnel have access to sensitive data. This approach helps maintain strict confidentiality and limits access to data based on individual roles within the organization.
Data Minimisation
Our data collection practices adhere to the principle of data minimisation. We only gather essential information and retain it for the minimum period necessary for processing. This approach helps reduce the risk associated with storing unnecessary data.
Regular Audits
We conduct regular security audits and assessments to evaluate the effectiveness of our data protection measures. These audits help ensure continuous improvement and compliance with GDPR and other relevant regulations.
Incident Response
In the event of a data breach, we have a comprehensive incident response protocol in place. This includes prompt notification procedures and strategies to mitigate any potential harm to affected individuals. Our response protocol is designed to address and manage the situation efficiently, minimising the impact on our users and their data.
Data Encryption
We ensure all sensitive data is encrypted both in transit and at rest using industry-standard encryption protocols, providing robust protection against unauthorised access. Specifically, we utilize the following encryption mechanisms:
S3 Encryption: Our S3 storage is encrypted using Server-Side Encryption with S3 Managed Keys (SSE-S3). Each object in S3 is encrypted with a unique key, which is itself encrypted with a master key that AWS regularly rotates.
Database Encryption: All database storage and backups are encrypted at rest using Amazon Key Management Service (KMS).
Data in Transit: Secure Socket Layer / Transport Layer Security (SSL/TLS) connections are employed to encrypt data in transit, ensuring that data remains secure while being transferred over networks.
Access Controls: We employ role-based access controls (RBAC) to ensure that only authorized personnel have access to sensitive data. This approach helps maintain strict confidentiality and limits access to data based on individual roles within the organization.
Data Minimisation: Our data collection practices adhere to the principle of data minimisation. We only gather essential information and retain it for the minimum period necessary for processing. This approach helps reduce the risk associated with storing unnecessary data.
Regular Audits: We conduct regular security audits and assessments to evaluate the effectiveness of our data protection measures. These audits help ensure continuous improvement and compliance with GDPR and other relevant regulations.
Incident Response: In the event of a data breach, we have a comprehensive incident response protocol in place. This includes prompt notification procedures and strategies to mitigate any potential harm to affected individuals. Our response protocol is designed to address and manage the situation efficiently, minimising the impact on our users and their data.
Our Company may send you information about products and services of ours that we think you might like, as well as those of our partner companies.
If you have agreed to receive marketing, you may always opt out at a later date.
You have the right at any time to stop CareCoder Ltd. from contacting you for marketing purposes or giving your data to other members of the CareCoder Ltd. Group.
If you no longer wish to be contacted for marketing purposes, please contact support@cliffrunmedia.com
What are your data protection rights?
Our Company would like to make sure you are fully aware of all of your data protection rights. Every user is entitled to the following:
The right to access – You have the right to request CareCoder Ltd. for copies of your personal data. We may charge you a small fee for this service.
The right to rectification – You have the right to request that CareCoder Ltd. correct any information you believe is inaccurate. You also have the right to request CareCoder Ltd. to complete information you believe is incomplete.
The right to erasure – You have the right to request that CareCoder Ltd. erase your personal data, under certain conditions.
The right to restrict processing – You have the right to request that CareCoder Ltd. restrict the processing of your personal data, under certain conditions.
The right to object to processing – You have the right to object to CareCoder Ltd.’s processing of your personal data, under certain conditions.
The right to data portability – You have the right to request that CareCoder Ltd. transfer the data that we have collected to another organization, or directly to you, under certain conditions.
If you make a request, we have one month to respond to you. If you would like to exercise any of these rights, please contact us at our email: support@cliffrunmedia.com
Call us at: 0858881657
Or write to us: CareCoder Ltd., The View, Marina Village, Malahide, Co. Dublin, Ireland, K36 CX99
What are cookies?
Cookies are text files placed on your computer to collect standard Internet log information and visitor behavior information. When you visit our websites, we may collect information from you automatically through cookies or similar technology.
For further information, visit allaboutcookies.org.
How do we use cookies?
CareCoder Ltd. uses cookies in a range of ways to improve your experience on our website, including:
What types of cookies do we use?
There are a number of different types of cookies, however, our website uses:
visit another website, you may be shown advertising based on your browsing patterns on our website.
How to manage cookies
You can set your browser not to accept cookies, and the above website tells you how to remove cookies from your browser. However, in a few cases, some of our website features may not function as a result.
Privacy policies of other websites
The CareCoder Ltd. website contains links to other websites. Our privacy policy applies only to our website, so if you click on a link to another website, you should read their privacy policy.
Changes to our privacy policy
CareCoder Ltd. keeps its privacy policy under regular review and places any updates on this web page. This privacy policy was last updated on 9 September 2022.
How to contact us
If you have any questions about CareCoder Ltd.’s privacy policy, the data we hold on you, or you would like to exercise one of your data protection rights, please do not hesitate to contact us.
Email us at: info@origincaregroup.com
Call us at: 0858881657
Or write to us: CareCoder Ltd., The View, Marina Village, Malahide, UK K36 CX99
How to contact the appropriate authority
Should you wish to report a complaint or if you feel that Our Company has not addressed your concern in a satisfactory manner, you may contact the Information Commissioner’s Office.
Email: info@oic.ie
Address : 6 Earlsfort Terrace, Dublin 2, D02 W773.
CareCoderAI is a robust, NHS-specific automation platform. It processes referral letters, discharge summaries, diagnostic reports, and clinical notes into structured data, generating ICD-10 codes, Healthcare Resource Groups (HRGs), and tariff outputs in real-time.
©2025 Origin Copyright All Right Reserved.