Support Centre

You have out of 5 free articles left for the month

Signup for a trial to access unlimited content.

Start Trial

Continue reading on DataGuidance with:

Free Member

Limited Articles

Create an account to continue accessing select articles, resources, and guidance notes.

Free Trial

Unlimited Access

Start your free trial to access unlimited articles, resources, guidance notes, and workspaces.

Newfoundland and Labrador: OIPC addresses PHIA compliance

The Office of the Information and Privacy Commissioner of Newfoundland and Labrador ('OIPC') released, on 23 August 2017, the second edition of its quarterly newsletter ('the Newsletter'), addressing compliance with the Personal Health Information Act 2011 ('PHIA').

In particular, the Newsletter provides guidance for health custodians on using fax or email to send and receive personal health information, in order to avoid data breaches. This includes recommendations on the use of encryption, verification of email receipts, and data minimisation. The Newsletter also outlines several decisions taken by the OIPC in the last three months in relation to privacy complaints, including a decision approving the collection of personal health information for the purpose of a fitness certificate by Morneau Shepell Ltd.

You can read the Newsletter here.