Privacy Toolkit
OTN takes the privacy of health and other information it may have access to very seriously and is committed to protecting it in ways that meet privacy law and industry standards.
This Toolkit is provided for general information and consideration purposes only. These resources were largely developed to help OTN meet the requirements of the Personal Health Information Protection Act (PHIPA), S.O. 2004, and Regulation 329/04, while also supporting OTN’s commitment to transparency. Please visit OTN’s Privacy Centre for further information, tools and best practices. The Privacy Team’s Integrated Privacy Policy Framework as well as OTN’s Annual Privacy Report are also available for your information and learning.
Privacy Impact Assessment
A privacy impact assessment is a detailed assessment undertaken to identify the actual or potential effects that a proposed project will have on the privacy of those whose personal health information (PHI) is included in the proposed project. A privacy impact assessment also identifies ways in which privacy risks may be mitigated. Additionally, privacy impact assessments may be used to ensure alignment with Privacy by Design principles.
OTN must conduct formal privacy impact assessments (in combination with a threat and risk assessment when required) when acting in its capacity as a Health Information Network Provider (HINP) to Health Information Custodians (HIC), as required under PHIPA. OTN must comply with all privacy impact assessment requirements identified in its project funding agreements with Canada Health Infoway and other funding partners. For initiatives involving consumer-based health services, where only personal information is held by OTN, OTN will conduct a privacy impact assessment or privacy review for any new technology and/or service, or new use of personal information where it is planned for collection.
OTN will publish summaries of completed privacy impact assessments conducted for various programs it manages. OTN publishes Primary Impact Assessment (PIA) summaries to ensure transparency with its members, users, the public, and those individuals who may be the subject of the personal and/or personal health information collected, used, disclosed, retained or disposed of in relation to OTN’s products or services. OTN also publishes these summaries to ensure compliance with the requirements for health information network providers under Ontario Regulation 329/04 (s. 6(3)). Without the express written consent of OTN. the summaries or the content therein may not be copied, used, or redistributed outside of the purposes identified.
Summaries to date include:
Privacy Impact Assessment Summaries
- Care Coordination: Patient Access Network (PAN) Scheduling
- Direct to Patient Video Visit
- eConsult Provincial Program
- iCBT – Inkblot (Green Shields)
- iCBT – MindBeacon
- iCBT – Morneau Shepell
- OTNhub eVisit Program
- OTNhub to the Cloud
- Remote Care Management – Vivify
- Secure Messaging
- Substance Use Disorder – Breaking Free Online Limited
- Substance Use Disorder – Breaking Free Online-PIA short-form Summary UPDATE
- Teleopthalmology
- Tele-Stethoscope – TeleSensi
Threat and Risk Assessment Summaries
Privacy – Forms and Guidelines
- Access request for Personal Health Information
- Documentation and Storage of Patient Telemedicine Records at Member Sites
- OTN Member site facsimile of Personal Health Information
- Privacy complaint form
- Recording a Telemedicine session
- Request for Correction to Your Information
- Requesting an Audit of Scheduling Software
- Scheduling Audit Request Form
- Videoconferencing End-Point Guideline
- eVisit Privacy and Security Recommendations
- Videoconferencing Best Practices
Privacy – Resource Materials
Privacy – Fact Sheets
- Avoid connecting before the scheduled time
- You could still be connected
- Misdirected faxes and privacy breaches
- Connecting in error impacts patient privacy
- Lack of physical privacy and privacy breaches
- Emergency Telemedicine services have unique privacy challenges
- Off-net clinical activity privacy & security considerations
- Preventing misdirected FOIP
- Privacy Considerations for Posting to the OTN Telemedicine Directory
- Tips for using “guest link” for Personal Videoconferencing
- Privacy in a Virtual and Portable Telepresen
- Emergency TM services have unique privacy & security considerations
- Using the Chat feature during Video Visits
Email: OH-OTN-Privacy@ontariohealth.ca
Phone: 1-855-654-0888
Mail: Ontario Health (Ontario Telemedicine Network)
438 University Avenue, Suite 200
Toronto, ON M5G 2K8
Toronto Area: 416-326-3333
Toll Free: 1-800-387-0073
TDD/TTY: 416-325-7539
Mail: 2 Bloor Street East, Suite 1400
Toronto, ON M5V 1A8