Explanation for patients regarding personal data protection
Person responsible for processing
LLC “American Hospital Network”; S/N: (402154342)
Our contact information
Email: info@ahtbilisi.com
Phone: + 032 2 009 009
Purposes and legal basis for data processing
Depending on the scope of our activities, we process patients' personal data only for the purpose of receiving medical services, public health purposes, and scientific research activities.
The clinic processes special categories of data if the following grounds exist:
Written consent of the data subject
The processing of data is necessary to protect the vital interests of the data subject or of another person and the data subject is physically or legally incapable of giving consent to the processing of special categories of data.
Data processing is directly and specifically regulated by law
Data processing is necessary in the field of healthcare for the purpose of preventive, prophylactic, diagnostic, curative, rehabilitation and palliative care, services, quality and safety of medical devices and products, public health and healthcare system management, in accordance with the legislation of Georgia or a contract concluded with a healthcare specialist.
Data processing is necessary in the field of social security and social protection, including for the management of the social security system and services, for the performance of a duty imposed on the controller by Georgian legislation or for the exercise of specific rights of the data subject.
Data processing is necessary to protect important public interests
Mandatory provision of data
In order for the clinic to be able to provide medical services to the patient, it is necessary to process the patient's identification and contact data.
Also, in accordance with the legal acts regulating the healthcare sector, a patient's medical history is being produced, which includes the processing of special categories of patient data.
Categories of data recipients
Third parties, namely:
Professional service providers
State, regulatory bodies
Funders of the service or part thereof
Law enforcement agencies
Other institutions directly provided for by legislation
Data retention period
Patient data is stored for the period specified by law:
Outpatient history — from data archives 5 years old For a period of time
Inpatient history — 15 years old For a period of time
Patient rights under the Law of Georgia on Personal Data Protection
The patient has:
Right to receive information about data processing
Right to access and copy data
Right to correct, update and complete data
Right to terminate, delete, destroy and/or block data processing
Right to data portability
Rights related to automated individual decision-making
Right to withdraw consent
Right to appeal
To exercise your rights, please submit a request to the clinic's office, located on the 4th floor of the same building.
Restriction of patient rights
A patient's rights may be restricted if this is directly provided for by Georgian legislation — in accordance with Article 21 of the Law of Georgia on Personal Data Protection.
Data security
The clinic has taken all appropriate measures required by law to ensure data security.
Personal Data Protection Officer
The clinic's personal data protection officer is: Mariam Gokhidze
📞 Phone: 557 93 90 63
📧 Email: pdpo@ahtbilisi.com