Privacy Policy
Context
As an Australian business providing health services within our borders, Nyrang Health Team are accountable to the Australian Privacy Act 1998. Our target audience does not reside in the EU, US, or UK and thus we are not subject to the privacy reqirements of those jurisdictions.
In a nutshell, the Australian Privacy Act obliges all health providers to:
- collect only such personal/sensitive information required to carry out a stated purpose;
- to collect it directly from the person it is about (or else to inform them when/if such information has been collected form elsewhere);
- to use and disclose it only for the stated purpose;
- to get your specific consent before making alternative uses or disclosures;
- to ensure you can review and correct the information held about you
- and to provide a process for dealing with privacy-related complaints
It is essentially a policy of 'no surprises' that we totally agree with.
This document outlines our handling of personal information (ie. a set of information which could be identified as relating directly to a particular individual) or sensitive information (ie. information about an individual which might alter the behaviour of others towards them). It considers this only with regard to use of this website.. A piece of software – for most people, an Internet browser – makes requests of our website on your behalf. We refer to this below as a 'User Agent'.
What personal information is collected, from whom, and to what end?
This website is used to convey information to the public, and in that respect it is adequate for our purposes that you remain anonymous.
However, your User Agent does automatically send the following information every time it makes a request of our site (or any other website) which in combination with the time of the request and information from other sources not normally under our control could be used to identify you, notably:
- the page you requested from our server
- the IP address and port at which we can reply to your (which is necessary for our website to know 'where to reply to') ... note that this may be a 'shared' address managed by your ISP, who functions as a sort of 'local switchboad' for all of its customers.
- the time of the request
No cookies have been sent just now by your browser.
These headers have been sent just now by your browser:
| accept | */* |
| user-agent | Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com) |
| accept-encoding | gzip, br, zstd, deflate |
Someone who combined this information from your ISP about which subscriber was using that IP address at the time, could identify that it was you who requested our home page from that IP address at at 3:35 in the afternoon and went and looked at half of the other pages, stopping at the contact page. However, that is a general hazard of using the Internet, and is not particular to our site. It's generally only your ISP (who knows that you asked for the address of our site, but not which pages you accessed) who can put the pieces together, and they will usually only do so if they have to.
We do keep the above information for a period of time, however. Our use is to make general statistical observations about how our website is being used, to ensure that is operating smoothly, and to aide in any troubleshooting
Your User Agent also automatically sends the URL of the web page you were on when you clicked a link for our site. We don't presently make any use or record of this information.
More interesting is whether anything in our reply influences your User Agent to do any of the following:
- repeat back to us a piece of information (of our choosing) every time it makes a request of our site - a so-called 'cookie';
- send us whatever information is available about your User Agent which it is willing to disclose
- make a request to a different website not under our control
Such influence is possible, and your User Agent is disposed to honour such requests. There are good reasons for using all of the above influences in order to give you a good experience using our website. However, each of the above techniques can also be abused in ways that allow 3rd parties to build up a picture of you and how you use the Internet, what you're interested in, etc.
Third Parties
In simply viewing this website, your User Agent relies on the following 'chain of trust':
| Your ISP, your DNS resolver, your User Agent, all of the 'certificate authorities' trusted by your User Agent and/or your operating system) and your operating system itself | (all of these are outside of our control) |
| Gandi | the domain name registrar which registers our site's domain |
| Amazon Route 53 | the DNS server which helps your DNS resolver locate our site host |
| LetsEncrypt | a certificate authority that validates our site identity to your browser |
Our hosting provider is particularly well-placed to see all the information you send
| Metawerx | host our website, could potentially inspect or store anything your User Agent sends to our site, or modify anything that we send to you. We trust them implicitly. |
Once your browser has loaded our site, we further instruct it to make requests of the following 3rd parties:
| Fontawesome | provides fonts we use |
| Typography.com Cloud Fonts | provides fonts we use |
| Google reCAPTCHA v3 | to decide whether we trust users submitting data via forms on our site. This is so important to us, we force you to use it even though the industry as a whole does not know exactly what data-matching Google employs in order to provide the service. In our view, it is nearly impossibleto stop Google tracking you anyway. |
We don't presently use any 3rd-party 'site analytics'. We may decide to do so in future.
We don't presently use any 3rd-party 'content distribution network'.