Health information is considered one of the most sensitive types of personal information. The (Privacy Act) provides extra protections around the collection, use or disclosure of health information.
Whilst the Privacy Act does not prescribe how healthcare organisations should communicate health information, reasonable steps must be taken to protect the information transmitted and the privacy of the patient. What is considered reasonable steps will depend on the nature of the information and the potential for harm caused by unauthorised access. Failure to take reasonable steps to protect health information may constitute a breach of the (APPs).