This privacy statement is a draft version. Some aspects in this privacy statement might be changed in the future to be in line with the law and best practices.
We\Visit is a project from the Delft University of Technology, Reinier de Graaf Group, Erasmus MC, IC Connect, and Family and Patient Centered Intensive Care. In this privacy statement, it will be explained what personal data We\Visit collects when you use the service.
To connect you to your loved ones in difficult times, we need to store some information. To be more specific, we require this data to make the connections on the requested times. Privacy is considered of the utmost importance, which is why We\Visit only stores the bare minimum.
We\Visit makes use of the Jitsi Meet software. Below is an excerpt of Jitsi’s Privacy Policy at time of writing showing the data Jitsi stores.
Jitsi Meet does not require users to create accounts. Any information they choose to enter, such as their name or email address is purely optional and is only shared with other meeting participants. We do not retain this information after the meeting.
Other pieces of data such as the chat, or speaker stats, for example, are stored for the duration of the meeting and then destroyed when it ends.
Obviously many of these things can be customized by the configuration of the actual deployment that you are using so we are going to talk about the one we maintain: meet.jit.si
We preserve all of the above defaults but you should absolutely also check out the meet.jit.si Privacy Policy and Terms of Service. https://jitsi.org/meet/privacy https://jitsi.org/meet/terms
There exist multiple subgroups in the system. We will describe for each subgroup the data we store apart from the data Jitsi Meet stores.
We store the following information about patients:
For family members, we store the following data:
For the person handling the tablet, be it hospital staff or volunteers, we store the following data:
All data we collect is collected only when using We\Visit service.
We only use the data given to support the functionality We\Visit promises, giving family members an easy way to connect to their loved ones. For example, we require the contact person’s email address to send the meeting token to, the unit of the hospital to show the proper tablets and time slots to the patient and the booked slots to get you the tablet in time.
Data is being used on a need-to-know basis. This means that tablet operators only see what they need to see to fulfil their duties as tablet operator. Only We\Visit administrators have access to the database.
For example, patients cannot view each other’s slots or family members.
To comply with GDPR regulations, all data is stored on We\Visit server. The data stored on the servers will be deleted after RETENTION TIME.
Access to data is strictly regulated with only select admins having access to the database. All other entities need to use the website itself, where, as mentioned previously, information is provided on a need-to-know basis.
If you have any questions about the privacy policy or want to make use of your rights, please contact privacy@wevisit.hospital