Data Privacy Act (RA 10173)
Understanding your rights and our commitment to data protection under Philippine law.
Clinic Compliance Notice: April 10, 2026
1. About the Data Privacy Act
The Republic Act No. 10173, also known as the Data Privacy Act of 2012 (DPA), is a law that aims to protect the fundamental human right of privacy of communication while ensuring free flow of information to promote innovation and growth. For medical clinics like TeraCare, this law mandates the highest protection for "Sensitive Personal Information."
2. Rights of the Data Subject
As our patient, you are a "Data Subject" and have the following rights under the law:
- Right to be Informed: You must be informed whether personal data pertaining to you shall be, are being, or have been processed.
- Right to Object: You have the right to object to the processing of your personal data, including processing for direct marketing, automated processing, or profiling.
- Right to Access: You have the right to reasonable access, upon written request, to the contents of your personal data that were processed.
- Right to Rectification: You have the right to dispute any inaccuracy or error in your personal data and have the personal information controller (TeraCare) correct it immediately.
- Right to Erasure or Blocking: You have the right to suspend, withdraw, or order the blocking, removal, or destruction of your personal data from the clinic's filing system.
- Right to Damages: You shall be indemnified for any damages sustained due to such inaccurate, incomplete, outdated, false, unlawfully obtained or unauthorized use of personal data.
3. Our Privacy Principles
We process your data based on three fundamental principles:
- Transparency: We tell you why we need your data and how we use it.
- Legitimacy: We only process data for valid medical and operational reasons allowed by law.
- Proportionality: We only collect the data that is necessary for your clinical care. No more, no less.
4. Breach Management
In the unlikely event of a data breach, TeraCare follows the NPC Circular 16-03. We will notify you and the National Privacy Commission within 72 hours of becoming aware of the breach if it involves sensitive personal information that may be used to enable identity fraud.
5. Contact Information
For any DPA-related inquiries, please approach our staff or contact us directly:
TeraCare - Data Privacy Office
📍 Vigan City, Ilocos Sur
📞 +63 917 505 9589