Privacy Policy

Last Updated: 1 January 2026

Version No.: 1.0

Table Of Contents

Quick Summary

At Shifa Al Jazeera Hospital, we treat your personal information with the same care we treat our patients. This policy explains how we keep your data safe while providing you with excellent healthcare.

What you need to know:

  • What We Collect: We ask for your contact details, medical history, and insurance information to treat you safely and manage your appointments.
  • How We Use It: Your data is used only for your medical care, billing, and legal requirements.
  • No Selling: We never sell your personal information to anyone.
  • Who Sees It: We share details only when necessary – with your doctors, insurance providers, or Bahrain health authorities as required by law.
  • Data Security: We protect your records using secure computer systems, encrypted connections, and strict staff training.
  • Your Control: You have the right to see your records, fix mistakes, and stop marketing messages at any time.

Introduction

Shifa Al Jazeera Hospital (“we,” “our,” or “the Hospital”) respects your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you visit our website or use our services.

This policy applies to:

By using our website or services, you agree to the terms of this Privacy Policy. If you have any questions or concerns about how we handle your information, please contact us at (+973) 17288000.

Information We Collect

We collect information to provide you with quality healthcare and improve your experience.

Personal Information You Provide

When you contact us, book appointments, or receive care, we may collect:

  • Contact details: Name, phone number, email address, home address
  • Identification: National ID number, passport number, date of birth, nationality
  • Medical information: Health history, symptoms, diagnoses, treatments, prescriptions, test results, allergies
  • Insurance details: Insurance provider, policy number, coverage information
  • Payment information: Billing address, payment method (we do not store full credit card numbers)
  • Emergency contacts: Names and phone numbers of family members or designated contacts

Information Collected Automatically

When you visit our website, we automatically collect:

  • Device information: IP address, browser type, operating system
  • Usage data: Pages viewed, time spent on pages, links clicked
  • Location data: General location based on IP address (city/country level only)
  • Cookies: Small files stored on your device (see Cookies section below)

Information from Third Parties

We may receive information from:

  • Insurance companies: Coverage verification, claims processing
  • Other healthcare providers: Medical records for continuity of care (with your consent)
  • Family members: Information provided on your behalf in emergencies

How We Use Your Information

We use your information for the following purposes:

Medical Care and Treatment

  • Provide diagnosis, treatment, and ongoing care
  • Coordinate care between different specialists
  • Manage appointments and follow-up care
  • Maintain accurate medical records

Administrative Operations

  • Process billing and insurance claims
  • Verify insurance coverage
  • Schedule appointments and send reminders
  • Respond to your questions and requests
  • Improve our services and facilities

Legal and Safety Obligations

  • Comply with laws and regulations in the Kingdom of Bahrain
  • Respond to legal requests from authorities
  • Protect against fraud or security threats
  • Report certain conditions to health authorities as required by law

Communication

  • Send appointment reminders via SMS, email, or phone
  • Share test results and treatment updates
  • Provide health education materials
  • Send service updates or facility information (you can opt out)

We do not sell your personal information to third parties.

Legal Basis for Processing (Bahrain Law)

We process your personal information based on:

  • Consent: You have given clear permission for specific purposes
  • Contractual necessity: Processing is needed to provide medical services you requested
  • Legal obligation: Required by Bahrain law or health regulations
  • Vital interests: Necessary to protect your life or health in emergencies
  • Legitimate interests: Needed for hospital operations, fraud prevention, or improving services

How We Share Your Information

We share your information only when necessary and with strict confidentiality.

Healthcare Providers

  • Specialists and consultants: To coordinate your treatment
  • Pharmacies: To dispense prescriptions
  • Laboratories: To process tests
  • Other hospitals: For referrals or emergency transfers (with your consent)

Insurance Companies

  • Claims processing: To verify coverage and submit claims
  • Pre-authorisation: For approval of treatments

Service Providers

  • IT systems: Companies that maintain our medical records software
  • Billing services: Third parties processing payments
  • Communication platforms: SMS and email service providers

All service providers must follow strict data protection agreements.

Legal Authorities

We disclose information when required by law:

  • Ministry of Health: For public health reporting
  • Courts or police: In response to valid legal orders
  • National Health Regulatory Authority (NHRA): For regulatory compliance

Emergency Situations

We may share information without consent when necessary to:

  • Protect your life or health
  • Prevent serious harm to others
  • Respond to medical emergencies

Cookies and Tracking Technologies

What Are Cookies?

Cookies are small text files stored on your device when you visit our website. They help us improve your experience.

Types of Cookies We Use

Essential Cookies (Always Active)

  • Enable basic website functions
  • Remember your language preference
  • Maintain security during your visit

Performance Cookies (Optional)

  • Track how visitors use our website
  • Help us improve navigation and content
  • Collect anonymous usage statistics

Functional Cookies (Optional)

  • Remember your preferences
  • Personalise content based on your location

We do not use advertising or third-party tracking cookies.

Managing Cookies

You can control cookies through your browser settings. Disabling essential cookies may affect website functionality.

To manage cookies:

  • Chrome: Settings → Privacy and Security → Cookies
  • Safari: Preferences → Privacy → Cookies
  • Firefox: Options → Privacy & Security → Cookies

Data Security

We protect your information using appropriate safeguards:

Technical Measures

  • Encrypted connections (SSL/TLS) for website transmissions
  • Secure servers with firewall protection
  • Regular security updates and monitoring
  • Password-protected systems with access controls

Physical Measures

  • Locked storage for paper records
  • Restricted access to medical records areas
  • CCTV surveillance in hospital premises

Administrative Measures

  • Staff training on confidentiality
  • Confidentiality agreements for all employees
  • Access limited to authorised personnel only
  • Regular audits of data access

No system is completely secure. While we use reasonable measures, we cannot guarantee absolute security.

Data Retention

We retain your information as long as necessary:

  • Medical records: 15 years from last visit (as required by Bahrain health regulations)
  • Billing records: 10 years for financial and tax compliance
  • Website data: 24 months or until you withdraw consent
  • Marketing communications: Until you unsubscribe

After retention periods, we securely delete or anonymise your information.

Your Rights

Under Bahrain’s Personal Data Protection Law (PDPL), you have the right to:

  • Access Your Information: Request a copy of the personal information we hold about you.
  • Correct Inaccurate Information: Update incorrect or incomplete details in your records.
  • Restrict Processing: Limit how we use your information in certain circumstances.
  • Object to Processing: Object to processing based on legitimate interests (does not apply to essential medical care).
  • Data Portability: Receive your medical records in a commonly used electronic format.
  • Withdraw Consent: Withdraw permission for marketing communications or non-essential processing.

Please note: Some rights may be limited when processing is required for medical care or legal obligations.

How to Exercise Your Rights

Contact our Data Protection Officer:

We will respond within 30 days of your request.

Children’s Privacy

We provide paediatric services to patients under 18 years old.

For children’s information:

  • We require parental or guardian consent for treatment
  • Parents/guardians may access their child’s medical records
  • We protect children’s information with the same safeguards as adult patients

If you believe we have collected information from a child without proper consent, contact us immediately.

Third-Party Links

Our website may contain links to external websites (insurance providers, health resources, social media).

We are not responsible for:

  • Privacy practices of third-party websites
  • Content on external sites
  • Data security of linked platforms

Please review the privacy policies of any third-party websites you visit.

Marketing Communications

We may send health tips, service updates, or hospital news via:

  • Email
  • SMS
  • WhatsApp (with your consent)

How to Opt Out

Unsubscribe from emails: Click “Unsubscribe” at the bottom of any marketing email

Stop SMS messages: Reply “STOP” to any marketing SMS

Update preferences: Call (+973) 17288000 or email moc.areezajlaafihs@gnitekram

Please note: You will still receive essential communications about your appointments and medical care.

Changes to This Privacy Policy

We may update this Privacy Policy to reflect:

  • Changes in our practices
  • New legal requirements
  • Technological developments

When we make changes:

  • We will post the updated policy on our website
  • We will update the “Last Updated” date
  • For significant changes, we will notify you via email or SMS

Your continued use of our services after changes means you accept the updated policy.

Complaints and Concerns

If you have concerns about how we handle your information:

Step 1: Contact Us

Step 2: File a Complaint with Authorities

If you are not satisfied with our response, you may file a complaint with:

Personal Data Protection Authority (PDPA)
Kingdom of Bahrain
Website: https://www.pdp.gov.bh
Email: hb.vog.pdp@ofni

National Health Regulatory Authority (NHRA)
For healthcare-related privacy concerns
Phone: (+973) 17836500
Website: https://www.nhra.bh/

Contact Information

Shifa Al Jazeera Hospital
Building: 311, Road: 505,
Block: 305, Central Manama,
Manama, 973,
Kingdom of Bahrain

Phone: (+973) 17288000
Email: moc.areezajlaafihs@eracremotsuc
Website: https://www.shifaaljazeera.com/

Data Protection Officer:
Email: moc.areezajlaafihs@gnitekram
Phone: (+973) 17288000

Hours of Operation:
24 hours, 7 days per week