Folelse

Help Centre

Policies & Procedures 4 min read

Using NHS policy templates

Folelse includes a library of NHS-specific and UK GDPR policy templates, pre-written to reflect current ICO guidance, DSPT requirements, and NHS England standards. Templates save you hours of drafting.

Available NHS templates

  • Data Protection & Privacy Policy — covers UK GDPR obligations, individual rights, and your DPO's role.
  • Information Governance Policy — overarching IG framework for NHS organisations.
  • Data Sharing Agreement template — for sharing patient data with other NHS bodies.
  • Subject Access Request (SAR) Procedure — step-by-step procedure for handling SARs.
  • Data Breach Response Procedure — incident response steps including 72-hour notification.
  • Records Management Policy — retention schedules aligned to NHS Records Management Code of Practice 2021.
  • Acceptable Use Policy — rules for staff use of NHS IT systems and devices.
  • Bring Your Own Device (BYOD) Policy.
  • Clinical Safety Policy (DCB0129 / DCB0160).
  • Caldicott Principles Policy.
  • National Data Opt-Out Policy.
  • Data Quality Policy.

How to create a policy from a template

  1. 1 Go to Dashboard → Policies.
  2. 2 Click + New Policy.
  3. 3 Click "From template".
  4. 4 Browse or search the template library.
  5. 5 Click "Use this template".
  6. 6 The editor opens with the template content pre-filled.
  7. 7 Customise the policy for your organisation — replace all [ORGANISATION NAME] and [DATE] placeholders.
  8. 8 Review and update any sections that reference specific staff roles or contact details.
  9. 9 Save and publish as normal.

Templates are starting points, not finished policies. Always review and customise them for your specific organisation. Policies that still contain placeholder text like [INSERT NAME HERE] will not satisfy a DSPT audit.

Need more help with this?

Contact support

Related articles

Back to Policies & Procedures