HealthiReach Privacy Policy
Learn how HealthiReach manages, protects, and respects your privacy. We design our platforms with security and transparency at the core.
Executive Summary Mode
Condense legal clauses into quick bullet highlights
1. Introduction
Welcome to HealthiReach. This Privacy Policy outlines how HealthiReach ("we", "our", or "us") collects, utilizes, stores, and protects user information across our digital health portal, web applications, and services (collectively, the "Services").
At HealthiReach, we are deeply committed to maintaining privacy, security, and trust. Our core principle is clear: we only process necessary data required to deliver reliable, highly secure, and seamless healthcare communication solutions. We never sell your personal or healthcare information to third parties.
By accessing or using HealthiReach, you agree to the privacy practices detailed in this Policy. If you do not agree with these terms, please discontinue using our platform.
2. Information We Collect
HealthiReach collects specific categories of information to provide standard service features and fulfill operational compliance requirements:
- Account & Profile Details: Full name, professional or business email address, contact number, organization details, and hashed password credentials for secure authentication.
- Communication & Portal Data: Message metadata, patient/client outreach history, and direct portal interaction records processed on behalf of users.
- Financial Metadata: Subscription payments are processed via PCI-DSS compliant payment gateways. HealthiReach stores only billing transaction metadata (e.g., currency, plan type, last 4 digits of card, invoice status).
- Usage & Device Telemetry: Anonymized IP addresses, browser engine details, operating system versions, and app activity trails to optimize performance and prevent system abuse.
- Cookies & Local Tokens: Session tokens and layout preferences stored locally to maintain active login sessions securely.
3. How We Use Your Information
HealthiReach uses collected information exclusively for legitimate service operations:
- Service Provisioning: Setting up accounts, delivering notification streams, and maintaining platform functions.
- Security & Compliance: Guarding against unauthorized access attempts, preventing brute-force attacks, and securing health data integrity.
- Essential Communications: Dispatching critical security notifications, scheduled maintenance announcements, billing receipts, and product updates.
- System Improvement: Analyzing aggregated, non-identifiable usage statistics to enhance portal responsiveness and develop new features.
4. Sharing & Transfers
We do not trade, rent, or sell user records. Data sharing occurs solely under controlled conditions with certified sub-processors or legal obligations:
- Infrastructure Sub-processors: Cloud hosting, encrypted database providers, and enterprise email/SMS delivery systems that maintain strict Data Processing Agreements (DPAs).
- Legal Requirements: If mandated by law, court orders, or subpoenas, HealthiReach may disclose required information to comply with legal processes or protect platform safety.
- Corporate Transfers: In the event of a merger, acquisition, or restructuring, user databases will remain strictly subject to this original Privacy Policy.
5. Your Privacy Rights
HealthiReach respects global privacy laws (including GDPR, CCPA, and regional health data guidelines). Users hold the following rights:
- Right to Access & Export: Request a full machine-readable export of all data associated with your HealthiReach account.
- Right to Rectification: Update or correct your contact information and profile preferences at any time via portal settings.
- Right to Erasure: Request permanent removal of your personal and active operational records from our primary databases.
- Right to Restrict Processing: Pause automated analytics or opt out of non-essential communications.
