Medocity is not responsible in any way for Third-Party Devices as it is not a reseller or manufacturer of Third-Party Devices. The information, software, data, or other contents (including opinions, claims, comments) connected to Third-Party Devices belong solely to the companies or individuals responsible for same and are not and cannot be attributed to Medocity in any way. Medocity does not warrant the accuracy of Third-Party Devices, nor is Medocity in any way responsible for or endorse the: information, software, data, and/or privacy policies, etc., related to or pertaining to Third-Party Devices.
Personal Information We Collect
Information You Choose for Us to Collect
We collect information you choose to submit through your use of our Services that personally identifies you, such as your name, telephone number, email address, date of birth and other data which can be reasonably linked to such information (“Personal Information”) only if you choose to share such information with us. For example, you will be required to provide us with certain Personal Information to register with the Services, sign up for certain features available through the Services (such as push notifications, text messages and other communications services which may offer you the ability to share information with third parties, such as health care professionals), and at other times. The decision to provide this information is optional; however, if you decide not to register or provide such information, you may not be able to use some or all of the features of the Services. Further, Medocity may offer location-enabled services, for example to locate a nearby doctor or pharmacy. If you use those services, Medocity may receive information about your actual location (such as GPS signals sent by a mobile device) or information that can be used to approximate a location (such as a cell ID). You will have the option to disable collection and use of location information. However, doing so may prevent you from using some features of the Services, or limit the function of some features.
Medocity offers you the ability to share your Health Information through use its Services. “Health Information” includes both Protected Health Information (PHI) and Additional Health Information. “Protected Health Information” is personally identifiable information which relates to your health or payment for your health that is created or received by an entity covered under the Health Insurance Portability and Accountability Act of 1996 (HIPAA), such as a third-party health care professional providing services to you through the Services. Protected Health Information includes the combination of your Personal Information and personal health information, such as medical records, medical history and/or information regarding a condition or treatment (e.g. information about symptoms, prescriptions, allergies, diagnoses and outcomes or side effects of treatment). “Additional Health Information” is all other personal health information that is not Protected Health Information, generally because such information was not created or received by a HIPAA-covered entity.
When you use the Services, you expressly authorize the sharing of your Health Information with anyone whom is part of your Services team and is also a user of the Services, which may include one other or multiple other user(s) of the Services, e.g., your caregiver(s) and your healthcare professional(s) – all of whom, along with you, may update your Health Information at any time.
If you allow someone to access your account, you do so at your sole risk and may risk exposing your Health Information. Medocity does not know and cannot control how anyone else to whom you give access to your account and/or with whom you share your Health Information may use your Health Information or account. Health Information you provide to others may not be protected, kept private, or be secure. You are solely responsible for all use of your account, by yourself or anyone whom you permit to use it. Medocity will not be liable for any disclosure or use of Health Information or other information by you or anyone using your account with your permission.
You should not upload any Health Information regarding any person other than yourself without that person’s prior express consent. You must obtain the consent of your family member or any other person before you submit or share Health Information about that person. By submitting or sharing Health Information about a family member or anyone else, you represent and warrant that you have obtained that person’s express consent to do so or that you otherwise have the legal authority to do so (e.g., because that person is a minor and you are the parent or legal guardian).
Information We Automatically Collect
We automatically collect information that does not reflect or reference an individually identifiable user (“Non-Personal Information”) to help us understand how our users use the Services. Like most websites, we automatically collect and use the data contained in log files. The information in the log files may include the IP address of the computer or server that you are using to access the Services, the IP address and/or the URL from the website you visited just before you visited our Services, the URL of the page you visit upon leaving the Services, if any, and the type of browser and operating system you are using. This anonymous usage information may be associated with your username and profile, but Medocity does not disclose the associated information to third parties.
Cookies and Web Beacons
How We Use Your Information
We may use Personal Information, Health Information and Non-Personal Information for the purposes intended by the Services, including: to communicate with you and your health care professionals, to notify you of new products or services, to send service notifications, to customize the content you see, to fulfill your requests for products and services, to improve the Services, to conduct research, to solicit your feedback and input about the Services and/or to provide more relevant products and services on or through the Services. Such information may be combined with data collected from other sources so that we may further improve the relevance of products and services offered on or through the Services.
We may use Personal Information and Health Information to facilitate health care services offered on or through the Services, and we may disclose such information to third-party health care professionals with whom you choose to communicate.
Communicating with You
By becoming a user of Medocity Services and providing your mobile number and/or email address, certain features of the Services will be provided to you via your mobile phone or other mobile device which may include: the ability to upload content to Medocity Services, download applications, and receive email, short message service (SMS), text message communications and mobile push notifications, each of which are not encrypted (“Mobile Features”). Standard messaging, data and/or other fees may be charged by your carrier. You can opt out of receiving email, SMS/text messages, and mobile push notifications. Although unlikely, it is possible for these communications to be intercepted or accessed without your authorization, and by using the Services, you release Medocity from any liability arising from or related to any such interception or unauthorized access. You can opt out by changing your profile settings within the Services or by notifying your healthcare provider. You agree to notify Medocity of any changes to your mobile number and email by updating your Medocity Services account to reflect any changes.
Communicating with Your Health Care Professionals
Services concerning you may be accessed by the third-party health care professionals and caregivers who are linked to your account, and by Medocity service providers, affiliates, representatives and assigns, all of whom may: send and receive reminders, alerts or other service-related information via email and/or push notifications or the like, i.e., utilize Mobile Features to notify and be notified of information about you. The use of Mobile Features may include the sharing of your Personal Information and Health Information. Although unlikely, it is possible for these communications to be intercepted or accessed without your authorization, and by using the Services, you release Medocity from any liability arising from or related to any such interception or unauthorized access.
In addition, from time to time, we may establish a business relationship with other persons or entities whom we believe trustworthy and whom we have asked to confirm that their privacy practices are consistent with ours (“Service Providers”). For example, we may contract with Service Providers to provide certain services, such as hosting and maintenance, data storage and management services and marketing and promotions. We provide our Service Providers with the information reasonably necessary for them to perform these services. Each Service Provider must agree to implement and maintain reasonable security procedures and practices appropriate to the nature of the information involved in order to protect your information from unauthorized access, destruction, use, modification or disclosure.
We may use, and disclose to third parties, certain Non-Personal Information regarding the Services (e.g., the total number of persons using particular medications, the aggregate number of inquiries from a particular geographic location, etc.). However, such information does not identify you individually.
Please be advised that, whenever you voluntarily post information to any public forum such as a bulletin board, blog, community or related interactive area of the Services, collectively “Public Posts”, such information can and may be accessed by the public. This means that any person or entity with access to such information can potentially use it for any purpose, including to send unsolicited communications.
Information that we collect is stored on servers that Medocity manages, using standard security procedures and practices appropriate to the nature of the information in an effort to protect information from unauthorized access, destruction, use, modification or disclosure. However, no data transmission over the Internet can be guaranteed to be 100% secure. As a result, while we strive to protect information transmitted on or through the Services, we cannot and do not guarantee or warrant the security of any information you transmit on or through the Services, and you do so at your own risk.
Children’s Privacy Statement
You are not to provide to Medocity (and Medocity does not knowingly collect) Personal Information or Health Information from children under the age of 13. If Medocity becomes aware that we have inadvertently received Personal Information or Health Information from or about children under the age of 13, Medocity will delete such information from its records.
Privacy Shield Statement
Medocity, Inc. has certified to the United States (U.S.) Department of Commerce our intent to comply with the EU-US Privacy Shield Framework regarding the collection, use, and retention of Personal Data transferred from the European Union (EU) to the U.S in a manner consistent with the Privacy Shield Principles of Notice; Choice; Accountability for Onward Transfer; Security; Data Integrity and Purpose Limitation; Access; and Recourse, Enforcement, and Liability. To learn more about the Privacy Shield program, and to view our certification, please visit https://www.privacyshield.gov/.
Purpose of Collecting and Processing Personal Data and/or Personal Information
We collect and process Personal Data and/or Personal Information for the purpose of delivering its Services, satisfying client contractual commitments, meeting legal or regulatory obligations.
Medocity acts as a controller or equivalent under privacy laws for data collected where it decides how and why personal data is used. We collect Personal Data when individuals visit its website or sign up to use its Services as described above in Personal Information We Collect and Personal Information We Automatically Collect above.
Medocity acts as a data processor or equivalent under privacy laws for data it processes when providing services to its clients (acting as data controller). Personal Data and/or Personal Information is processed as instructed by its client.
We will not collect or process your Personal Data and/or Personal Information covered by this statement for purposes other than as outlined by contract, or for purposes other than originally obtained or authorized by you, or without your consent.
You have the right to access your Personal Data and/or Personal information. You or your authorized representative may submit a request to request access to firstname.lastname@example.org.
Exercise Your Choice
You have the choice of limiting access, disclosure, withdraw your consent at any time. You or your authorized representative may submit a request to exercise your choice to email@example.com.
Accountability for Onward Transfer
Medocity understands its accountability for onward transfer your Personal Data and/or Personal Information. We limit onward transfers to third parties for its specified purpose, with the expectation and confirmation of equivalent privacy protection, notification if/when the third-party is no longer able to meet its obligation of meeting the Principles and take reasonable and appropriate steps to stop and remediate unauthorized processing, where applicable.
We implement safeguards to protect your Personal Data and/or Personal Information from unauthorized access, disclosure, or destruction.
Exercise Your Rights
You have the right to (1) request information from us on what Personal Data and/or Personal Information we use and with whom your Personal Data and/or Personal Information it is shared; (2) request and receive from us a copy of the Personal Data and/or Personal Information we have about you; (3) request correction, limit processing, erasure, or removal of your Personal Data and/or Personal Information. You or your authorized representative may submit a request to exercise your rights firstname.lastname@example.org.
Inquiries and Complaints
Disclosure of Personal Information
Your Personal Data and/or Personal Information will be disclosed:
(1) upon lawful requests by public authorities, including to meet national security or law enforcement requirements.
(2) to service providers when you sign up to use Medocity’s Services. See Personal Information We Collect and Personal Information We Automatically Collect above. Each Service Provider must agree to implement and maintain reasonable security procedures and practices appropriate to the nature of the information involved in order to protect your information from unauthorized access, destruction, use, modification or disclosure.
Investigatory and Enforcement Powers
Medocity is subject to the investigatory and enforcement powers of the Federal Trade Commission (FTC).
Within the scope of this privacy statement, if a privacy complaint or dispute cannot be resolved through Medocity, Inc.’s internal processes, Medocity, Inc. has agreed to participate in the VeraSafe Privacy Shield Dispute Resolution Procedure. Subject to the terms of the VeraSafe Privacy Shield Dispute Resolution Procedure, VeraSafe will provide appropriate recourse free of charge to you. To file a complaint with VeraSafe under the Privacy Shield Dispute Resolution Procedure, please submit the required information to VeraSafe here: https://www.verasafe.com/privacy-services/dispute-resolution/submit-dispute/
If neither Medocity, Inc, nor its third-party dispute resolution provider can address your complaint, then binding arbitration via the Privacy Shield Panel information is found here.
Effective Date: 12/2/2020