How We Secure Your Data
Your Data is maintained in the United States by us (CareEvolution) or our authorized partners.
We use appropriate physical, organizational, and technical safeguards designed to protect the confidentiality, integrity, and availability of the Data we collect. For example, your data is encrypted both while it is stored and while it is transmitted in accordance with the security standards set forth by the National Institute of Standards and Technology’s (NIST) Federal Information Processing Standard (FIPS) Publication 140-2: Security Requirements for Cryptographic Modules. These are the standards mandated by the Department of Health and Human Services for securing health information. We cannot, however, fully guarantee the security of the Data or any information transmitted to us.
If you enable sharing with third-party device manufacturers and their systems (such as Apple Health, Fitbit, Google Fit, Google Health Connect, etc.) or your health plan or provider, you understand that the App uses the standard security protocols, as provided by the third parties, to protect the privacy and security of your information as it is transmitted to and stored by these third parties. CareEvolution has no control over their security protocols.
Access to the App on your smartphone will be protected by the biometric code (such as Touch ID or Face ID) or the passcode you have enabled on your smartphone. We strongly recommend that one of these be enabled to protect access to all apps on your smartphone, including our App.
We strive to protect the privacy of the Personal Information we collect and hold, but we cannot guarantee complete security. Unauthorized entry or use, hardware or software failure, and other factors may compromise the security of your Personal Information at any time.
How We Use the Data
Your Data will never be sold or used for advertising.
The App collects your Data for the following purposes:
- For the improving general health, medical and fitness management, and for the purposes of medical research.
- We may use the Data to understand, customize and improve user experience with the App. For example, we may engage analytics services to analyze this information in order to help us understand how users engage with and navigate the App, how and when features within the App are used and by how many users.
- We may use the data without your identifying information (name, contact information, email address) to support research and health or quality improvement initiatives with external collaborators and partners.
How We May Share the Data
Except as described in this privacy policy, we will not sell, rent, lease, give away, disclose, or share your contact information, and will not disclose the Data we collect through the App without your consent. Any information collected by the App will not be shared with or sold for advertising purposes.
If required by law, we may share anonymized Data with United States Department of Health and Human Services agencies, the Office for Human Research Protection, and other agencies or courts as required by law. Also, the Institutional Review Board at the Investigator’s institutions that implement a Project in the App may access anonymous data to monitor the safety and conduct of human research.
We may share the Data among the Investigators and Projects you choose to participate in.
We may combine your Data without identifying information (removing information such as name, DOB, and email address) with others’ data (also without identifying information) for use in health and fitness research and quality improvement initiatives.
We also reserve the right to disclose your information that we believe, in good faith, may be necessary to i) protect our intellectual property and other rights; ii) take liability; iii) protect ourselves from fraudulent, abusive, or unlawful uses or activity; iv) investigate and defend ourselves against any third-party claims or allegations; or v) protect the rights or safety of others. We will notify you of any such disclosures.
When we work with third parties who provide services on our behalf, we take steps to limit the Personally Identifiable Information provided to them to that which is reasonably necessary for them to perform the functions for the allowable purposes listed above. We require them to agree to handle and process the information in accordance with our instructions and to maintain the confidentiality, integrity, and availability of the information by applying appropriate organizational and technical safeguards.
We reserve the right to disclose and otherwise transfer your Data to an acquirer, successor, or assignee as part of any merger, acquisition, debt financing, sale of assets, or similar transaction, or in the event of an insolvency, bankruptcy, or receivership in which information is transferred to one or more third parties as one of our business assets, to the extent and in the way as prescribed by applicable law.