Privacy Protection
My Health Companion, LLC
Effective Date: May 12, 2026 | Last Updated: May 12, 2026 At My Health Companion, LLC ("we," "us," or "our"), your privacy is our priority. We are committed to safeguarding your personal health information across our mobile app and myhealthcompanion.health website (the "Services"). This policy outlines our transparency regarding data collection and security. By using our Services, you consent to these practices. If you disagree with any terms, please discontinue use.IMPORTANT: We do not provide medical advice, diagnosis, or treatment. Our platform is a tool for personal health record management. We process Protected Health Information (PHI) in strict compliance with HIPAA and HITECH standards.1. DATA WE COLLECT1.1 Direct Information: We collect your name, email, and password during registration. You also provide health data such as doctor visit recordings, transcripts, summaries, medications, and caregiver contact details.1.2 Automatic Data: We collect device types, operating systems, and app usage metrics. General location data is only accessed when you scan a clinic QR code.1.3 Partner Data: We may receive health resources from clinic partners when you interact with their specific QR codes.2. HOW YOUR DATA IS USED2.1 Essential Services: To transcribe visits, generate plain-language summaries, display medical definitions, set medication reminders, and enable authorized caregiver access.2.2 Operations: To troubleshoot technical issues, improve app performance, and develop new user features.2.3 Communications: To send health alerts, policy updates, and support responses. SMS notifications for caregivers are managed via Twilio.2.4 Analytics: We may use de-identified, aggregated data for research. This data cannot identify you. You can opt-out by emailing hello@myhealthcompanion.health.3. INFORMATION SHARING3.1 Authorized Access: Health data is shared with caregivers only at the specific permission levels you set.3.2 Trusted Partners: We use secure providers for essential functions: Google Firebase (Storage), AWS (HIPAA-compliant AI and transcription), Supabase (Database), and Twilio (SMS). AWS operates under a Business Associate Agreement (BAA).3.3 Clinic Partners: Scanning a QR code identifies a facility to show you their content, but your PHI is never shared without your express permission.3.4 Legal & Business: We disclose data only if required by law or during a business merger, with prior notice to you.3.5 No Sale of Data: We never sell or trade your health or personal information to third parties.4. HIPAA COMPLIANCE & SECURITYAs a personal health record platform, we utilize high-level safeguards:- TLS 1.2+ encryption during transit- AES-256 encryption at rest- Strict role-based access and audit logs- Regular security assessments and executed BAAsYou may file privacy concerns at hello@myhealthcompanion.health or with the HHS Office for Civil Rights.5. RECORDING & CONSENTYou control when to record doctor visits. You are responsible for following your state's recording laws. In "all-party consent" states (e.g., CA, FL, IL, PA), you must inform your provider before recording. Audio is processed securely by AWS Transcribe Medical and deleted promptly after the transcript is generated.6. DATA RETENTION- Account/Health Data: Kept until you delete your account.- Caregiver Logs: Maintained for 7 years per legal requirements.- Analytics: Identifiable data is kept for up to 2 years.Upon deletion, PHI is removed or anonymized within 30 days.7. YOUR RIGHTS- Direct Control: Update or delete records and caregiver permissions anytime in-app.- Portability: Request a data export via email; we respond within 30 days.- Account Deletion: Contact us for permanent account removal.8. CHILDREN’S PRIVACYOur Services are for individuals aged 18 and older. We do not knowingly collect data from minors and will delete such information if discovered.9. SECURITY MEASURESWe use end-to-end encryption and multi-factor authentication. While no system is 100% secure, we follow rigorous protocols and will notify you of any verified data breach.10. UPDATESWe may update this policy to reflect new laws or features. Highlights of changes will be sent via email or in-app notice. Continued use after updates signifies acceptance.CONTACT USMy Health Companion, LLC | Atlanta, GeorgiaEmail: hello@myhealthcompanion.healthWebsite: myhealthcompanion.healthMy Health Companion, LLC | Privacy Policy | Effective May 12, 2026