Xtensys Privacy Policy
1. Introduction
Xtensys is committed to protecting the privacy and confidentiality of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard the information you provide when visiting our website or using our services.
2. Compliance with HIPAA and Applicable Law
Because Xtensys provides technology and services to healthcare organizations, we comply with the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and other applicable privacy and security regulations. Protected Health Information (PHI) is handled in accordance with HIPAA standards to ensure confidentiality, availability, and integrity.
3. Information We Collect
We may collect the following types of information:
- Technical Information: IP address, browser type, device details, operating system, referral source, visit length, and navigation patterns.
- Contact Information: Name, email, phone number, or other details you provide through forms, subscriptions, or account registration.
- Service Use Information: Data generated through your use of our website and services (frequency, timing, and interactions).
- Communications: Information contained in messages you send to us, including email or website contact form content.
- PHI (if applicable): When working with healthcare providers under HIPAA, PHI is used only as permitted by law and contractual agreements.
4. How We Use Your Information
Your personal information may be used to:
- Operate and improve our website and services
- Provide and support services you request
- Send administrative messages, billing, or account notices
- Deliver newsletters and marketing (if you have opted in)
- Personalize your user experience
- Respond to inquiries or complaints
- Ensure security, fraud prevention, and regulatory compliance
- Meet HIPAA and legal obligations regarding PHI
5. Disclosure of Information
We may share personal information only under these circumstances:
- With employees, contractors, and partners who require access to deliver services and are bound by confidentiality
- As required by law, legal process, or government authorities
- To prevent fraud, investigate security incidents, or protect legal rights
- In connection with business transfers (mergers, acquisitions, or asset sales)
- With healthcare providers under HIPAA-compliant agreements
We do not sell or rent personal information to third parties.
6. International Data Transfers
Xtensys primarily stores data in the United States. If data is transferred internationally, it will be done under appropriate safeguards required by law.
7. Data Retention
We retain personal information only as long as necessary for the purposes described in this Privacy Policy or as required by law, regulation, or contract. HIPAA-related records are retained according to regulatory requirements.
8. Security of Information
We use reasonable administrative, technical, and physical safeguards to protect your information against unauthorized access, disclosure, or misuse. These include:
- Secure servers and encrypted communications (SSL/TLS)
- Firewalls and intrusion detection systems
- Access controls and audit logs
- HIPAA-compliant data handling for PHI
However, no method of internet transmission is 100% secure, and we cannot guarantee absolute security.
9. Your Rights
Depending on applicable law, you may have the right to:
- Access and obtain a copy of your personal data or PHI
- Request corrections to your personal data or PHI
- Request restrictions on how we process or disclose PHI (under HIPAA)
- Opt out of receiving marketing communications
- Request deletion of certain personal data, subject to legal limitations
Requests related to PHI may require coordination with your healthcare provider.
10. Third-Party Websites
Our website may link to third-party sites. We are not responsible for the privacy practices of those external sites.
11. Cookies
Our website uses cookies to improve your experience, track usage, and support certain features. You may manage cookies through your browser settings, but disabling them may limit functionality.
12. Changes to this Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated effective date.
13. Contact Us
If you have questions about this Privacy Policy, HIPAA compliance, or wish to exercise your privacy rights, you may contact us:
- Xtensys
- Email: [Insert Contact Email]