Last Updated

TODO: Confirm final effective date with counsel

Legal review pending final counsel approval. TODO placeholders in this policy must be finalized before launch.

Legal

Privacy Policy

This Privacy Policy explains how TODO: Insert legal entity name (e.g., Friender Health, Inc.) ("Friender Health," "we," "our," "us") collects, uses, discloses, and protects personal information when you visit our website, interact with our marketing and sales channels, use our software products, or communicate with us.

For healthcare customer data processing terms, HIPAA role allocation, and healthcare-specific disclosures, see our Healthcare Privacy Notice.

1. Scope

This policy applies to personal information collected through our public website, demo and contact workflows, account authentication and access services, and use of Friender Health operational software. It does not replace terms in customer contracts, including Business Associate Agreements (BAAs), Data Processing Addenda (DPAs), or similar agreements.

2. Categories of Information We Collect

Depending on context, we may collect:

  • Identifiers and contact data: name, work email, phone number, organization, and job title.
  • Commercial and account data: subscription, service usage, support, and customer relationship information.
  • Authentication data: login and session details from identity providers used for account access.
  • Internet/activity data: request logs, page interactions, approximate device and browser details, and performance telemetry.
  • Customer-submitted operational data: staffing, scheduling, credentialing, and workflow records provided by or on behalf of our healthcare customers.
  • Communications: inquiries, customer support content, and business communications with Friender Health.

3. Sources of Information

We collect personal information from:

  • You directly (for example, demo requests, account actions, and support interactions).
  • Your employer or healthcare organization when they provision your access.
  • Integrated systems and authorized data feeds configured by our customers.
  • Service providers that support authentication, hosting, analytics, and communications.

4. How We Use Information

We use personal information to:

  • Provide, operate, secure, and improve Friender Health services.
  • Authenticate users, enforce role-based access, and maintain auditability.
  • Respond to inquiries, provide support, and manage customer relationships.
  • Monitor performance, reliability, and service quality.
  • Comply with legal, regulatory, contractual, and compliance obligations.
  • Investigate and prevent fraud, abuse, and unauthorized access.

5. How We Share Information

We may disclose information to:

  • Service providers and subprocessors that perform services on our behalf, under contractual confidentiality and security terms.
  • Customer organizations that control accounts and data access for their workforce.
  • Legal and regulatory authorities when required by law or to protect rights, safety, and security.
  • Corporate transaction parties in connection with financing, merger, acquisition, or asset transfer, subject to lawful safeguards.

We do not sell personal information for monetary consideration. We do not knowingly share personal information for cross-context behavioral advertising.

6. Cookies, Analytics, and Do Not Track

We use cookies and similar technologies for site operation, security, and analytics. Our site may use privacy-focused analytics tools and infrastructure logs to understand performance and usage trends.

Do Not Track: Some browsers transmit "Do Not Track" (DNT) signals. Because there is no uniform industry standard for DNT response, our systems do not currently respond to DNT signals in a standardized way.

7. Data Retention

We retain personal information for as long as needed to provide services, satisfy legal and contractual obligations, resolve disputes, enforce agreements, and support security and auditing requirements. Retention periods vary by data type and customer contract.

8. Security

We maintain administrative, technical, and physical safeguards designed to protect personal information. These include access controls, encryption in transit, logging, and monitoring. No security control guarantees absolute protection.

9. Children's Privacy

Friender Health services are not directed to children under 13, and we do not knowingly collect personal information directly from children under 13.

10. U.S. State Privacy Disclosures

Depending on your state of residence and our relationship with your data, you may have rights such as access, correction, deletion, and appeal of certain decisions. We will process valid requests in accordance with applicable law.

California: We provide this policy to satisfy California online privacy disclosure requirements and applicable California consumer privacy disclosure duties. Certain personal information and protected health information (PHI) may be exempt from California consumer privacy law where statutory exemptions apply, including HIPAA-related exemptions.

Washington and Nevada: Additional obligations may apply to consumer health data processing in some contexts. Where required, we provide applicable notices and rights processes based on the role we play for the relevant data.

11. HIPAA and Healthcare Processing Context

When Friender Health processes PHI on behalf of healthcare customers, we generally act as a business associate or service provider under customer instructions and contractual safeguards. See our Healthcare Privacy Notice for details.

12. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will update the "Last Updated" date above and take additional steps where required by law.

13. Contact Us

For privacy questions or requests, contact us at hello@frienderhealth.com.

Privacy Contact: TODO: Confirm privacy contact (or use hello@frienderhealth.com)

Mailing Address: TODO: Insert legal mailing address