Effective Date: July 29, 2025
1. INTRODUCTION
Hedfirst, LLC ("Hedfirst," "we," "us," or "our") respects your privacy and is committed to protecting your personal information. This Privacy Policy describes how we collect, use, share, and protect information when you use our website, mobile applications, and healthcare services (collectively, "Services").
2. INFORMATION WE COLLECT
Personal Information You Provide
We collect information you provide directly, including:
- Account Information: Name, email address, phone number, date of birth, address
- Health Information: Medical history, symptoms, health concerns, and related information you share
- Payment Information: Billing address and payment method details (processed securely by third-party payment processors)
- Communication Data: Messages, calls, and other communications with our support team and healthcare providers
- Survey and Feedback: Responses to surveys, reviews, and feedback you provide
Information We Collect Automatically
When you use our Services, we automatically collect:
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Information: Pages visited, features used, time spent on Services, referral sources
- Location Information: General geographic location based on IP address
- Communication Metadata: Time, date, and frequency of communications
Information from Third Parties
We may receive information from:
- Healthcare Providers: Medical information from providers in our network
- Pharmacy Partners: Prescription and fulfillment information
- Laboratory Partners: Test results and diagnostic information
- Technology Partners: Information from integrated services like video platforms
- Payment Processors: Transaction verification and fraud prevention data
3. HOW WE USE YOUR INFORMATION
We use your information to:
Provide Healthcare Services
- Facilitate telehealth consultations and medical care
- Coordinate prescription services and medication fulfillment
- Manage laboratory testing and result delivery
- Generate AI-powered health assessments and insights
- Maintain medical records and care coordination
Operate Our Platform
- Create and manage your account
- Process payments and manage billing
- Provide customer support and technical assistance
- Send service-related communications and notifications
- Ensure platform security and prevent fraud
Improve Our Services
- Analyze usage patterns and service performance
- Develop new features and improve existing ones
- Conduct research to enhance healthcare delivery
- Personalize your experience and recommendations
Legal and Compliance
- Comply with healthcare regulations and legal requirements
- Respond to legal requests and prevent illegal activity
- Protect our rights and the rights of our users
- Maintain records as required by law
4. HOW WE SHARE YOUR INFORMATION
Healthcare Service Delivery
We share information as necessary to provide healthcare services:
- Healthcare Providers: Medical information shared with providers delivering your care
- Pharmacy Partners: Prescription information shared for medication fulfillment
- Laboratory Partners: Health information shared for diagnostic testing
- Care Coordination: Information shared among your care team for integrated service delivery
Service Providers and Partners
We share information with trusted third parties who help operate our Services:
- Technology Partners: Secure video platforms, AI services, and communication tools
- Payment Processors: Billing and payment processing services
- Customer Support: Third-party support services and communication platforms
- Analytics Providers: Service performance and usage analysis (using de-identified data when possible)
Legal Requirements
We may disclose information when required by law or to:
- Comply with legal processes, court orders, or government requests
- Protect our rights, property, or safety, or that of our users
- Investigate fraud, security issues, or violations of our Terms
- Respond to emergency situations involving health or safety
Business Transfers
In connection with any merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections.
5. HEALTH INFORMATION AND HIPAA
Protected Health Information (PHI)
Health information collected and used in connection with healthcare services is protected under HIPAA. Our use and disclosure of PHI is governed by our Notice of Privacy Practices, which provides additional details about your rights regarding health information.
Business Associate Relationships
We maintain Business Associate Agreements with healthcare providers and other covered entities as required by HIPAA to ensure proper protection of health information.
6. DATA SECURITY AND RETENTION
Security Measures
We implement comprehensive security measures to protect your information:
- Encryption: Data encrypted in transit and at rest using industry-standard protocols
- Access Controls: Strict access limitations based on job function and need-to-know basis
- Security Monitoring: Continuous monitoring for unauthorized access and security threats
- Regular Audits: Periodic security assessments and compliance reviews
Data Retention
We retain information for as long as necessary to:
- Provide ongoing healthcare services and maintain medical records
- Comply with legal and regulatory requirements
- Resolve disputes and enforce our agreements
- Achieve legitimate business purposes
Specific retention periods vary based on information type and applicable laws.
7. YOUR PRIVACY RIGHTS
General Rights
You have the right to:
- Access: Request information about data we collect and how we use it
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to legal and medical record requirements)
- Portability: Request a copy of your information in a portable format
- Communication Preferences: Opt out of marketing communications
State-Specific Rights
California Residents (CCPA/CPRA)
California residents have additional rights including:
- Right to know what personal information is collected and how it's used
- Right to delete personal information (with certain exceptions)
- Right to opt out of sale or sharing of personal information
- Right to correct inaccurate personal information
- Right to limit use of sensitive personal information
Virginia, Colorado, Connecticut, and Utah Residents
Residents of these states have rights including:
- Confirm whether we process personal data
- Access, correct, or delete personal data
- Obtain a copy of personal data
- Opt out of targeted advertising and profiling
Nevada Residents
Nevada residents may opt out of the sale of personal information.
Exercising Your Rights
To exercise privacy rights, contact us at support@hedfirst.com or +1 888-427-1796. We will respond within the timeframes required by applicable law.
8. COOKIES AND TRACKING TECHNOLOGIES
We use cookies and similar technologies to:
- Maintain your login session and account preferences
- Analyze website usage and improve performance
- Provide personalized content and recommendations
- Ensure security and prevent fraud
You can manage cookie preferences through your browser settings, though disabling cookies may limit Service functionality.
9. THIRD-PARTY SERVICES
Our Services integrate with third-party platforms and services that have their own privacy practices. We are not responsible for third-party privacy practices. We encourage you to review their privacy policies.
10. INTERNATIONAL DATA TRANSFERS
If you access our Services from outside the United States, your information may be transferred to and processed in the United States, where our servers and central database are located.
11. CHILDREN'S PRIVACY
Our Services are not intended for individuals under 18. We do not knowingly collect personal information from minors without appropriate parental consent. If we learn we have collected information from a minor, we will delete it promptly.
12. CHANGES TO THIS POLICY
We may update this Privacy Policy periodically. Material changes will be communicated through:
- Email notification to registered users
- Prominent notice on our website
- In-app notifications
Continued use of our Services after changes constitutes acceptance of the updated policy.
13. CONTACT INFORMATION
For privacy-related questions or to exercise your privacy rights:
Privacy Officer
Hedfirst, LLC
3527 S. Federal Way, Suite 103 #459
Boise, ID 83705
Email: support@hedfirst.com
Phone: +1 888-427-1796
This Privacy Policy is effective as of the date listed above and applies to all information collected by Hedfirst.