Privacy
Policy
Last
Updated: November 4, 2013
The
privacy of protected health and personal information is critical to
Enablemyhealth site, which is owned and operated by EnableDoc LLC
(“Enabledoc”). This Privacy Policy explains how Enablemyhealth
handles the personally identifying information that patients and
healthcare providers (“Providers”) (collectively, “Member” or
“Members”) voluntarily provide, when Members use Enablemyhealth
and that may automatically be collected when a Member visits the
Enablemyhealth ("PHI").
Enabledoc
created this Privacy Policy (“Privacy Policy”) to give Members
confidence as Members use the Enablemyhealth Services (collectively,
the “Services”), and to demonstrate our commitment to fair
information practices and the protection of privacy. This Privacy
Policy is only applicable to Enablemyhealth site and not any
marketing affiliates or sites that Member may be able to access from
Enablemyhealth, which may have data collection, storage, and use
practices and policies that differ materially from this Privacy
Policy. Member use of the Services is governed by this Privacy Policy
and the EnableDoc Terms and Conditions.
USING
THE ENABLEMYHEALTH SERVICES AND/OR BY REGISTERING WITH
ENABLEMYHEALTH, MEMBER ACCEPTS THE PRACTICES AND POLICIES OUTLINED IN
THIS PRIVACY POLICY, AND MEMBER HEREBY CONSENTS THAT ENABLEMYHEALTH
WILL TRACK, COLLECT, USE, AND SHARE MEMBER INFORMATION IN THE
FOLLOWING WAYS. IF MEMBER IS REGISTERING AN ACCOUNT OR REGISTERING AN
ACCOUNT ON BEHALF OF AN INDIVIDUAL OR ORGANIZATION OTHER THAN THE
MEMBER, MEMBER REPRESENTS THAT MEMBER IS AUTHORIZED BY SUCH
INDIVIDUAL OR ORGANIZATION TO ACCEPT THIS PRIVACY POLICY ON SUCH
INDIVIDUAL'S OR ORGANIZATION’S BEHALF.
If
Member is creating and/or accessing Enablemyhealth on behalf of an
individual other than the Member, then the Member represents and
warrants the following:
-
Member
is at least 18 years of age.
-
Member
is authorized to enter, send, and request appointments on behalf of
that individual or organization, which includes but is not limited
to all PHI entered, sent, or received on behalf of that person or
organization other than the Member.
-
Member
is authorized to engage in the activities and services conducted on
Enablemyhealth on behalf of that natural person or entity other than
Member.
-
Enablemyhealth
does not collect information from children under the age of 18 in
accordance with the Children’s Online Privacy Protection Act
(“COPPA”). COPPA severely restricts what information can be
collected from children under the age of thirteen (13). For this
reason, Enablemyhealth has extended this to all children under the
age of 18 in the United States are prohibited from using the
Services without creation of an account by a parent or guardian. The
Services are not directed at children, and Enablemyhealth does not
knowingly collect any information from individuals under the age of
18. If Enablemyhealth learns that any information from an individual
under the age of 18 has been provided, Enablemyhealth will use that
information only to respond directly to that child (or a parent or
legal guardian) to inform him or her that he or she cannot use the
Services and subsequently Enablemyhealth will delete that
information from our own servers.
-
If
Member is a parent or legal guardian of a minor child, Member may,
in compliance with the Terms
and Condition, use the Services on behalf of such minor child.
Any child PHI will be treated as PHI as defined herein.
Personal
Information Collected
To
provide Enablemyhealth Services, Member personal information (“PHI”)
maybe entered and shared with healthcare providers. PHI includes the
following information: (1) demographic information, such as name,
gender, marriage status, date of birth, ethnicity, race, and
language, (2) insurance information, (3) appointments, and (4)
medical record information, such as current medication, allergies,
past medical information, medical files, and medical images, and (5)
secure messaging and referral information.
Browser
Data Collection and Analytics
Enablemyhealth
collects
the following information when accessing the Enablemyhealth site: (1)
IP address, (2) GPS coordinates, (3) domain servers, (4) computer
information, (5) web browser used, (6) referring site linked to
Enablemyhealth; and (7) other information collected by the browser
and Enablemyhealth (collectively “Browser Data”). Non-PHI may
also be collected and combined with data from Enablemyhealth. Enabledoc
may use third party analytics services in connection Enablemyhealth.
All Browser Data is securely saved. PHI will be saved until Member
requests that it be deleted or after 10 years. Other information
concerning usage of the site may be tracked for HIPPA, support, and
usage tracking purposes. All PHI is securely stored and not shared
with third parties unless required to be shared by law or as directed
by Member or Provider concerning patient’s care.
Enablemyhealth
Use of Member Information
Patient
and Provider information is collected, which may be PHI that Members
voluntarily provide when using Enablemyhealth Services, such as
searching for Providers, searching for available appointments, enter
patient demographics, attaching medical files, and entering medical
information. PHI is used in the following ways:
-
Enablemyhealth
allows patient Members and Provider Members to share patient PHI
with other Providers and patients. Member patients can enable or
disable access to PHI for Wellness Team Providers.
-
Patients
that add family member patients will have access to family member
PHI unless that family member disables PHI access.
-
Emergency
access is defaulted to be accessible for hospitals and emergency
personnel. Members have the ability to disable this emergency
access.
-
Enablemyhealth
collects information Member provides voluntarily through responses
to medical forms, surveys, questionnaires and other information
fields. Some of the Services on our Enablemyhealth collect PHI.
-
Enablemyhealth
may use Member PHI to offer Services or recommend Providers to
patients and Member Contacts.
-
Enablemyhealth
may use contact data to send request to join Enablemyhealth, and/or
referral notifications.
-
Member
demographic data, browser data, profile settings or medical data may
be used to customize and tailor user interface experience or
recommend Services.
-
PHI
may be used to refer Members to other Providers to make appointments
or share Member medical information.
-
PHI
may be used on statistical research on selective aggregate health or
medical information. Such research would only use Member PHI in an
anonymous manner that cannot be tied directly back to Member.
-
Enablemyhealth
may share Member contact data, Traffic Data, demographic data,
insurance data and medical data with Providers Member chooses to
schedule.
-
In
order to customize Member advertising interactions, Enablemyhealth
may share PHI with marketing affiliates and other third parties only
on an aggregate basis.
HIPPA,
Confidentiality, and Security
Except
as otherwise provided in this Privacy Policy, EnableDoc will keep
Member PHI private and will not share it with third parties, unless
EnableDoc must: (1) comply with Federal, state, local laws or a court
order or other legal process, (2) protect the rights, property or
safety of Enablemyhealth; (3) enforce Enablemyhealth Agreement; or
(4) respond to claims that any posting or other content violates the
rights of third-parties.
Provider
Members, staff, and their agents should be particularly aware of
their obligations of patient confidentiality, including without
limitation their obligations under the Health Insurance Portability
and Accountability Act (“HIPAA”) and the Health Information
Technology for Economic and Clinical Health (HITECH) Act, both in
communicating with Enablemyhealth and in responding to a review of
their services posted on our Enablemyhealth. Enabledoc does not have,
and will not accept, any obligations of confidentiality with respect
to any communications other than those expressly stated in this
Privacy Policy and Enablemyhealth Agreement.
The
security of Member PHI is important. Enablemyhealth follows industry
standards to protect the PHI submitted to and managed by
Enablemyhealth. Data communication is encrypted using secure socket
layer technology (“SSL”) and all passwords are encrypted.
Enablemyhealth
makes good faith efforts to store PHI in a secure operating
environment that is not open to the public, Member should understand
that there is no such thing as complete security, and there is no
guarantee that unintended disclosures of Member PHI may be made by
Enablemyhealth or Members. If Enablemyhealth becomes aware that
Member PHI has been illegally disclosed, Enablemyhealth will use
reasonable efforts to notify Member of the nature and extent of the
disclosure as soon as reasonably possible and as permitted by law.
Public
Information
Any
information that Member may reveal on their web pages or blog or
discussion is open to the public and is not PHI or in any way
private. No PHI should be disclosed in this manner and would be a
violation of this Privacy Policy. Member should think carefully
before disclosing any personally identifiable information in any
public forum. Member writings may be seen and/or collected by third
parties and may be used by others in ways Enablemyhealth is unable to
control or predict.
Responsibility
of Member
As
a registered user of Enablemyhealth, Member can modify some of the
PHI Member have included in Members profile or change user ID and
password by logging in and accessing Enablemyhealth. Upon Member
request, Enablemyhealth will use commercially reasonable efforts to
delete all data not shared with other Members. To close an account,
Members should email: privacy@Enablemyhealth.com.
If
Member is leaving a Member group or there is a legal change in
ownership of a Member group, Member or any Group Member must notify
Enablemyhealth of the change, so that proper handling of patient
Member data can be made. Patient Member does have the ability to
disable a Wellness Team Member’s access to their PHI as well as add a
Wellness Team Member.
Members
are responsible for keeping their Member IDs and passwords private
and secure. Sharing of Member accounts is strictly prohibited by law
and will result in termination of a Member account. Member must
promptly notify Enablemyhealth if Member login information is lost,
stolen, or used without permission or if PHI is illegally accessed,
disseminated, or disclosed. Member must not place in Enablemyhealth
any information that the Member knows or has reason to believe is
false or materially inaccurate.
Marketing
Partnerships and Links to Other Sites
Enablemyhealth
may contain links to third party sites to which Enablemyhealth has no
affiliation. Enabledoc does not share Member PHI with those sites and
is not responsible for their privacy practices. Should Member decide
to visit one of these third party sites, please read that site’s
privacy policy.
Billing
Information
Financial
information including credit card and bank account information is
encrypted and securely stored. Unless required by federal, state, and
or local laws, EnableDoc will never share or disclose this
information with any third-party aside from payment processors,
merchant accounts, and data security services.
Changes
to this Privacy Policy
EnableDoc
reserves the right to change this policy. The latest policy will be
posted on this site and is date stamped. Any changes will
automatically apply so please review this document regularly.
Material changes to our policy will be emailed to Members.
Contacts
Any
comments, concerns or questions about this Privacy Policy, please
contact Enablemyhealth at privacy@enabledoc.com
Or
EnableDoc
LLC
7700 Falstaff Road
McLean,
VA 22102
(877)
540-0933