OptimizeRx Corp. Patient Engagement Services Privacy Policy
This privacy policy ("Privacy Policy") applies to the websites ("Websites") and web based and mobile device based software applications ("Applications") owned and operated by OptimizeRx Corp. ("OptimizeRx") and used for patient engagement services.
OptimizeRx also does business as CareSpeak® and mobile Health manager (mHm), and these names are used to refer to OptimizeRx. We operate Websites and Applications under the following names: carespeak.com and mobile health manager (mHm)(each a "Website and Application" and, collectively, the "Websites and Applications"). The words "we" and "our" refer to OptimizeRx.
"You" refers to you or, if the patient is a minor or under the care of a duly authorized caregiver, to the parent, guardian, or such caregiver, or health care professional and/or organization that has contracted with OptimizeRx for the patient's access to the services offered through our Websites and Applications.
By using our Websites and Applications yourself or on behalf of a patient in your care, you and/or the patient in your care agree to be bound by the terms of this Privacy Policy and our Terms & Conditions. By using the Websites and Applications for a patient in your care, you also acknowledge that you have informed the patient and have their prior consent about signing them up for one or more OptimizeRx services.
We understand that your health is a very personal matter, and we want you to feel as comfortable as possible when visiting our Websites and Applications and using our services. We urge you to read this Privacy Policy carefully so that you understand clearly how we may collect and use information. We may change this Privacy Policy at any time by posting revisions to our Websites and Applications.
If you do not agree to the terms of this Privacy Policy, please exit the Websites and Applications immediately.
INFORMATION THAT WE COLLECT AND THE PURPOSE OF COLLECTION
For the 12-month period prior to the data of this Privacy Policy, we explain here what categories of Personal Information we have collected, where we got it from, what we do with it , and with whom we have shared it:
Category of Personal Information Collected
Source
Purpose for Collection
Categories of Recipients
Contact information: such as name, address, phone number for patients and/or caregivers; and email address for patients and/or caregivers.
- When you register as a user and/or when you update your MyAccount, MyCareSpeak, Account Settings, and Settings pages;
- When you subscribe to use one or more of OptimizeRx' services, and
- When you opt-in to participate in marketing and/or promotional e-mails and/or surveys, or send e-mails directly to OptimizeRx.
To deliver OptimizeRx's services including to communicate with and to help us improve our Websites and Applications; for statistical analysis of user behavior; product improvement and development; fulfillment of a requested transaction or record keeping.
We will not disclose to third parties any of your Personal Information unless: (1) you expressly tell or permit us to disclose such information, or (2) we believe in good faith that we must do so to comply with legal requirements such as laws, regulations, search warrants, subpoenas, or court orders.
We also may disclose Personal Information to OptimizeRx operations and maintenance contractors, who sometimes have limited access to your Personal Information in the course of providing products or services to OptimizeRx.
Medical Information: medications; condition or illness information; doctor or health-professional information; pharmacy information; caregiver information; and any other information you voluntarily store.
Provided by you and/or your caregiver and stored in the Patient or Clinical Portal Pages
To deliver OptimizeRx's services including to communicate with and to help us improve our Websites and Applications; for statistical analysis of user behavior; product improvement and development; fulfillment of a requested transaction or record keeping.
The only entities that will have access to Medical Information are us and any third parties we hire to assist us in operating, maintaining, and improving the Applications. These third parties are required to enter into a Business Associates Agreement with us, which obligates them legally to hold your information in the strictest of confidence,
and may not use or disclose it except to fulfill the service we hired them to perform. We will not share any of the Medical Information that is stored in the Patient and/or Clinical Portal pages with any other third parties without your express permission.
Browsing information: such as your IP address, MAC address or other device identifier, the kind of browser or computer you use, pages and content that you visit on the Websites and Applications, what you click on, the state and country from which you access the Websites and Applications, date and time of your visit, and web pages you linked to our Websites from.
Our Web and your interactions with the Sites, including through the use of cookies and other tracking technologies explained further below.
To deliver OptimizeRx’s services including to communicate with and to help us improve our Websites and Applications; for statistical analysis of user behavior; product improvement and development; fulfillment of a requested transaction or record keeping.
We will not disclose to third parties any of your Personal Information unless: (1) you expressly tell or permit us to disclose such information, or (2) we believe in good faith that we must do so to comply with legal requirements such as laws, regulations, search warrants, subpoenas, or court orders.
We also may disclose Personal Information to OptimizeRx operations and maintenance contractors, who sometimes have limited access to your Personal Information in the course of providing products or services to OptimizeRx.
Emails and Newsletters: information about your use of e-mails and newsletters that we send to you. In some cases, when you click on a link or an advertisement in an e-mail, text message or newsletter, your browser may be momentarily directed to a Third Party Website (as defined below) that, acting on OptimizeRx’s behalf, notes or "counts" your response to the e-mail ornewsletter before redirecting your browser to its proper destination; this redirection process will not be apparent to you.
From you when you click on and otherwise interact with our e-mail and newsletter content.
In order to better understand and communicate with our users and calculate overall aggregate statistics.
We will not disclose to third parties any of your Personal Information unless: (1) you expressly tell or permit us to disclose such information, or (2) we believe in good faith that we must do so to comply with legal requirements such as laws, regulations, search warrants, subpoenas, or court orders. We also may disclose Personal Information to OptimizeRx operations and maintenance contractors, who sometimes have limited access to your Personal Information in the course of providing products or services to OptimizeRx.
Search Information: information identifying the visitor or linking the visitor to the search performed.
When and if a visitor performs a search within the Websites and Applications, OptimizeRx
To solve technical problems with the services available directly or indirectly in connection with the Websites and Applications and to calculate overall usage statistics.
We will not disclose to third parties any of your Personal Information unless: (1) you expressly tell or permit us to disclose such information, or (2) we believe in good faith that we must do so to comply with legal requirements such as laws, regulations, search warrants, subpoenas, or court orders. We also may disclose Personal Information to OptimizeRx operations and maintenance contractors, who sometimes have limited access to your Personal Information in the course of providing products or services to OptimizeRx.
PERSONAL INFORMATION FROM OTHER SOURCES
We may receive Personal Information about you from other sources with which you have registered, companies who we have partnered with (collectively "Partners") or other third parties. We may associate this information with the other Personal Information we have collected about you.
Medical Information
To find out more about how medical information about you may be used and disclosed please view Notice of Privacy Practices.
Access by Contractors
Access to your Personal Information by these contractors is limited to the information reasonably necessary in order for the contractor to perform its limited function for OptimizeRx. We also contractually require that our operations and maintenance contractors: (1) protect the privacy of your Personal Information consistent with this Privacy Policy, and (2) not use or disclose your Personal Information for any purpose other than providing us with products and services.
Disclosure to Linked Sites
There may be links to Websites operated by companies other than us (each a "Third Party Website" and, collectively, "Third Party Websites") that are not contractors who provide content or services through our Websites. These links may be found in advertisements, referenced within content, or placed beside the names or logos of sponsors. We do not disclose your Personal Information to theseThird Party Websites without obtaining your consent. We do not endorse and are not responsible for the privacy practices of Third Party Websites.
If you choose to link to a Third Party Website, you should review the privacy policy posted on that Third Party Website to understand how it collects and uses your Personal Information.
Disclosure of Aggregate Information
We may provide to third parties non-personal information about you that does not allow you to be identified or contacted and that is combined with the non-personal information of other users ("Aggregate Information"). For example, we might inform third parties regarding the number of users of our Websites and Applications and the activities they conduct while on our Websites and Applications. Depending on the circumstances, we may or may not charge third parties for this Aggregate Information.
We also may not limit the third parties’ use of the Aggregate Information, except that we do require third parties to whom we disclose Aggregate Information to agree that they will not attempt to make this information personally identifiable by combining it with other databases or performing similar actions.
Security
OptimizeRx has implemented numerous security features designed to prevent the unauthorized release of or access to Personal Information. We have taken a number of steps to safeguard your privacy:
-
Access to our Applications requires registration. During sign-up we ask you to select a user name and password, which will be required each time you log in. To ensure privacy of your data, never share your user name and password with anyone unless you want them to have access to your data. You may change your password at any time by logging on and selecting the Account Settings or Settings pages link.
-
When you log in at our Applications a session ID is generated for the duration of your login. This session ID becomes invalid as soon as you log out. In addition, your session ID will automatically time out after a period of 15 minutes if you are not active on the site.
-
Communication between your personal computer, application server, and database is encrypted using 256-bit encrypted SSL technology.
-
Sensitive information (e.g., mobile phone number) is stored in a database using application level encryption, i.e., Personal Information is mangled and can only be decrypted with a special key that only a limited number of our employees have access to.
-
Once a users' account is deleted, all information in the database is safely deleted. All Personal Information is permanently removed from the database, keeping only statistics and reporting information that is stripped of all Personal Information.
-
OptimizeRx restricts access to your Personal Information to those employees with a need to know it in order to carry out their job functions. OptimizeRx requires each of its employees, consultants, and independent contractors to sign confidentiality, nondisclosure, and Business Associate agreements. OptimizeRx also instructs them on how to secure your Personal Information properly.
OptimizeRx may also share Personal Information with its attorneys and accountants, or in connection with a potential merger, acquisition, or sale of all or substantially all of its assets, in all cases subject to confidentiality and nondisclosure restrictions.
Please be advised, however, that the confidentiality of any communication or material transmitted to or from us via the Websites and Applications, e-mail, and text message cannot be guaranteed. Accordingly, we are not responsible for the security of information transmitted via the Internet. Instead of communicating with us via e-mail, text messaging, or the Internet, you can contact us by mail, phone, or facsimile at the address or numbers set forth at the end of this Privacy Policy.
TEXT MESSAGE COMMUNICATION
The OptimizeRx system uses standard text messaging (SMS) as the main means of communication. Standard text messaging is not secure, and a third party could read these messages.
In the case that you have a mobile phone with Internet connectivity and a data plan, you can activate our secure texting feature by logging into your account. Once this feature is activated, all text messages are encrypted and your privacy is protected. If privacy is a concern for you, and you are not able to activate the secure texting feature, please do not opt-in to any of the OptimizeRx services.
UPDATING PERSONAL INFORMATION AND CONTACTING OPTIMIZERX
You can always contact us in order to: (1) delete your Personal Information from our systems, (2) update the Personal Information that you have provided to us, and (3) change your preferences with respect to marketing contacts or other activities, by e-mailing us at . Such changes will not have any effect on other information that OptimizeRx maintains. We try to answer every e-mail in a timely manner but might not always be able to do so.
You should be aware that it is not technologically possible to remove each and every record of the information you have provided to OptimizeRx from our servers. The need to back up our systems to protect information from inadvertent loss means that a copy of your Personal Information may exist in a non-erasable form that will be difficult or impossible for us to locate.
Nevertheless, we promise that upon receiving your request, all Personal Information stored in the databases we actively use for research and daily business activities, and other readily searchable media, will be deleted.
YOUR CALIFORNIA PRIVACY RIGHTS
If you are a California resident, California law provides you with the following rights with respect to your Personal Information, subject to certain exceptions:
- The right to know what Personal Information we have collected, used, disclosed and sold about you. To submit a request to know, you may call us at (855) 730-8002 or e-mail us at . You also may designate an authorized agent to make a request for access on your behalf.
- The right to request that we delete any Personal Information we have collected about you. To submit a request for deletion, you may call us at (855) 730-8002 or visiting or e-mail us at . You also may designate an authorized agent to make a request for deletion on your behalf.
When you exercise these rights and submit a request to us, we will verify your identity by asking you for your email address, telephone number, and/or information about your account with OptimizeRx. We also may use a third party verification provider to verify your identity. OptimizeRx will endeavor to honor client’s requests unless such a request conflicts with certain lawful exemptions under the California Consumer Privacy Act of 2018.
Please note that OptimizeRx is only required to honor such requests twice in a 12-month period.
Your exercise of these rights will have no adverse effect on the price and quality of our goods or services.
For the 12-month period prior to the date of this Privacy Policy, OptimizeRx has not sold any personal information about its clients; nor does it have any plans to do so in the future.
CONTACT US
OptimizeRx Corp.
Attn: Privacy Officer
400 Water Street, Suite 200
Rochester, MI 48307
USA
This Privacy Policy was last updated on December 20, 2019.