Patient privacy policy
Our Core Commitments to You
EVAL Health's privacy framework for patients is built on four key promises:
- You own your data — Your personal and health information belongs to you
- We never sell your data — We do not sell personal health information to third parties
- You control sharing — Data is only shared with healthcare providers through your explicit authorization
- Security is a priority — We use encryption and strict access controls to protect your information
Data Ownership and Collection
You retain ownership of the personal and health data you provide to EVAL Health. EVAL Health acts as a data processor, managing your information on your behalf.
Data we may collect includes:
- Account information (name, email, date of birth)
- Health data you voluntarily enter into the platform
- Support communications
- Technical usage information
How We Use Your Data
Your data is used exclusively to:
- Provide and maintain the platform services
- Share information with authorized healthcare providers, at your direction
- Send transactional communications related to your account
- Improve platform features through anonymized analysis
Data Sharing
You maintain complete control over how your data is shared.
- Data is transferred to healthcare providers only through your explicit authorization
- Third-party service vendors (such as cloud hosting providers) are contractually obligated to maintain confidentiality
- We do not sell your data, personal health information, phone numbers, or contact information to third parties for marketing purposes
Your Rights
You have the right to:
- Access your data at any time
- Correct inaccurate information
- Request portability of your data
- Delete your account — your EVAL Health data will be permanently destroyed
Important: Data you previously shared with healthcare providers remains subject to those providers' own retention policies. To delete copies of data shared with a provider, contact that provider directly.
- Opt out of text communications at any time by replying STOP to any message from us
Account Deletion
You can delete your EVAL Health account at any time. Deletion results in permanent destruction of your data held by EVAL Health. This does not affect copies of data previously shared with healthcare providers.
Security
Your data is protected by:
- Encryption in transit (TLS)
- Encryption at rest
- Strict access controls
- Regular security assessments
Contact
For privacy questions or to exercise your data rights, contact us at privacy@eval.health.