Privacy Policy
To Our Patients: This notice describes how health information about you (as a patient of any of our practices) may be used and disclosed, and how you can get access to your health information. This is required by the Privacy Regulations created in accordance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA). At BioXcellerator™, your privacy is our priority. We are committed to being transparent about how we collect, use, and share your personal information while complying with relevant privacy laws and regulations, including the California Consumer Privacy Act (CCPA) and European General Data Protection Regulation (GOPR). This Privacy Policy is designed to help you understand what personal information we collect about you, how we use and disclose such information, the steps we take to protect it, and your rights regarding your information.
- Personal Information: Personal information refers to any information that relates to an identified or identifiable individual, including our clients, patients, and employees. This excludes business contact information or work product information. This Privacy Policy applies to personal information we collect when you use our products or services, or otherwise interact with us, such as through our websites, applications, email correspondence, marketing materials, or other online or downloadable tools.
- Our Commitment to Your Privacy: At BioXcellerator™ we are dedicated to maintaining the confidentiality of your personal and health-related information. We are required by law to protect the privacy of your health information, and we understand that these laws can be complex. However, we are here to provide you with the following important information:
- How we may use and disclose your personal and health information.
- Your privacy rights, including access, correction, and deletion requests. Our obligations regarding the use and disclosure of your information, in compliance with applicable laws.
- How We Use Personal Information We Collect: We take steps designed to ensure that only those employees who need access to your Personal Information to fulfill their employment duties will have access to it. How we use the Personal Information we collect depends in part on which Services you use, how you use them, and any preferences you have communicated to us. We use Personal Information we hold about you only for permitted purposes.The following categories describe how we may use and disclose your health information, as well as how we handle other types of personal information collected.
- Treatment: Physicians and staff may use or disclose your health information in order to treat you or to assist others in your treatment. Additionally, we may disclose your health information to others who may assist in your care, such as your spouse, children or parents.
- Payment: Our practice may use your health information to bill and collect payment for the services you receive from us. We may provide your insurer with details regarding your treatment to determine if your insurer will cover, or pay for, your treatment. We also may use and disclose this information to obtain payment from third parties that may be responsible for such costs, such as family members. Also, we may use your health information to bill you directly for services and items.
- Healthcare operations: We may need to use and disclose your health information to be able to run our practice at the highest level of clinical standards and as effectively as possible. This could be used to evaluate the performance of our physicians and staff, to determine if our treatment plans are effective, or to determine if there are other services we should be offering. We may also compare our clinical data with other practices, review it with medical students, medical faculty, technicians, and others for teaching and learning purposes. We will strive to remove information that identifies you from this medical information.
- Disclosures required by law: Our practice will use and disclose your health information when we are required to do so by federal, state, or local law.
- Appointment Reminders and Sign-In Sheets: We may want to call you by phone for reminder purposes and leave a message on your answering machine at home, work, or with a family member. We will also use a sign-in sheet at the front desk for purposes of logging our patients as they arrive. We will require your name only on this sign-in sheet. BioXcellerator™ will conduct patient group educational sessions for our patients. Specific questions relating to your individual medical issues will be addressed in private.
- Testimonials and Influencers: In some cases, BioXcellerator™ testimonials are from patients – such as pro athletes, veterans, and first responders — who have received complimentary treatment or a discount on their treatment. We do not pay our influencers for their promotion of our brand. We simply ask they provide the most honest feedback of their experience. At times opportunities to cross-market may arise and partnerships could be formed. At which point the parties will no longer be viewed as patients but as dual business entities seeking a common goal.
Patients seen in BioXcellerator™ videos have typically received a discount for their testimonials as a complimentary thank you for sharing with future potential patients.
- What Personal Information We Collect About You: We collect Personal Information about you when you input it into the Services or otherwise provide it directly to us and this information may be used for our own marketing purposes including emails for direct marketing purposes, in addition to other purposes. We collect Personal Information that you give us by filling in paper forms or data fields on our websites, or by corresponding with us by phone, email or otherwise. This includes information you provide to us when you complete a contact form, register on our website, or subscribe to BioXcellerator™ communications, or purchase our products. The information you give us may include your name, year of birth, race and ethnicity, contact information (i.e. shipping address, email address, phone number, email), and contact preferences. To the extent necessary to process a payment, you may also give us certain of your financial information, including credit card information.
- Information You Provide To Us: We collect Personal Information about you when you input it into the Services or otherwise provide it directly to us and this information may be used for our own marketing purposes including emails for direct marketing purposes, in addition to other purposes. We collect Personal Information that you give us by filling in paper forms or data fields on our websites, or by corresponding with us by phone, email or otherwise. This includes information you provide to us when you complete a contact form, register on our website, or subscribe to BioXcellerator™ communications, or purchase our products. The information you give us may include your name, year of birth, race and ethnicity, contact information (i.e. shipping address, email address, phone number, email), and contact preferences. To the extent necessary to process a payment, you may also give us certain of your financial information, including credit card information.
- Patient Data Collection and Marketing: Please note that BioXcellerator™ collects data on patient treatment and outcomes, including:
- Pre- and post-treatment MRI scans when applicable
- Pre- and post-treatment blood tests
- Questionnaires on specific conditions completed by patients before treatment
- Reports from patients after treatment to evaluate outcomes
- Other users of the Services: Other users of our Services may provide Personal Information about you. For example, we may receive your email address for other service users when they provide it in order to refer you to the Services;
- BioXcellerator™’s Partners: We work with a global network of partners who provide consulting, implementation, training and other services around our products. Some of these partners also help us to market and promote our products, generate leads for us, and resell our products. We receive Personal Information from these partners, such as name, billing information, contact information, what products you may be interested in, evaluation information you have provided, what events you have attended, and what country you are in; and
- Other Partners: We receive Personal Information about you and your activities on and off the Services from third-party partners, such as advertising and research partners who provide us with information about your interest in and engagement with our Services and online advertisements.
- How We Use The Personal Information We Collect: We take steps designed to ensure that only those employees who need access to your Personal Information to fulfill their employment duties will have access to it. How we use the Personal Information we collect depends in part on which Services you use, how you use them, and any preferences you have communicated to us. We use Personal Information we hold about you only for permitted purposes, in accordance with applicable national or local data protection laws and applicable provisions of the European General Data Protection Regulation (GOPR). Below are the specific purposes for which we use the Personal Information we collect about you:
- To operate, maintain, enhance and provide all features of the Services, to provide the Services and information that you request, to respond to comments and questions and to provide support to users of the Services;
- To understand and analyze the usage trends and preferences of our users, to improve the Services, and to develop new products, services, feature, and functionality;
- To provide information to competent regulatory authorities in geographies BioXcellerator™’s or its’ partners operate, which support various regulatory submissions and reporting requirements;
- To verify accounts and activity, to monitor suspicious or fraudulent activity and to identify violations of Service policies;
- To review and assess your job application;
- To send you communications; or
- To comply with legal and regulatory requirements, where applicable.
- We need it to provide you the Services, including to operate the Services, provide customer support and personalized features and to protect the safety and security of the Services;
- It satisfies a legitimate interest (which is not overridden by your data protection interests), such as for research and development, to market and promote the Services and to protect our legal rights and interests;
- You give us consent to do so for a specific purpose;
- We need to process your data to comply with a legal obligation; or
- If you have consented to our use of Personal Information about you for a specific purpose, you have the right to change your mind at any time, but this will not affect any processing that has already taken place. Where we are using your Personal Information because we or a third party (e.g. your employer, your healthcare professional) have a legitimate interest to do so, you have the right to object to that use though, in some cases, this may mean no longer using the Services.
- Targeted Advertising and Lead Generation: When you use the Services, we may automatically record certain Personal Information from your device by using various types of technology, including cookies, “clear gifs” or “web beacons.” This automatically collected information may include your IP address or other device address or ID, web browser and/or device type, the web pages or sites visited just before or just after using the Service, the pages or other content you view or interact with on the Service, and the dates and times of the visit, access, or use of the Service. We use personal information collected through cookies, web beacons, and similar technologies to serve customized advertisements and generate leads. This includes advertising through third-party platforms such as Meta (Facebook and Instagram), Google, LinkedIn, YouTube, Bing, and AdRoll. We may use the collected information to deliver targeted ads to users based on their interactions with our website, interests, and behaviors.
- Opt-Out: Users can opt out of personalized advertising by adjusting their cookie preferences in their browser or using the NAI’s Consumer Opt-Out page. Additionally, you can manage your ad preferences on platforms like Meta and Bing by visiting their respective settings pages.
- Cross-Device Tracking: To improve the effectiveness of our advertising, we utilize cross-device tracking, allowing us to target users across multiple devices using hashed identifiers derived from email addresses. This helps us display relevant ads to users across their devices. If you wish to opt out of this tracking, please visit the NAI’s Consumer Opt-Out page or adjust your device settings.
- Lead Generation: We collect personal information such as your name, email address, and contact preferences through forms and other interactions on our website. This data is used to send follow-up communications and marketing materials aimed at promoting our services. You can choose not to provide your information for lead generation purposes at any time.
- Data Retention for Advertising: We retain the data used for advertising purposes only for as long as necessary for these activities. If you wish to have your data deleted, please contact us at marketing@bioxcellerator.com.
- Cookies and Tracking Technologies: We use cookies and other tracking technologies, such as web beacons, to improve your experience and deliver personalized advertising. These technologies help us track your interactions with our website, including pages viewed, time spent, and actions taken. This information allows us to provide relevant ads through third-party platforms, including Meta, Bing, and Google. By continuing to use our website, you consent to the use of these technologies. You may manage your cookie preferences by adjusting your browser settings or using the cookie consent banner provided when you visit our website. Please note that disabling certain cookies may affect your ability to use some features of our website.
- Third Party Retargeting: We collect hashed identifiers derived from email addresses for the purposes of cross-device tracking for targeted advertising through AdRoll, a third-party provider. A link to their privacy Notice is here: NextRoll’s Privacy Notice. If you want to opt-out from receiving cross-device site advertising (i.e. tracking a user across devices), by accessing their device setting or visiting and employing controls described in this link: NAI’s Consumer Opt Out
- How We Share Personal Information We Collect: We may use collaboration tools and we want them to work well for you. This means sharing Personal Information through the Services and with certain third parties in the ways reviewed below. We may share or transfer Personal Information we collect under this Privacy. We share information with third parties that help us operate, provide, improve, integrate, customize, support and market our Services. When we disclose your Personal Information to third parties, we take reasonable measures to ensure that the rules set forth in this Privacy Policy are complied with and these third parties provide sufficient guarantees to implement appropriate technical and organizational measures for:
- Service Providers: We work with third-party service providers to provide website and application development, hosting, maintenance, backup, storage, virtual infrastructure, payment processing, analysis and other services for us, which may require them to access or use Personal Information about you;
- BioXcellerator™ Partners: We work with third parties who provide consulting, sales, and technical services to deliver and implement solutions around the Services. We may share your Personal Information with these third parties in connection with their services, such as to assist with billing and collections and to provide localized support. We may also share Personal Information with these third parties where you have agreed to that sharing;
- Links to Third Party Sites: The Services may include links that direct you to other websites or services whose privacy practices may differ from ours. If you submit Personal Information to any of those third party sites, your Personal Information is governed by their privacy policies, not this one. We encourage you to carefully read the privacy policy of any website you visit;
- Third-Party Widgets: Some of our Services contain widgets and social media features, such as the Twitter “tweet” button. These widgets and features collect your IP address, which page you are visiting on the Services, and may set a cookie to enable the feature to function properly. Widgets and social media features are either hosted by a third party or hosted directly on our Services. Your interactions with these features are governed by the privacy policy of the company providing it;
- Compliance with Enforcement Requests and Applicable Laws: Enforcement of Our Rights: In exceptional circumstances, we may share Personal Information about you with a third party if we believe that sharing is reasonably necessary to:
-
- comply with any applicable law, regulation, legal process or governmental request, including to meet national security requirements,
- enforce our agreements, policies and Terms of Service,
- protect the security or integrity of our products and services,
- protect BioXcellerator™, our customers or the public from harm or illegal activities, or
- respond to an emergency which we believe in good faith requires us to disclose Personal Information to assist in preventing the death or serious bodily injury of any person.
-
- How We Store and Secure Personal Information We Collect: Your Personal Information may be stored and processed in any country where we have facilities or in which we engage third party service providers, including data hosting service providers. By using the Services, you consent to the transfer of Personal Information to countries outside your country of residence, including the United States, Canada and the United Kingdom, which may have different data protection rules than in your country. While such Personal Information is outside of your country of residence, it is subject to the laws of the country in which it is held, and may be subject to disclosure to the governments, courts or law enforcement or regulatory agencies of such other country, pursuant to the laws of such country. However, our practices regarding your Personal Information will at all times continue to be governed by this Privacy Policy and, if applicable, we will comply with the GDPR requirements providing adequate protection for the transfer of Personal Information from the EU/EEA to third country. While we implement safeguards designed to protect your Personal Information, no security system is impenetrable and due to the inherent nature of the Internet, we cannot guarantee that data, during transmission through the Internet or while stored on our systems or otherwise in our care, is absolutely safe from intrusion by others.We will strive to ensure your Personal Information is accurate by updating our records based on the latest information available to us, including any corrections provided to us by you.We have implemented physical, technological and administrative measures designed protect Personal Information, including restricted access to paper documents, password-protected access to electronic records and mandatory privacy training for employees.
- How Long We Keep Personal Information: How long we keep Personal Information we collect about you depends on the type of information, as described in further detail below. After such time, we will either delete or anonymize your Personal Information or, if this is not possible (for example, because the Personal Information has been stored in backup archives), then we will securely store your Personal Information and isolate it from any further use until deletion is possible:
- Account Information: We retain your account information for as long as your account is active and a reasonable period thereafter in case you decide to reactivate the Services. We also retain some of your information as necessary to comply with our legal obligations, to resolve disputes, to enforce our agreements, to support business operations, and to continue to develop and improve our Services. Where we retain information for Service improvement and development, we take steps to eliminate information that directly identifies you, and we only use the information to uncover collective insights about the use of our Services, not to specifically analyze personal characteristics about you;
- Marketing Information: If you have elected to receive marketing emails from us, we retain information about your marketing preferences for a reasonable period of time from the date you last expressed interest in our Services, such as when you last opened an email from us. We retain information derived from cookies and other tracking technologies for a reasonable period of time from the date such information was created.
- Your Rights Regarding Your Health Information:
- You can request that our practice communicates with you about your health and related issues in a particular manner or at a certain location. For instance, you may ask that we contact you at home, rather than at work. We will accommodate reasonable requests.
- You can request a restriction in our use or disclosure of your health information for treatment, payment, or health care operations. Additionally, you have the right to request that we restrict our disclosure of your health information to only certain individuals involved in your care or the payment for your care, such as family members and friends. We are not required to agree to your request; however, if we do agree, we are bound by our agreement except when otherwise required by law, in emergencies, or when the information is necessary to treat you.
- You have the right to inspect and obtain a copy of the health information that may be used to make decisions about you, including patient medical records and billing records, but not including psychotherapy notes. You must submit your request in writing to our address on the About Us Page.
- You may ask us to amend your health information if you believe it is incorrect or incomplete, for as long as the information is kept by or for our practice. To request an amendment, your request must be made in writing and submitted to the Contact Us Page.
- You must provide us with a reason that supports your request for amendment. We will have 60 days to respond to your request.
- Right to a copy of this notice. You are entitled to receive a copy of this notice of privacy practices. You may ask us to give you a copy of this notice at any time. To obtain a copy of this notice, contact us.
- Right to file a complaint. If you believe your privacy rights have been violated, you may file a complaint with our practice or with the Secretary of the Department of Health and Human Services. To file a complaint with our practice, contact us. All complaints must be submitted in writing to us. You will not be penalized for filing a complaint.
- Right to provide authorization for other uses and disclosures. Our practice will obtain your written authorization for uses and disclosures that are not identified by this notice or permitted by applicable law. This authorization stays in effect until you revoke it.
- To public health authorities and health oversight agencies that are authorized by law to collect information.
- Lawsuits and similar proceedings in response to a court or administrative order.
- If asked to do so by a law enforcement official.
- When necessary to reduce or prevent a serious threat to your health and safety or the health and safety of another individual or the public. We will only make disclosures to a person or organization able to help prevent the threat.
- If you are a member of U.S. or foreign military forces (including veterans) and if required by the appropriate authorities.
- To federal officials for intelligence and national security activities authorized by law.
- To correctional institutions or law enforcement officials if you are an inmate or under the custody of a law enforcement official.
- For Workers Compensation and similar programs. Your rights regarding your health information
- How To Access and Control your Personal Information: You have certain choices available to you when it comes to your Personal Information. Below is a summary of those choices, how to exercise them and any limitations:
- Right to Request: You have the right to request a copy of your Personal Information, to object to our use of your Personal Information (including for marketing purposes), to request the deletion or restriction of your Personal Information, or to request your Personal Information in a structured, electronic format. Below, we describe the tools and processes for making these requests;
- Your Request and Choices May Be Limited in Certain Cases: for example, if fulfilling your request would reveal Personal Information about another person, or if you ask to delete Personal Information which we or your administrator are permitted by law or have compelling legitimate interests to keep. Where you have asked us to share data with third parties, for example, by integrating third-party health care providers, you will need to contact those third-party service providers directly to have your Personal Information deleted or otherwise restricted. If you have unresolved concerns, you may have the right to complain to a data protection authority in the country where you live, where you work or where you feel your rights were infringed;
- Access and Update Your Personal Information: If your Personal Information is inaccurate or incomplete, you have the right to request rectification of your Personal Information;
- Delete Your Personal Information: You have the right, under certain circumstances, to request deletion or removal of your Personal Information from our systems;
- Request That We Stop Using Your Personal Information: In some cases, under the GDPR, you may ask us to stop accessing, storing, using and otherwise processing your Personal Information where you believe we don’t have the appropriate rights to do so. For example, if you believe a Services account was created for you without your permission or you are no longer an active user, you can request that we delete your account as provided in this Privacy Policy. Where you gave us consent to use your Personal Information for a limited purpose, you can contact us to withdraw that consent, but this will not affect any processing that has already taken place at the time. You can also opt-out of our use of your Personal Information for marketing purposes by contacting us, as provided below. When you make such requests, we may need time to investigate and facilitate your request. If there is delay or dispute as to whether we have the right to continue using your Personal Information, we will restrict any further use of your Personal Information until the request is honored or the dispute is resolved, provided your administrator does not object (where applicable);
- Data portability: Data portability is the ability to obtain some of your Personal Information in a format you can move from one service provider to another (for instance, when you transfer your mobile phone number to another carrier). Depending on the context, under the GDPR, this applies to some of your Personal Information, but not to all of your Personal Information. Should you request it, subject to applicable laws, we will provide you with an electronic file of your basic account information.
- Assistance: You may have the right to obtain assistance from the British Columbia Office of the Information & Privacy Commissioner, or a similar body in the relevant jurisdiction.
- Our Policy Towards Children: The Services are not directed to individuals under 18. We do not knowingly collect Personal Information from individuals under 18. If we become aware that an individual under 18 has provided us with Personal Information, we will take steps to delete such information. If you become aware that an individual under 18 has provided us with Personal Information, please contact Chris at marketing@bioxcellerator.com.
- Changes to Our Privacy Policy: We may change this Privacy Policy from time to time. We will post any Privacy Policy changes on this page and, if the changes are significant, we will provide a more prominent notice by adding a notice on the Services homepages, or by sending you an email notification. We encourage you to review our Privacy Policy whenever you use the Services to stay informed about our information practices and the ways you can help protect your privacy. If you disagree with any changes to this Privacy Policy, you will need to stop using the Services and deactivate your account(s), as outlined above.
- Supplemental State Privacy Disclosures: If you live in California, Colorado, or certain other states that have adopted generally applicable laws that may provide you with additional rights regarding our use of your personal information. You may have certain rights to request certain information regarding our disclosure of personal information to third parties for their direct marketing purposes. To make such a request, please send an email to Chris at marketing@bioxcellerator.com.
- Contact Us: If you have any questions or comments about this Privacy Policy or your Personal Information, to make a correction request, to exercise any applicable rights, to make a complaint, or to obtain information about our policies and practices with respect to any service providers outside your country of residence, our Privacy Officer can be reached by mail or email using the following contact information: Chris at marketing@bioxcellerator.com.