Privacy Policy

Last updated: 3/22/2026

1. Introduction

Vernal Health is committed to protecting your privacy and maintaining the confidentiality of health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our healthcare platform and services.

2. Information We Collect

We collect information necessary to provide healthcare services and maintain our platform:

  • Protected Health Information (PHI): Medical records, treatment information, lab results, and other health data
  • Personal Information: Name, address, phone number, email, date of birth, insurance information
  • Account Information: Login credentials, preferences, and platform usage data
  • Technical Information: IP address, device information, browser type, and access logs

3. How We Use Your Information

We use your information solely for legitimate healthcare and business purposes:

  • Providing healthcare services and treatment
  • Processing payments and billing
  • Communicating about your care and appointments
  • Maintaining accurate medical records
  • Complying with legal and regulatory requirements
  • Improving our platform and services

4. HIPAA Compliance

As a healthcare technology platform, we are committed to full HIPAA compliance:

  • All PHI is encrypted in transit and at rest using industry-standard encryption
  • Access to PHI is restricted to authorized healthcare providers only
  • Staff undergo regular HIPAA training and certification

5. Information Sharing and Disclosure

We only share your information in limited circumstances:

  • With Your Healthcare Providers: To coordinate care and treatment
  • For Payment: With insurance companies and payment processors as necessary
  • Legal Requirements: When required by law, regulation, or court order
  • Business Associates: With HIPAA-compliant vendors who assist with our services
  • Emergency Situations: To prevent serious harm to health or safety

6. Your Privacy Rights

Under HIPAA and other privacy laws, you have the right to:

  • Access and obtain copies of your health records
  • Request corrections to your health information
  • Request restrictions on use and disclosure of your PHI
  • Request confidential communications
  • File a complaint about our privacy practices
  • Receive an accounting of disclosures of your PHI

7. Data Security

We implement comprehensive security measures to protect your information:

  • End-to-end encryption for data transmission
  • Multi-factor authentication for system access
  • Regular security monitoring and incident response
  • Secure data centers with physical access controls
  • Regular backups and disaster recovery procedures

8. Data Retention

We retain your information in accordance with healthcare regulations and legal requirements:

  • Medical records are retained for the minimum period required by law
  • PHI is securely destroyed when no longer needed for treatment, payment, or legal purposes
  • You may request deletion of your data subject to legal and regulatory constraints

9. Changes to This Privacy Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of any material changes and obtain your consent where required by law. The updated policy will be posted on our website with the effective date.

10. Contact Information

For questions about this Privacy Policy or to exercise your privacy rights, please contact us at:

Privacy Officer: [email protected]

General inquiries: [email protected]

Website: www.vernalhealth.io

© 2026 Vernal Health