Dock Health Privacy Statement
Effective Date: January 3, 2020
Last Updated: April 21, 2020
PROTECTED HEALTH INFORMATION
COLLECTION OF PERSONAL INFORMATION FROM APPLICATION USERS
(1) Information You Provide
The general types of Personal Information that Dock Health collects to register your account or when otherwise provided by the User include: name, email address, phone number, and credentials. We use this information to manage your account, verify your identity, and deliver the Application services to you.
(2) Patient Data
Patient Information may also be collected and utilized through the Application, either by manual entry or through connectivity via an electronic health record (EHR). Such data may include demographics such as patient name, date of birth, medical record number, gender, and contact information, along with clinical or diagnostic information about the patient. In addition, tasks generated on behalf of the patient through use of the Application will be saved to the record of that specific patient in the Application (not in the EHR).
(3) Cookies and Web Beacons
Dock Health may place “cookies” on the hard drives of Application Users. Cookies save data about individual Users, such as the User’s name, user-name, screen preferences, and the pages of the Application viewed by the User. When the User revisits the Application, Dock Health may recognize the User by the cookie and customize the User’s experience accordingly. Users may decline cookies, if any, by using the appropriate feature of their web browser, if available.
Dock Health also may use web bugs (a.k.a. web beacons) to gather, store, and track certain information related to the User’s visit to and activity on the Application. A web bug is a file object, which can be a graphic image such as a transparent one pixel-by-one pixel graphics file, which is placed on a web page or in an email message to monitor user activity. A web bug can gather, for example, the IP address of a visitor’s computer, the time the web page was viewed, and the type of browser used.
(4) User Behavior Analytics
Dock Health may collect data about the User’s behavior and their devices to present them with opportunities to get work done in the right context. This includes, for example, access to the User’s calendar and geographic location so we can analyze when and where the User typically completes various tasks. The Application may send the User push notifications or email notifications to remind or prompt actions based upon the User’s behavior data. You can choose to disable the notifications in the Application settings.
(5) Do Not Track
This Application does not support “Do Not Track” signals or other mechanisms, so it does not do so. For more information on Do Not Track signals, see https://allaboutdnt.com/.
Minors are not allowed to register for or use the Application. Dock Health does not knowingly allow any minors to register for the Application on their own. If we learn that Personal Information has inadvertently been collected from a person under age 13, we will delete that information.
(7) Support Information
If you contact us regarding questions, issues, or requests related to the use of our Application, our support team may view your Personal Information, as well as any additional information you provide, in order to assist. We may also ask follow-up questions to gather more information as necessary to address your issue. This information is stored as a record of your support request.
(8) Audit Trails
Dock Health also tracks all data entered or changed in the Application via audit trails as per state and federal regulations, to discover and respond to events to protect our Application from security threats, fraud, or other illegal activity. We may also use this information to enforce our EULA, compliance, and other legal obligations. Where feasible we limit the identifiable and sensitive information contained in these audit trail files.
USE OF PERSONAL INFORMATION COLLECTED THROUGH THE APPLICATION
Personal Information collected by Dock Health through the Application may be used by Dock Health for many reasons, for example, managing your account, verifying your identity, delivering services, and storing your User preferences. We may also track and examine your use of our Application, including preparing reports to help improve User workflows and experience within the Application.
If you create an account and provide your email address, we will send you administrative emails (i.e., updates on a task, Users in your list, invitations to new lists, etc.). All Users receive administrative emails, you cannot opt-out of them while you remain an account holder.
DISCLOSURE OF PERSONAL INFORMATION TO THIRD PARTIES
Dock Health does not license or sell your Personal Information to third parties.
We may use third parties to help provide Application services to you on our behalf and may share your Personal Information with them for this purpose, including our cloud host provider. These third parties are contractually bound to protect your Personal Information.
We may provide your Personal Information to third parties with your express consent, such as a valid HIPAA Authorization.
Additionally, we may be required to disclose your Personal Information to comply with a legal request or to fulfill regulatory requirements (i.e., disclosure to public authorities in response to a subpoena).
Finally, we may transfer your Personal Information to an entity or individual that acquires, buys or merges with Dock Health, or through some other business reorganization.
In addition to the Personal Information categories, uses and disclosures discussed above, we may remove the identifiable parts of your Personal Information to create de-identified information (“De-identified Information”). This De-identified Information does not contain any PHI or details of a task. De-identified Information may be combined with other data into aggregated datasets. We use De-identified Information in the following ways, to the extent permitted by HIPAA and other applicable laws:
(1) Disclosure for Business Purposes: We may license, sell or otherwise share De-identified Information with other clients, partners, investors and contractors for any purposes related to our business practices.
(2) Product Improvement and Analytics: We may use De-identified Information for product improvement purposes or to understand our customer base and better serve our market.
(3) Research: We may use De-identified Information for research whether scientific, marketing, or business in nature. This research may be made public through publications such as within a scientific journal.
Dock Health has a legal duty to protect your Personal Information. We have put in place reasonable physical, technical, and administrative controls to safeguard and help prevent unauthorized access to your Personal Information. All Personal Information collected through the Application is encrypted in transit and at rest in HIPAA-compliant databases. While we endeavor to protect the privacy of the Personal Information we maintain in our Application, we cannot guarantee complete security. Unauthorized entry or use, hardware or software failure, and other factors, may compromise the security of your Personal Information at any time.
Some of these security measures rely upon you. Our Users are required to abide by industry-accepted security practices, including but not limited to, keeping your login credentials secret, avoiding public WiFi networks, and password protecting your mobile device. If you ever suspect a security issue with your account, contact immediately.
STORAGE AND RETENTION
Dock Health itself stores and processes all Personal Information provided to it through the Application in the United States of America. We retain your data for as long as reasonably necessary to provide you with services related to the Application or to comply with applicable law.
RIGHTS TO PERSONAL INFORMATION
You may request access, changes, or deletions to your Personal Information and request information about our collection, use and disclosure of such information by contacting us at email@example.com. We use best efforts to keep our records as accurate and complete as possible. You can help us maintain the accuracy of your information by notifying us of any changes to your Personal Information as soon as possible. Your rights to access, change, or delete your Personal Information are not absolute. For example, we may deny you such rights when required by law.
Copyright © 2020 Dock Health, Inc. All Rights Reserved.