This policy covers information Avertyn collects through its website, demo, and business communications. It does not cover protected health information ("PHI") processed on behalf of a covered entity — that data is governed by our Business Associate Agreement and the underlying services agreement, consistent with HIPAA.
We do not sell your personal information.
We share information with service providers who help us operate — for example hosting, database, and analytics vendors — under contractual confidentiality and security obligations. Our current sub-processors are described on our Security & Trust page. We may disclose information if required by law or to protect our rights.
We use strictly-necessary cookies to run the site and, where you consent, analytics cookies to understand usage. You can control cookies through your browser settings.
We apply administrative, physical, and technical safeguards — including encryption in transit and at rest and access controls — described on our Security & Trust page. No method of transmission or storage is completely secure.
We keep information for as long as needed for the purposes above and as required by law, then delete or de-identify it.
Depending on your location, you may have rights to access, correct, delete, or restrict use of your personal information, and to opt out of certain processing. To exercise them, contact us at [privacy@avertyn.com]. We will respond consistent with applicable law (for example, U.S. state privacy laws and, where applicable, the GDPR).
When Avertyn processes PHI on behalf of a plan or TPA, it acts as a business associate under HIPAA and handles that data only as permitted by the applicable Business Associate Agreement — not under this policy.
The Service is a business tool not directed to children, and we do not knowingly collect personal information from anyone under 18.
We may update this policy; material changes will be posted here with a revised date.
[Avertyn, Inc.] · [privacy@avertyn.com] · [mailing address].