How do we collect and use Personal Information?
We receive and store any information you knowingly provide to us. To ensure that our Services meet your needs, at times we will need to know who our users are. When you access these Services, We may ask you to voluntarily provide us certain information that personally identifies (or could be used to personally identify) you, or if applicable, your patient (“Personal Information”). Personal Information includes some of the following categories of information, as applicable: (1) contact data (such as email address and phone number); (2) demographic data (such as gender, date of birth and zip code); (3) insurance data (such as insurance carrier, insurance plan, member ID, group ID and payer ID); (4) medical data (such as previous visits to health providers (“Healthcare Providers”), reasons for the visits, dates of the visits, medical history, and other medical and health information you choose to share with us), and (5) other information that you voluntarily choose to provide to us, including without limitation, unique identifiers such as passwords, and Personal Information in emails or letters that you send to us. You may still access and use some of the Services if you choose not to provide us with any Personal Information, but the features of the Services that require your Personal Information will not be accessible to you. In some cases, and if applicable, we may request additional consent from users if we think there is other information that will improve our ability to coordinate care or tailor our services to the needs of our users.
Under a federal law called the Health Insurance Portability and Accountability Act (“HIPAA”), some of the demographic, health and/or health-related information that Quartet collects as part of providing the Services may be considered “protected health information” or “PHI”. Quartet works as a “Business Associate” to Healthcare Providers (a vendor who performs work on behalf of the healthcare provider for the purpose of payment, treatment, or healthcare operations – with whom the healthcare provider has entered into a separate agreement upon registration that specifically indicates how we will protect patient information). Quartet will enter into a Business Associate Agreement with such Healthcare Providers, when applicable. When Quartet receives identifiable information about an individual from or on behalf of Healthcare Providers, this information is PHI. HIPAA provides specific protections for the privacy and security of PHI and restricts how PHI is used and disclosed. Quartet may only use and disclose PHI in the ways permitted by our contracted Healthcare Provider(s).
If you have provided your contact information to us, we may store and use that information to contact you for marketing and promotional purposes by various means, including regular mail, email, telephone, voicemail, or SMS (text message). Users may receive messages about appointment reminders, general health care information and wellness programs sponsored by Quartet. You can recognize when an affiliated business is associated with our services, and we will only share your Personal Information with that affiliated business to the extent that it is necessary for the deliver of the transaction or service. We have no control over the policies and practices of third party websites or businesses as to privacy or anything else, so if you choose to take part in any program or service relating to a Business Associate or affiliated business of ours, please review all such business’ or websites’ policies. We may receive a confirmation when you open an email from us. This confirmation helps us make our communications with you more interesting and improve our services. To the extent permitted by law, and if you have provided your contact information to us, we may store and use that information to contact you about the coordination of your care by various means, including regular mail, email, or telephone, including voicemail or SMS (text message). To the extent you voluntarily opt to have SMS notifications sent directly to your mobile phone, we receive and store the information you provide, including your telephone number. You can adjust the types of notifications you receive and when you receive them by editing your SMS notification settings. We may also use your information to notify you about appointments and/or to communicate with you about your Account. You will have the ability to opt out of any marketing or advertising communications, but we may still send you communications relating to your Account for purposes important to the Services, such as password recovery.
Other information; “cookies” and “tags”?
You should also be aware that when you use our Services, we collect certain “usage data,” such as the number of visitors we receive or what pages are visited most often. This data helps us analyze and improve the usefulness of the information offered through our Services.
We may also collect, or receive from third parties, information based on your IP address that provides us your geolocation data in order to identify relevant markets for users down to a zipcode level of detail and to and provide a better mobile experience. We do not store, sell, disclose or use this data to serve advertisements.
How do we share Personal Information?
We do not rent or sell your Personal Information in personally identifiable form to anyone. We may share your Personal Information with third parties as described in this section.
Quartet will not sell, license, transmit or disclose outside of Quartet the information you provide to us unless (a) expressly authorized by an individual user or Healthcare Provider, (b) necessary to enable us, as a Business Associate of the Healthcare Provider, to perform certain functions, or (c) required or permitted by law. In all cases, we will disclose the information consistent with applicable laws and regulations and we will require the recipient to protect the information and use it only for the purpose it was provided and as necessary to assist us. Quartet takes the Health Insurance Portability and Accountability Act of 1996 (HIPAA) seriously and provides appropriate safeguards to all personal health information (PHI) shared with us – including user’s name, address, social security number, e-mail address, telephone number and claims data, where applicable.
We may de-identify Personal Information so that a user is not identified as an individual, and provide that information to our partners. We may also provide aggregate usage information to our partners (or allow partners to collect that information from our users), who may use such information to understand how often and in what ways people use our Services, so that they, too, can provide an optimal online experience. However, we never disclose aggregate usage or de-identified information to a partner (or allow a partner to collect such information) in a manner that would identify a user as an individual person.
We may share Personal Information with Healthcare Providers that schedule appointments with individual users through our Services. Sharing this information enables Healthcare Providers to submit referrals and schedule appointments with other Healthcare Providers on behalf of the individual user, or to perform analyses on potential health issues or treatments, provided that the user chooses to use the applicable Services. We may also share Personal Information with Healthcare Providers in the event of an emergency.
We may share Personal Information with a user’s insurance provider associated with an individual user’s account for the purposes of care coordination, determining eligibility and cost-sharing obligations, or otherwise obtaining benefit plan information.
We may transfer information about you, including your Personal Information, to another company in connection with a merger, sale, acquisition or other change of ownership or control by or of Quartet (whether in whole or in part). When one of these events occurs, we will use reasonable efforts to notify you before your information becomes subject to different privacy and security policies and practices.
How do you use Personal Information?
We use your information, including Personal Information, to provide and improve on our Services, including to:
- provide you with the products, services and information you request and respond to correspondence we receive from you or our other users;
- provide, maintain, administer or expand the Services, perform business analyses, or for other internal purposes to support, improve or enhance our business, the Services, and other products and services we offer;
- notify users about certain resources or Healthcare Providers that may be of interest;
- send you information about Quartet or our products or Services;
- contact users when necessary or requested, including reminders for upcoming appointments;
- customize and tailor your experience of the Services;
- send emails and other communications that display content that we think will be of interest to users based on their preferences;
- use statistical information that we collect in any way permitted by law, including from third parties in connection with their commercial and marketing efforts; and
- prevent, detect and investigate security breaches and potentially illegal or prohibited activities.
We may use information that is neither Personal Information nor PHI (including non-PHI Personal Information that has been de-identified and/or aggregated) for any reason at our sole discretion.
Children under 18
Our Website and Services are not intended to be used by children under 18 years old. You represent and warrant that you are at least 18 years of age. If you are under age 18, you may not use the Website or Services. We do not knowingly collect Personal Information from, or target our Website or Services to, children under the age 18. We understand that there may be exceptions to this rule including, but not limited to, children who are emancipated. If we discover that the Website is being used inappropriately, we may disable the user ID so that the individual may no longer access our Website.
We welcome your comments or questions about our Website and Services. You can email your comments to our customer support center at firstname.lastname@example.org. We will share your comments and questions with our customer support representatives and those employees most capable of addressing your questions and concerns. Please note that your email, like all non-encrypted Internet email communications, may be accessed and viewed by other Internet users, without your knowledge and permission, while in transit to us. For that reason, to ensure privacy, please do not use email to communicate information to us that you consider confidential. If you wish, you may contact us instead by telephone at (877) 258-4010.
How can you stop receiving emails?
Each marketing or other commercial email we send to you contains an unsubscribe link through which you may easily opt-out of receiving future commercial emails from us. If you do not wish to receive additional commercial emails from Quartet, simply click the unsubscribe link and follow the instructions to unsubscribe your email address. If you have unsubscribed but continue to receive email from us or from one of our customers, you may report this to us by calling (877) 258-4010 or emailing us at email@example.com. Please note that unsubscribe requests may take up to 7 – 10 days to process. You will have the ability to opt out of any marketing or advertising communications, but we may still send Account related communications for purposes important to the Services, such as password recovery or a payment reminder.
Linking to other sites?
Quartet has adopted and adheres to stringent security standards designed to protect non-public personal information at www.quartethealth.com against accidental or unauthorized access or disclosure. Among the safeguards that Quartet has developed for this Website are administrative, physical and technical barriers that together form a protective firewall around the information stored at this Website. We are committed to being HIPAA compliant and ensuring that our subcontractors meet those same standards. We periodically subject our Website to simulated intrusion tests and have developed comprehensive disaster recovery plans. We also review our subcontractors privacy and security policies on a regular basis.
For registered users, your Account is protected by a password for your privacy and security. You must prevent unauthorized access to your Account and Personal Information by selecting and protecting your password and/or other sign-on mechanism appropriately and limiting access to your computer or device and browser. We endeavor to protect the privacy of your Account and other Personal Information we hold in our records, but unfortunately, we cannot guarantee complete security. Unauthorized entry or use, hardware or software failure, and other factors, may compromise the security of user information at any time.
What Personal Information can users (you) access?
Registered users will be able to change their password and update the information provided to us, such as address, contact information and health information, by going to the Account Settings page accessible by logging in at patient.quartethealth.com or careteam.quartethealth.com. Registered and unregistered users can access and delete cookies through their web browser settings.
The information individual users can view, update, and delete may change as the Services change. If you have any questions about viewing or updating information we have on file about you, please contact us at firstname.lastname@example.org.
What choices do I have?
You can use certain features of the Services without registering, thereby limiting the types of information that we collect. You can always opt not to disclose information to us, but keep in mind some information may be needed to register with us or to take advantage of some of our features.
If you have registered for the Services, you may be able to add, update, or delete information in your Account as explained above. When you update information, however, we may maintain a copy of the unrevised information in our records. You may request deletion of your Account by emailing us at email@example.com or by calling us at (877) 258-4010. Some or all of your information may remain in our records after your deletion of such information from your Account. We may use any aggregated data derived from or incorporating your Personal Information after you update or delete your Account, but not in a manner that would identify you personally.
Quartet Health, Inc.
114 West 41st Street, 5th Fl
New York, NY 10036
December 21, 2017