At QuHealthy, we consider the privacy of your health information to be a fundamental human right. This document details our practices regarding how we collect, process, and safeguard your personal and clinical data.
1. Introduction and Scope
This Privacy Policy applies to all QuHealthy platform users, including patients, doctors, clinics, and website visitors. By using our services, you consent to the collection of your data under the terms described here.
2. Information We Collect
We collect different types of information to operate efficiently:
- Identity Data: Name, email, date of birth, and ID document.
- Health Information (PHI): Medical history, lab results, consultation notes, and prescriptions, entered by you or your medical providers.
- Technical Data: IP address, browser type, operating system, and device identifiers collected through cookies (subject to your consent).
3. How We Use Your Information
We use your health data exclusively to facilitate medical care. QuHealthy will never sell your medical history to third parties, pharmaceutical companies, or insurance companies without your express, signed consent. Technical data is used for performance analytics and platform improvements.
4. Data Sharing
Your health information (PHI) is only shared with the healthcare professionals you choose to book an appointment with, or to whom you grant direct access from your patient dashboard. We may share anonymous and aggregated data (where it is impossible to identify you) with medical research institutions.
5. Security and Standards
The platform is built under the strictest cybersecurity standards. All sensitive data, including medical records and media (X-rays, photos), are stored with AES-256 encryption at rest and TLS 1.3 in transit. Our servers operate on infrastructure compliant with HIPAA (Health Insurance Portability and Accountability Act) guidelines.
6. Your Rights
Depending on your jurisdiction (including GDPR, CCPA, or local Latin American regulations), you have the right to:
- Access a complete copy of your data in a machine-readable format.
- Request the rectification of inaccurate information.
- Request the total deletion of your account and associated data ('Right to be Forgotten').
- Revoke access previously granted to doctors or clinics.