Privacy Policy

Your privacy is important to us. This policy explains how we collect, use, and protect your information.

Last Updated: January 24, 2026

Information We Collect

We collect information you provide directly to us, including:

**Personal Information:** Name, email address, date of birth, ZIP code, and household size when you create an account or complete our health insurance questionnaire.

**Health Information:** General health status, prescription medications, preferred doctors, and anticipated healthcare needs. This information is used solely to provide personalized insurance recommendations.

**Financial Information:** Household income and employment status to calculate subsidy eligibility. We do not store credit card numbers directly; payment processing is handled securely by Stripe.

**Usage Data:** How you interact with our service, including pages visited, features used, and time spent on the platform.

How We Use Your Information

We use the information we collect to:

• Provide personalized health insurance plan recommendations • Calculate your eligibility for premium tax credits and cost-sharing reductions • Connect you with licensed insurance brokers when requested • Send enrollment deadline reminders and important updates • Improve our recommendation algorithms and user experience • Respond to your questions and provide customer support • Comply with legal obligations

**We never sell your personal information to third parties.**

Data Security

We implement industry-standard security measures to protect your information:

• **Encryption:** All data is encrypted in transit (TLS 1.3) and at rest (AES-256) • **Access Controls:** Strict role-based access limits who can view your data • **Regular Audits:** We conduct security assessments and penetration testing • **Secure Infrastructure:** Our servers are hosted on SOC 2 compliant cloud providers

While we strive to protect your information, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

Your Rights & Choices

You have the following rights regarding your personal information:

• **Access:** Request a copy of the personal data we hold about you • **Correction:** Update or correct inaccurate information • **Deletion:** Request deletion of your account and associated data • **Portability:** Export your data in a machine-readable format • **Opt-Out:** Unsubscribe from marketing communications at any time

To exercise these rights, contact us at [email protected] or use the account settings in your dashboard.

HIPAA Compliance

While HealthInsure Concierge is not a covered entity under HIPAA, we voluntarily follow HIPAA-aligned practices to protect your health information:

• We limit collection of health data to what's necessary for recommendations • Health information is never shared with advertisers or data brokers • Our staff receives privacy and security training • We maintain audit logs of data access

**Important:** We are an educational and comparison tool, not a healthcare provider or insurance company. The information you provide is used to generate recommendations, not to provide medical advice or process insurance claims.

Communications

We may send you:

**Transactional Emails:** Account confirmations, password resets, and recommendation summaries. These cannot be opted out of while you have an active account.

**Enrollment Reminders:** Deadline notifications for Open Enrollment and Special Enrollment Periods. You can customize these in your notification settings.

**Marketing Communications:** Tips, educational content, and product updates. You can unsubscribe at any time using the link in any email.

Third-Party Services

We use trusted third-party services to operate our platform:

• **Stripe:** Payment processing (PCI-DSS compliant) • **SendGrid:** Email delivery • **Auth0:** Authentication services • **Analytics:** Anonymous usage statistics

These providers have their own privacy policies and are contractually obligated to protect your data. We do not share more information than necessary for them to provide their services.

Health Data Handling (App Store Compliance)

**This section addresses Apple App Store and Google Play requirements for health-related applications.**

**Data Minimization:** We collect only the health information necessary to provide personalized insurance recommendations. We do not collect or store detailed medical records, diagnoses, or treatment histories.

**Purpose Limitation:** Health information you provide is used exclusively for: • Generating personalized insurance plan recommendations • Calculating subsidy eligibility • Improving our recommendation algorithms

**No Third-Party Health Data Sharing:** Your health information is never shared with: • Advertisers or marketing platforms • Data brokers or resellers • Employers or insurance underwriters • Any third party for purposes other than providing our core service

**Data Retention:** Health questionnaire data is retained for 24 months after your last activity, then automatically deleted. You can request immediate deletion at any time through Account Settings.

**Children's Privacy:** Our service is not intended for users under 18 years of age. We do not knowingly collect health information from minors.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

• Posting the new policy on this page with an updated "Last Updated" date • Sending an email notification for significant changes • Displaying a notice in the app

Your continued use of the service after changes constitutes acceptance of the updated policy.

Questions About Privacy?

If you have any questions about this Privacy Policy or our data practices, please contact us:

© 2026 HealthInsure Concierge. All Rights Reserved. - healthinsure-concierge.com