Privacy Policy
Last updated: April 29, 2026
1. Overview
Sivo Health ("we," "our," or "us") is committed to protecting your privacy and the security of your personal health information (PHI). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our telehealth platform.
2. HIPAA Compliance
As a telehealth platform, we are subject to the Health Insurance Portability and Accountability Act (HIPAA). We maintain administrative, technical, and physical safeguards to protect your PHI. All healthcare providers on our platform are required to comply with HIPAA regulations.
3. Information We Collect
Personal Information
- Name, email address, phone number, date of birth
- Shipping and billing addresses
- Government-issued identification (for identity verification)
Health Information
- Medical history and current health conditions
- Intake questionnaire responses
- Prescription and medication history
- Provider consultation notes
- Uploaded medical documents and lab results
Technical Information
- Device type, browser, and operating system
- IP address and approximate location (state-level for provider licensing)
- Usage patterns and interaction data
4. How We Use Your Information
- Facilitating telehealth consultations with licensed providers
- Processing and fulfilling prescriptions
- Processing payments and managing subscriptions
- Sending appointment reminders and health notifications
- Improving our platform and services
- Complying with legal and regulatory requirements
5. Information Sharing
We do not sell your personal information. We may share your information with:
- Healthcare Providers: Licensed providers on our platform for treatment purposes
- Pharmacies: To fulfill prescriptions you have been prescribed
- Payment Processors: Stripe, for secure payment processing
- Identity Verification: Stripe Identity, for age and identity verification
- Legal Requirements: When required by law, court order, or to protect safety
6. Data Security
We implement industry-standard security measures including:
- End-to-end encryption for all data in transit (TLS 1.3)
- Encryption at rest for stored health data (AES-256)
- Role-based access controls (Row Level Security)
- Regular security audits and vulnerability assessments
- Automatic session timeout and activity monitoring
7. Your Rights
You have the right to:
- Access: Request a copy of your personal data (available in Settings → Data Export)
- Correction: Update inaccurate information through your account settings
- Deletion: Request account deletion (available in Settings → Danger Zone)
- Portability: Download your data in a machine-readable format (JSON)
- Restrict Processing: Opt out of non-essential data processing
8. Data Retention
We retain your health records for a minimum of 7 years as required by medical record retention laws. Account data is retained for 30 days after deletion request to allow recovery, after which it is permanently removed.
9. Cookies and Tracking
We use essential cookies for authentication and session management. We do not use third-party advertising trackers. Analytics data is anonymized and used solely for service improvement.
10. Children's Privacy
Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.
11. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes via email or platform notification. The "Last updated" date at the top reflects the most recent revision.
12. Contact Us
For privacy-related questions or to exercise your rights:
Privacy Officer: privacy@sivohealth.com
Phone: 1-800-SIVO
Mail: Sivo Health, Attn: Privacy Officer