Consumer Health Data Privacy Policy

This Consumer Health Data Privacy Policy explains how Orbita Systems Ltd ("Orbita," "we," "us," or "our") collects, uses, discloses, and otherwise processes consumer health data as that term is defined by Washington’s My Health My Data Act ("WMHMDA") and other applicable consumer health privacy laws.

This policy applies to consumer health data processed in connection with our website and related services (collectively, the "Service").

If there is a conflict between this policy and our general Privacy Policy, this policy controls only with respect to consumer health data.

Who we are

Orbita Systems Ltd

Hammersmith Hospital, Du Cane Road

London W12 0HS

United Kingdom

What is consumer health data

"Consumer health data" generally means personal information that is linked or reasonably linkable to an individual and that identifies the individual’s past, present, or future physical or mental health status.

Categories of consumer health data we may process

Depending on how you use the Service, we may process the following categories of consumer health data:

  • Health conditions, symptoms, or diagnoses you choose to provide
  • Treatments or interventions you choose to provide (for example, medications, procedures, or care plans)
  • Measurements and outcomes you choose to provide (for example, survey responses or patient-reported outcomes)
  • Health-related notes or free-text you enter

We may also process information that could be considered consumer health data when combined with other information, such as:

  • Device and usage information (for example, app interactions, feature usage, and timestamps)
  • Approximate location inferred from IP address (typically at the city/region level)

Sources of consumer health data

We may collect consumer health data from:

  • You, when you enter information into the Service
  • Your device, when you use the Service (for example, technical logs)
  • Authorized third parties, if you choose to connect or share data (for example, integrations you enable)

Why we process consumer health data

We may process consumer health data for the following purposes:

  • Provide and operate the Service, including creating and managing accounts and delivering requested features
  • Maintain, secure, and troubleshoot the Service, including monitoring for fraud, abuse, and security incidents
  • Improve and develop the Service, including quality assurance, analytics, and feature improvements
  • Communicate with you, including responding to questions and support requests
  • Comply with legal obligations and enforce our terms

How we disclose consumer health data

We do not sell consumer health data.

We may disclose consumer health data to the following categories of recipients, as needed for the purposes described above:

  • Service providers and processors that help us operate the Service (for example, hosting, analytics, customer support, and security vendors)
  • Professional advisors (for example, auditors, insurers, and legal advisors) where necessary
  • Government authorities or other third parties when required by law, legal process, or to protect rights and safety
  • Affiliates (entities under common control) where permitted and necessary to operate the Service

If we are involved in a merger, acquisition, financing, reorganization, bankruptcy, or sale of some or all assets, consumer health data may be disclosed as part of that transaction, subject to appropriate protections.

Where required by law, we will obtain your consent before collecting or sharing certain consumer health data. You may withdraw consent by stopping the relevant use of the Service or contacting us through the Contact Us page.

Your consumer health data rights

Depending on where you live and applicable law, you may have the right to:

  • Access consumer health data we have about you
  • Delete consumer health data we maintain about you
  • Withdraw consent to our collection or sharing of consumer health data (where processing is based on consent)
  • Appeal a decision we make regarding your request (where required)

To make a request, please contact us via the Contact Us page on this website. To help us verify and process your request, include your name and enough information for us to locate your records.

How we protect consumer health data

We use administrative, technical, and organizational safeguards designed to protect consumer health data. No system can be guaranteed to be 100% secure, and you use the Service at your own risk.

Data retention

We retain consumer health data for as long as reasonably necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements. Retention periods may vary depending on the nature of the data and how it is used.

Changes to this policy

We may update this policy from time to time. If we make changes, we will update the “Last updated” date above.

Contact

If you have questions about this policy or would like to exercise your rights, please contact us via the Contact Us page on this website.