Privacy policy
Effective Date:Â June 13, 2025
Last Updated:Â June 13, 2025
Our Privacy Commitment
At Sage Healthcare, privacy is fundamental to how we built our platform. Your health data never leaves your device in an identifiable form. We have designed our technology with privacy at its core, ensuring that your lab results and health information remain on your device, under your control, while our AI analysis uses only de-identified data that cannot be traced back to you.
This Privacy Policy explains what information we collect, how we use it, and the choices you have. By using our services, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
Account Information We Store on Our Servers
The only personally identifiable information we store on our servers includes your account details such as name, email address, and phone number. We also maintain billing information including your billing address and payment method details, which are processed securely through third-party payment processors. Additionally, we retain purchase history records of lab panels ordered and transaction details, as well as communication records from customer service interactions and support tickets.
Information That Remains on Your Device
Your health-related information never leaves your device in an identifiable form. This includes all lab test results you upload or input, AI-generated insights and health recommendations, any health information you track or input, and personal health trends including patterns and correlations in your health data.
De-identified Data for AI Improvement
When necessary for computational efficiency or AI improvement, we may process completely de-identified health data in the cloud. This data has all personal identifiers removed before transmission and cannot be traced back to any individual. We use advanced de-identification techniques that meet healthcare privacy standards, and this data is used only to improve our AI algorithms and generate general health insights.
Technical Information We Collect
We automatically collect certain technical information when you visit our website or use our services. This includes website usage data such as pages visited, time spent, and how you interact with our platform. We also collect device information including browser type, operating system, and IP address. Analytics data helps us understand usage patterns to improve our services, and we use cookies as described in our Cookie Policy section below.
2. How We Use Your Information
Account Information Uses
We use your account information to create and maintain your account and process lab panel orders. This information is necessary for handling transactions and billing, responding to your inquiries and providing technical assistance, meeting our legal and regulatory obligations, and protecting against fraud and unauthorized access.
De-identified Health Data Uses
We use de-identified health data to enhance our health analysis algorithms using patterns in anonymized data. This information contributes to general health research and insights without compromising individual privacy, and helps us improve the accuracy and usefulness of health insights provided to all users.
Marketing and Communications
We may use your contact information to send you product updates about new lab panels, features, and health insights. We also provide educational content regarding health and wellness information and tips, and may send promotional emails about our services, though you can opt out of marketing communications at any time.
Technical Information We Collect
We automatically collect certain technical information when you visit our website or use our services. This includes website usage data such as pages visited, time spent, and how you interact with our platform. We also collect device information including browser type, operating system, and IP address. Analytics data helps us understand usage patterns to improve our services, and we use cookies as described in our Cookie Policy section below.
We never use your actual health results or personal health information for marketing purposes.
3. Information Sharing and Disclosure
Information We Never Share
We never share your lab results or health data, as this information remains on your device. Personal health insights are generated and stored only on your device and are not accessible to us or any third party. Individual health patterns remain private and are not accessible to us or any third party.
Account Information Sharing
We may share your account information only in limited circumstances. We share information with service providers who help us operate our business, including payment processors such as Stripe for handling transactions, email service providers for sending communications, customer support tools for providing assistance, and cloud hosting services for our website and account systems.
We may disclose information when required by law, legal process, or to protect rights and safety. In the event of a business transfer such as an acquisition or merger, your account information may transfer to the new entity. We will also share information with your explicit consent, such as when you authorize us to share information with healthcare providers or other services you choose.
De-identified Data
We may share completely de-identified health data patterns with research institutions or for public health research, but this data cannot be linked back to any individual.
4. Your Privacy Rights
Your rights vary based on where you live. All users have certain basic rights, while residents of specific states have additional protections.
Rights for All Users
All users have the right to request a copy of their account information, update or correct their account details, request deletion of their account and associated data, unsubscribe from marketing communications, and download their account information.
Enhanced Rights for State Residents
California Residents
Under the California Consumer Privacy Act and California Privacy Rights Act, California residents have the right to know what personal information we collect and how it is used, delete personal information, opt out of any "sale" of personal information (note that we do not sell personal information), receive non-discriminatory treatment for exercising privacy rights, and correct inaccurate information.
Virginia, Colorado, Connecticut, Utah, Nevada Residents
Residents of these states have the right to access and delete personal information, correct inaccurate data, opt out of targeted advertising, and appeal decisions about privacy requests.
Connecticut, Nevada, Washington Residents
These states provide special protections for health-related information under Consumer Health Data laws. These protections include enhanced consent requirements for any health data processing, the right to know how health data is collected and used, prohibition on sale of health data, enhanced deletion rights for health-related information, and the right to withdraw consent for health data processing.
Because your health data stays on your device, most health data processing occurs locally under your control, providing you with the strongest possible privacy protection.
Exercising Your Rights
To exercise any privacy rights, you may email us at info@sagehealthspan.com, call us at (949) 539-4564, or write to us at Sage Healthcare, 3 Via Presea, Coto de Caza, CA 92679. We will respond to your request within 45 days and may ask you to verify your identity.
5. Consumer Health Data Protections
Special Protections for Connecticut, Nevada, Washington Residents
If you are a resident of Connecticut, Nevada, or Washington, state law provides enhanced protections for "Consumer Health Data." Consumer Health Data includes lab results and health information you input, any health insights generated for you, and health-related usage of our services.
Our protections include on-device storage ensuring your health data never leaves your device in identifiable form, a commitment never to sell your health data, no tracking of your location around healthcare facilities, enhanced consent before any health data processing, and easy withdrawal of consent with the ability to delete health data at any time.
Your enhanced rights include access to all health data we might have, immediate deletion of health data, the ability to correct any inaccurate health information, the right to withdraw consent (though this may limit our services), and the right to file complaints with your state's Attorney General.
Geofencing Prohibitions
We do not and will not track your location around healthcare facilities, use location data to infer healthcare visits, create virtual boundaries around medical facilities, or use location for health-related advertising.
6. Data Security
We implement strong security measures to protect your information through various technical safeguards. All data transmission uses industry-standard encryption, health data is encrypted and secured on your device, we maintain strict limits on who can access account information, and we conduct ongoing security assessments and improvements.
De-identification Process
When any health data requires cloud processing, all personal identifiers are removed before transmission. We use advanced de-identification techniques that exceed healthcare standards, ensure no way to link processed data back to individuals, and immediately delete any temporary processing data.
7. Data Retention
Account Information
For active accounts, we retain information while your account is active. After account deletion, we permanently delete information within 30 days of account closure. Some billing and transaction records are kept for 7 years as required by law.
Health Data
Health data on your device remains under your complete control, and you can delete it anytime. We may retain de-identified data for AI improvement, but it cannot be linked to you. We do not retain any health data that can identify you.
8. Cookies and Tracking Technologies
Types of Cookies We Use
We use essential cookies that are required for website functionality and security, analytics cookies including Google Analytics to understand how people use our website, and marketing cookies to show relevant advertisements on social media platforms.
Your Cookie Choices
You can control cookies through your browser settings, use opt-out tools such as the Google Analytics Opt-out Browser Add-on, and manage ad preferences on social media platforms like Facebook and Instagram.
Do Not Track
We do not currently respond to "Do Not Track" browser signals, but you can control tracking through the methods described above.
9. Children's Privacy
Our services are not intended for anyone under 18, and we do not knowingly collect information from children. If you believe a child has provided us with information, please contact us immediately at info@sagehealthspan.com.
10. International Data Transfers
Sage Healthcare operates in the United States. If you are using our services from outside the United States, your account information will be transferred to and processed in the United States, which may have different data protection laws than your country.
11. State-Specific Privacy Information
California
We do not sell personal information, but we do share some data for advertising purposes. California residents can opt out by emailing info@sagehealthspan.com. Under California's "Shine the Light" law, you can request information about data shared with third parties for their marketing purposes.
Nevada
Nevada residents can opt out of the "sale" of personal information. While we do not sell data, you have this right and can exercise it by contacting info@sagehealthspan.com.
Virginia, Colorado, Connecticut, Utah
These states provide comprehensive privacy rights including access, deletion, correction, and opt-out rights as described in the "Your Privacy Rights" section above.
12. Appeals Process
If you are not satisfied with our response to a privacy request, you can appeal by emailing info@sagehealthspan.com with "APPEAL" in the subject line. We will respond within 45 to 60 days depending on your state. If you remain unsatisfied, you can contact your state's Attorney General.
State Attorney General contact information is as follows: California (916) 445-9555, Connecticut (860) 808-5420, Nevada (702) 486-3132, Virginia (804) 786-2071, Colorado (720) 508-6000, and Washington (800) 551-4636.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will post the updated policy on our website, update the "Last Updated" date, send email notification for significant changes, and for Consumer Health Data changes, we may require new consent.
14. Contact Information
For privacy questions, contact info@sagehealthspan.com. For general support, contact support@sage.healthcare. You may also call us at (949) 539-4564 or write to us at Sage Healthcare, 3 Via Presea, Coto de Caza, CA 92679. Our Data Protection Officer can be reached at support@sage.healthcare.
Summary
This Privacy Policy reflects our commitment to protecting your privacy through technology design. Your lab results and health data remain on your device under your complete control. We store only minimal account information necessary to provide our services. When cloud processing is needed for AI improvement, we use only anonymous data patterns that cannot identify you personally. You have full control over your health data, easy deletion and data portability options, enhanced protections if you live in certain states, and clear consent requirements for any data processing.
This approach ensures you receive the benefits of AI-powered health insights while maintaining complete control over your personal health information.