As required by the Privacy Regulations Created as a result of the Health Insurance Portability and Accountability Act of 1996 (HIPAA)
THIS NOTICE DESCRIBES HOW MEDICAL INFORMATION ABOUT YOU MAY BE USED AND DISCLOSED AND HOW YOU CAN GET ACCESS TO YOUR INDIVIDUALLY IDENTIFIABLE HEALTH INFORMATION.
Our Commitment to your Privacy
Goldkeys Services and Best 4 Diabetes is strongly dedicated to maintaining the privacy of your Individually Identifiable Health Information (your Health Information). This notice explains our privacy policies and describes how Best 4 Diabetes may use and disclose Health Information that specifically identifies you or could be used to identify you.
This notice also provides you with information about your privacy rights and how you may exercise your rights.
Your Health Information
To provide you with Diabetes Monitoring services, we must obtain and use Health Information about you. Examples of Health Information that we record include your name, email address, gender, type of diabetes, the insulins that you take, blood glucose readings, foods eaten and indications of illness, stress and for females, menstrual periods.
Important: We will never provide any personal information, including email address, to any other company for commercial reasons. We strongly oppose the use of unsolicited spam.
The HIPAA Privacy Standards
The United States Department of Health and Human Services has adopted privacy standards - "the HIPAA Privacy Standards" - which protect your Health Information. The HIPAA Privacy Standards establish rules for when companies that use Health Information may use or disclose that information. The HIPAA Privacy Standards also tell us what we cannot do with your Health Information.
How Best 4 Diabetes may use or disclose your Health Information
The HIPAA Privacy Standards allow us to use and disclose your Health Information, without your authorization, to perform routine business activities that are listed below.
You. We are permitted to share Health Information with you. That is the primary purpose of Best 4 Diabetes.
Credit Card Authorization and Payment. If you decide to become a Premier Member, you will enter your credit card and home address into Best 4 Diabetes. This information is electronically transmitted to our Bank for authorization and one time payment. Best 4 Diabetes does not automatically collect recurring payments. You will be given an opportunity to renew your Premier Membership when it nears expiration.
User Problems and Questions. If you have a problem using Best 4 Diabetes or have a specific question about it, it may be necessary for us to access your Health Information to solve the problem or answer your questions.
Announcements. If you so choose, we may send you infrequent emails announcing changes to Best 4 Diabetes.
Summary Information. We may use summary information from you and other members so we can understand how diabetes care is changing over time. No individual information (e.g., name, email, address) will be attached to this summary information.
System Problems. If Best 4 Diabetes encounters system problems, we may need to access your Health Information to investigate and correct those problems. Best 4 Diabetes uses an Internet Service Provider which provides Database support for the information that we store about you. In the case of Database problems or if a restore is needed, ISP technical personal may have access to your Health Information.
You can optionally control how certain health information is shared.
Using Best 4 Diabetes, you can send Reports, via email, about your diabetes care to members of your Health Care Team. The information that is sent, and to whom it is sent, is entirely under your control.
Health Care Team Access.
In the future, Health Care Team members will login into Best 4 Diabetes to gain direct access to Patient information. When this happen, you will control who has access to your Health Information. No Health Care Team member will be able to access your information without your authorization.
Special circumstances may require us to disclose your Health Information.
Courts and government bodies.
Federal and State law may require us to disclose your Health Information. We may also provide information to government agencies for health care related investigations, audits, or inspections; to comply with workers' compensation laws; or for certain national security or intelligence activities. If you are involved in a legal matter, we may be ordered to provide your Health Information to a court or other party. We may disclose your Health Information if you are a member of U. S. or foreign military forces (including veterans) and if required by the appropriate authorities. In those cases, only the specific Health Information required by law, subpoena, or court order will be disclosed.
Public health and safety entities.
We are also permitted to disclose your Health Information for certain purposes that have been determined to benefit the public as a whole.
The Department of Health and Human Services
We are required to disclose your Health Information to the Department of Health and Human Services, at its request, so it may investigate complaints and review our compliance with the HIPAA Privacy Standards.
Your Rights Regarding your Health Information
You have the following rights regarding the Health Information that we maintain about you. You may contact us about these rights by email at email@example.com or in some cases, as specified below, only in writing. Send correspondence to:
356 Hilltop Rd.
Toms River, NJ 08753
Confidential Communications. You have the right to request that our support staff communicate with you about your health care in a particular manner or at a certain location. While most correspondence is done via email, we can also arrange to call you or send you information by U. S. Mail. In order to request this change, please contact us by email or in writing.
Requesting Restrictions. You have a right to request a restriction in our use or disclosure for your Health Information. Additionally, you have the right to request that we restrict our disclosure of your Health Information to only certain individuals involved in your care, such as family members and friends. We are not required to agree to your request. However if we do agree, we are bound by our agreement except when otherwise required by law. Health Care Providers may only receive Health Information that you decide to send or enable. Other restrictions may limit the usefulness of Best 4 Diabetes in part or in whole. Please send such requests to us in writing.
Request and Accounting of Disclosures. You may request a list or accounting of the non-routine disclosures of your Health Information that we have made. Example may include disclosures to a court or government agency, to a public health and safety entity, for research or to the Department of Health and Human Services. You may receive one accounting per year free of charge. We may impose a reasonable fee for more frequent accounting requests.
Inspections and Copies. You have the right to inspect and obtain a copy of your Health Information. All Health Information is available to you via the Reports and Profile functions.
Amendment. You may ask us to amend your Health information if you believe it is incorrect or incomplete, and may request an amendment for as long as the information is kept in Best 4 Diabetes. You can also change any of your Health Information by using the Event Edit and Profile functions.
Right to a Paper Copy of this Notice. A link to this notice is available the bottom of every page, including the Welcome page. You may print out this notice yourself. Premier Members may request that this notice be mailed to them. To make such a request, please contact us in writing.
Right to File a Complaint. If you believe your privacy rights have been violated, you may file a complaint with us or with the Secretary of the Department of Health and Human Services. To file a complaint with us, please contact us in writing. You will not be penalized for filing a complaint.
Right to Provide Authorization for Other uses and Disclosures.
In the unlikely event that we use or disclose Health Information for reasons other than those identified here, we will obtain your written authorization first. Any authorization you provide to us regarding the use and disclosure of you Health Information may be revoked at any time in writing. After you revoke your authorization, we will no longer use or disclose your Health Information for reasons described in the authorization.
Because Best 4 Diabetes is an online application, we feel obliged to explain the processes we use to protect your Health Information.
Login Id and Password. All users of Best 4 Diabetes have a unique login id and password to access the system. Computer code is in place to ensure that no part of the system that carries Health Information can be accessed without a proper login and password. We strongly urge you to keep your password secret. The only exception to this is that Health Care Team members can access the specific reports that you email to them without a login or password.
Password Encryption. We use a one way encryption algorithm to store your password in the Database. This means that when you login, your password is encrypted and matched to the encrypted string in the Database. You can only login if the two match. It is extremely difficult to convert an encrypted password into a readable password.
Secure Sockets Layer (SSL). Your login id and password are encrypted before being sent from your PC to the Best 4 Diabetes server. We also encrypt credit card information when you become a Premier Member. Your browser will show a closed lock, usually in the bottom right side of the browser window, to indicate that the connection is secure.
Trusted Site. Best 4 Diabetes accesses the communications port on your computer in order to upload meter readings. Most Web sites don't directly access computer hardware so special security considerations are needed. We have been certified by Thawte as a trusted site to allow this access.
No amount of security is absolute and there is always a chance that any computer system may be compromised. We will continue to work to ensure Best 4 Diabetes remains as secure as possible.
If you have any questions about this notice or our Privacy Policies, please contact us at firstname.lastname@example.org or by U. S. Mail at:
356 Hilltop Rd.
Toms River, NJ 08753