Effective Date: 1/8/25
Curanostics, Inc. ("Curanostics," "we," "us," or "our") values your trust and is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you access or use our services, websites, applications, or related products (collectively, the "Services").
We understand the sensitive nature of health data and adhere to strict privacy and security standards, including compliance with HIPAA, GDPR, and other applicable data protection laws.
This Privacy Policy applies to all users of the Services and covers the following:
By accessing or using our Services, you consent to the practices described in this Privacy Policy. If you do not agree to this policy, please do not use the Services.
Curanostics is committed to ensuring that:
When you use our Services, Curanostics collects the following types of information:
With your explicit consent, we may collect additional information from third-party sources, such as:
We gather information through the following means:
Data you provide directly, such as during registration, profile creation, or survey completion.
Data automatically collected via cookies, analytics tools, and similar technologies.
Information retrieved from external platforms, such as healthcare portals or device APIs, with your authorization.
Curanostics uses your information to provide and improve the Services, as detailed below:
We adhere to the principle of data minimization, collecting and using only the information necessary for the purposes outlined in this policy.
Curanostics values your trust and ensures that your data is shared only when necessary and in compliance with applicable laws. We share your information in the following limited scenarios:
Data will only be shared with third parties, such as healthcare providers or diagnostic services, when you provide explicit authorization.
These partners are contractually obligated to adhere to the same privacy and security standards as Curanostics.
We may disclose data to comply with applicable laws, regulations, or legal processes, including:
Non-identifiable data may be shared for research, publication, or statistical purposes.
Curanostics employs industry-standard security measures to protect your information, including:
All sensitive data, including medical records, is encrypted during storage and transmission using robust encryption protocols.
Access to your data is restricted to authorized personnel and requires multi-factor authentication.
We actively monitor the platform for potential security threats and vulnerabilities.
In the unlikely event of a data breach, Curanostics will:
You play an essential role in protecting your data. Curanostics encourages users to:
Curanostics is committed to empowering users with control over their personal data. Depending on your jurisdiction, you may have the following rights:
You have the right to request a copy of the personal data Curanostics holds about you.
You can request corrections or updates to inaccurate or incomplete information.
You may request the deletion of your personal data, subject to limitations such as legal obligations to retain certain information.
You can request that we limit the use of your data in certain situations, such as during dispute resolution.
You have the right to request a copy of your data in a structured, commonly used, and machine-readable format for transfer to another provider.
You may object to the processing of your data for specific purposes, such as direct marketing or automated decision-making.
To exercise your rights, contact us at yash@curanostics.health. Please include sufficient detail to verify your identity and specify the nature of your request.
You can manage or update your personal information through your account settings. This includes modifying your preferences for communication, sharing, and data usage.
If you previously consented to data collection or sharing, you may withdraw that consent at any time. Note that withdrawing consent may limit your ability to use certain features of the Services.
Curanostics will not discriminate against users who exercise their data rights. This means no denial of services, changes to service quality, or imposition of additional fees.
Curanostics is committed to protecting the privacy of all users, including those residing outside the United States. We comply with international data protection laws and regulations, including but not limited to:
For users located in the European Economic Area (EEA), we process personal data in accordance with GDPR. This includes:
We also adhere to other regional regulations, such as the California Consumer Privacy Act (CCPA) for users in California and other equivalent frameworks.
If you are accessing the Services from outside the United States, please note:
Your personal data may be transferred to, stored, or processed in the United States, where data protection laws may differ from your jurisdiction.
Where applicable, we will provide localized versions of our Privacy Policy and Terms of Service to meet specific jurisdictional requirements.
Users outside the U.S. may exercise their data rights by contacting yash@curanostics.health, and we will ensure compliance with relevant local laws.
For international users, we rely on the following legal bases for processing your data:
Curanostics complies with state-specific privacy laws to ensure the highest level of protection for your personal data. This section outlines your rights under these laws, including the California Consumer Privacy Act (CCPA) and equivalent regulations in other states.
If you are a California resident, you are entitled to specific rights regarding your personal information under the CCPA.
You have the right to request that we disclose the following information about our data practices over the past 12 months:
You may request the deletion of your personal information, subject to certain exceptions (e.g., compliance with legal obligations or security purposes).
Curanostics does not sell personal information to third parties. However, if this practice changes, you will be provided with a mechanism to opt out.
You have the right to receive equal service and pricing, even if you exercise your privacy rights.
To exercise any of these rights, contact us using one of the following methods:
Curanostics collects the following categories of personal information as defined by the CCPA:
Residents of other states with robust privacy laws (e.g., Colorado, Virginia, Connecticut, and Utah) may also have rights similar to those outlined above. Where applicable, you are entitled to the following:
The right to access personal information collected about you and request its transfer in a portable format.
The right to request corrections to your personal data if it is incorrect or incomplete.
The ability to opt out of data processing for targeted advertising or automated profiling.
The right to restrict the processing of sensitive data, such as health or biometric information, to only necessary purposes.
Curanostics ensures compliance with all state-specific regulations by:
Maintaining an up-to-date record of the data we collect, its sources, and how it is processed.
Extending comparable rights, such as those under the CCPA, to users in other states to simplify compliance and ensure consistency.
If any financial incentives are offered (e.g., discounts in exchange for data), we will provide clear terms and obtain your explicit consent.
We update this section as new state laws come into effect. You are encouraged to review this Privacy Policy periodically to stay informed about your rights.
Curanostics is committed to ensuring the protection of personal data for users in the European Economic Area (EEA) and other jurisdictions subject to the General Data Protection Regulation (GDPR). This section outlines your rights under the GDPR and how we comply with its requirements.
If you are located in the EEA or a region subject to GDPR, you have the following rights regarding your personal data:
You have the right to request access to the personal data we hold about you and obtain information about how it is processed.
You can request corrections to inaccurate or incomplete personal data.
You may request the deletion of your personal data, provided it is no longer necessary for the purposes for which it was collected, or if you withdraw your consent.
You can request that we limit the processing of your personal data under certain circumstances, such as when you contest its accuracy or object to its processing.
You have the right to receive your personal data in a structured, commonly used, and machine-readable format and request its transfer to another data controller.
You can object to the processing of your data for direct marketing purposes or where processing is based on legitimate interests.
If you have provided consent for data processing, you can withdraw it at any time without affecting the lawfulness of prior processing.
If you believe your rights have been violated, you have the right to file a complaint with your local data protection authority.
We process personal data under the following legal bases:
We adhere to the following principles in processing personal data:
To exercise your GDPR rights, contact us at yash@curanostics.health. Please provide sufficient information to verify your identity and specify the nature of your request.
Curanostics may update this Privacy Policy periodically to reflect changes in legal requirements, our data practices, or the functionality of our Services. Any changes will be effective upon posting, with the “Last Updated” date revised accordingly.
For significant changes, we will notify users via:
Continued use of the Services after updates constitutes acceptance of the revised policy.
You are responsible for reviewing this Privacy Policy periodically to stay informed about how we are protecting your information.
In the event of a data breach, Curanostics will:
For questions about this Privacy Policy or to exercise your rights, contact us at:
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, you can contact us using the information below:
If you are located outside the United States and have concerns about how we handle your data, you may also reach out to your local data protection authority for guidance.