Last Updated: 2026
Well Health Cure ("Well Health Cure," "we," "us," or "our") is committed to protecting the privacy and security of your personal and health information. This Privacy Policy describes how we collect, use, disclose, store, and safeguard your information when you use our website, mobile applications, telehealth platform, and related services (collectively, the "Services") in the United States of America.
1. Information We Collect
1.1 Personal Identification Information: We collect your full name, date of birth, mailing address, email address, phone number, and government-issued identification numbers (such as SSN, when required for insurance verification) during account creation and service requests.
1.2 Health Information (PHI): We collect Protected Health Information as defined by HIPAA, including medical history, current medications, allergies, lab results, imaging reports, diagnosis codes, treatment plans, prescriptions, and clinical notes provided during consultations.
1.3 Insurance and Financial Information: We collect your insurance provider name, policy number, group number, subscriber information, credit/debit card details, bank account information for payment processing, and billing history.
1.4 Technical and Usage Data: We automatically collect your IP address, browser type and version, operating system, device identifiers, pages visited, time spent on pages, click patterns, referral source, and location data (approximate, based on IP geolocation).
1.5 Communication Data: We record all communications between you and our healthcare providers, including chat transcripts, video consultation recordings (with consent), voicemails, and email correspondence.
1.6 Cookies and Tracking Technologies: We use essential cookies for authentication and session management, analytics cookies to understand usage patterns, and marketing cookies from third-party advertisers. We also use pixel tags, web beacons, and similar tracking technologies.
2. How We Use Your Information
2.1 Healthcare Delivery: We use your information to provide, coordinate, and manage your healthcare services, including scheduling appointments, conducting consultations, issuing prescriptions, and coordinating with specialists and pharmacies.
2.2 Treatment and Care Coordination: We share relevant health information with your treating providers, specialists, laboratories, imaging centers, and pharmacies as necessary for your treatment and care coordination.
2.3 Insurance Processing: We use your insurance and financial information to verify coverage, submit claims, process prior authorizations, and handle billing and reimbursement with your insurance company.
2.4 Communication: We use your contact information to send appointment reminders, test results, follow-up instructions, prescription notifications, account updates, and respond to your inquiries via email, SMS, phone, or push notifications.
2.5 Marketing and Promotional Communications: With your express consent, we may send you health tips, newsletters, service promotions, and special offers. You can opt out of promotional communications at any time while continuing to receive transactional messages.
2.6 Platform Improvement: We analyze usage data and feedback to improve our Services, develop new features, enhance user experience, and fix technical issues.
3. How We Share Your Information
3.1 Healthcare Providers: We share your PHI with licensed physicians, nurse practitioners, dentists, dermatologists, and other healthcare professionals involved in your care, within our network and as referrals.
3.2 Insurance Companies: We disclose necessary information to your insurance carrier for claims processing, coverage verification, utilization review, and quality assessment purposes.
3.3 Business Associates: We share information with HIPAA-compliant business associates including payment processors, cloud hosting providers, EHR systems, appointment scheduling platforms, and analytics services under strict Business Associate Agreements.
3.4 Legal Requirements: We may disclose your information when required by federal or state law, court order, subpoena, or regulatory request, including reporting to public health authorities as mandated.
3.5 Safety and Security: We may disclose limited information to prevent fraud, protect against liability, ensure the safety of our patients and staff, or respond to medical emergencies.
4. Data Security Measures
4.1 Encryption: All data in transit is encrypted using TLS 1.3. All data at rest is encrypted using AES-256 encryption, including database storage, file systems, and backup systems.
4.2 Access Controls: We implement role-based access control (RBAC) with multi-factor authentication (MFA) for all staff accessing patient data. Access is logged and audited regularly.
4.3 Infrastructure Security: Our infrastructure is hosted on SOC 2 Type II certified cloud providers with redundant data centers, DDoS protection, intrusion detection/prevention systems (IDS/IPS), and 24/7 security monitoring.
4.4 HIPAA Compliance: We maintain a comprehensive HIPAA compliance program including regular risk assessments, workforce training, incident response procedures, and designated Privacy and Security Officers.
4.5 Penetration Testing: We conduct annual third-party penetration testing and vulnerability assessments, with critical findings remediated within 72 hours.
5. Your Rights
5.1 Right to Access: You have the right to request and obtain a copy of your personal information and PHI that we maintain, in a readable format, within 30 days of your request.
5.2 Right to Amendment: You may request corrections or amendments to your personal information or health records if you believe they are inaccurate or incomplete.
5.3 Right to Deletion: You may request deletion of your personal information, subject to legal retention requirements. Health records may be retained as required by federal and state regulations.
5.4 Right to Restrict Processing: You may request restrictions on how we use or disclose your PHI for treatment, payment, or healthcare operations, though we may not be required to agree in all cases.
5.5 Right to Confidential Communications: You may request that we communicate with you through alternative means or at alternative locations (e.g., phone instead of mail).
5.6 Right to an Accounting of Disclosures: You may request a list of certain disclosures we have made of your PHI for purposes other than treatment, payment, or healthcare operations within the past six years.
5.7 Right to a Paper Copy of This Notice: You may request a printed copy of this Privacy Policy at any time, free of charge.
5.8 State-Specific Rights: If you are a resident of California, you have additional rights under the CCPA/CPRA including the right to know, delete, opt-out of sale, and non-discrimination. Residents of other states may have additional rights under applicable state laws.
6. Data Retention
6.1 Medical Records: We retain medical records in accordance with federal and state requirements, typically a minimum of 7 years for adults and until the age of majority plus the applicable retention period for minors.
6.2 Account Data: Inactive account data is retained for 3 years after the last account activity, after which it is anonymized or deleted, unless legal requirements mandate otherwise.
6.3 Marketing Data: Marketing consent records are retained for 5 years. When consent is withdrawn, associated marketing data is deleted within 90 days.
7. Children's Privacy
7.1 Age Requirement: Our Services are not directed to children under 13. We do not knowingly collect personal information from children under 13 without verifiable parental consent.
7.2 Parental Access: Parents or legal guardians may access and manage the health information of their minor children as permitted by applicable state law.
8. International Transfers
8.1 US-Based Storage: All personal and health information is stored and processed within the United States. We do not transfer your data outside the US except as necessary for your treatment (e.g., international specialist consultations) with your explicit consent.
8.2 Safeguards: In the rare event of international transfer, appropriate safeguards including Standard Contractual Clauses or equivalent protections will be implemented.
9. Changes to This Policy
9.1 Notification: We will notify you of material changes to this Privacy Policy via email, in-app notification, or a prominent notice on our website at least 30 days before the changes take effect.
9.2 Continued Use: Your continued use of our Services after changes become effective constitutes your acceptance of the revised Privacy Policy.
10. Contact Us
10.1 Privacy Officer: For privacy-related inquiries, complaints, or to exercise your rights, contact our Privacy Officer at privacy@wellhealthcure.info or Well Health Cure, 112 Janeway, Greenwood, SC 29649, USA
10.2 HHS Complaints: If you believe your privacy rights have been violated, you may file a complaint with the U.S. Department of Health and Human Services Office for Civil Rights.