Consumer Health Data
Privacy Policy
This policy does not apply to protected health information subject to HIPAA. Please refer to our Notice of Privacy Practices for that information.
What consumer health data we collect
The Consumer Health Data we collect depends on how you interact with us, the services you use, and the choices you make. We collect data from multiple sources:
- Name, email address, phone number, and billing or physical address
- Demographic information — gender, racial or ethnic origin, date of birth, zip code
- Payment details — credit card number, financial account information
- Account credentials — username, password, access codes, and profile information
- Marketing preferences and communications history
- Photographs, videos, documents, and messages you send us
- Government-issued identifiers — driver's license, passport, and social security number
- Biometric information that can identify you
- Health information, including physical and mental health status
- Sexual and reproductive health information, including sex life and sexual orientation
- IP address, device type, operating system, browser version, and identifiers such as MAC address
- General location data when you use our apps or services
- Usage data — pages visited, time spent, referring URLs, and actions taken on our platform
- Cookie identifiers, mobile IDs, and similar tracking technologies
- Inferred preferences or characteristics generated from other data using automated means
- Corporate affiliates we operate with
- Social networks or third-party apps you connect to our services
- Co-branding and joint marketing partners
- Service providers acting on our behalf
- Public government databases and open sources
How we use your data
We use Consumer Health Data as described in this policy or as otherwise disclosed at the time of collection.
| Purpose | Description | Categories used |
|---|---|---|
| Service delivery | Providing and operating the Service, including billing, fraud detection, customer support, identity verification, and legal compliance. | |
| Product improvement | Developing and testing new features, analyzing traffic and user behavior, and identifying new service opportunities. | |
| Aggregation & anonymization | Creating de-identified or aggregated data sets. We do not attempt to re-identify such data unless required by law. We may share these data sets with third parties. | |
| Marketing | Communicating with you about new services, promotions, events, and partner offerings. |
Who we share your data with
We may share Consumer Health Data with your consent, to complete your transactions, to provide services you have requested, or as otherwise permitted or required by law.
- Affiliates. We share data across our subsidiaries and related companies to operate our business and provide services. This includes Hello Gorgeous affiliated entities and management companies.
- Legal and law enforcement. We will share Consumer Health Data when required by law, in response to valid legal process, or when necessary to protect our customers' rights or property.
- Service providers. Third parties that process data on our behalf to support operations such as billing, customer support, and technology.
Control over your consumer health data
You may have certain rights to your Consumer Health Data under applicable state law. Rights vary by state of residence and may be subject to limitations. To exercise any of these rights, email us at provider@hellogorgeousmedspa.com.
Withdraw any consent we rely upon to collect or share your Consumer Health Data, effective for future actions.
Ask us to confirm whether we have collected, shared, or sold your data — and request a copy of it, including a list of third parties we have shared with.
Ask us to correct inaccuracies in the Consumer Health Data we hold about you.
Ask us to delete your Consumer Health Data. Note that deleting required data may affect your ability to use the Service.
If we deny a rights request, you have the right to appeal our decision. We will provide appeal instructions at the time of any denial.
Changes to this policy
We reserve the right to modify this Consumer Health Data Privacy Policy at any time. If we make material changes, we will notify you by updating the date at the top of this policy and posting it on the Service. Continued use of the Service after any modification constitutes your acknowledgment that the updated policy applies to your interactions with the Service.
Contact us
If you have questions about this Consumer Health Data Privacy Policy or wish to exercise your data rights, we're here to help.
Reach our privacy team by email. We aim to respond to all privacy inquiries within 30 days of receipt, and will confirm identity before processing any data request.
Email privacy team