1. Introduction
Welcome to the Privacy Policy of Hedge Health LLC. This document explains how we collect, use, disclose, and safeguard your information when you visit our website at https://www.hedgehealth.autos or engage with any of our computer systems design and integrated services. We are committed to protecting your privacy and ensuring that your personal data is handled in a safe and responsible manner in accordance with applicable data protection laws and regulations.
Hedge Health LLC operates as a provider of computer systems design, IT consulting, cloud infrastructure, cybersecurity, software development, and related professional and technical services. The developer of this website is Hedge Health. By accessing or using our services, you agree to the collection and use of information in conformity with this privacy policy. If you do not agree with any part of this policy, you should discontinue use of our website and services immediately.
This policy applies to all information collected through our website, email communications, telephone conversations, in-person meetings, and any other interaction you may have with Hedge Health LLC. We encourage you to read this policy carefully and contact us if you have any questions or concerns regarding our data practices.
2. Information We Collect
2.1 Personal Information You Provide
When you interact with our website or services, we may collect the following categories of personal information that you voluntarily provide to us:
- Contact Information: Your full name, email address, telephone number, company name, job title, and physical mailing address when you fill out contact forms, request consultations, or subscribe to our communications.
- Business Information: Details about your organization, including its size, industry sector, current technology infrastructure, project requirements, and business objectives that you share during consultations or needs assessment discussions.
- Account Credentials: If we establish a client portal or project management access for you, we may collect username, password, and related authentication data required for secure access to our systems.
- Payment Information: Billing address, credit card details, bank account information, and invoicing data required to process payments for our professional services. Payment card data is handled by PCI-compliant third-party processors.
- Communication Records: Content of emails, messages, support tickets, phone call recordings where disclosed, and any other correspondence between you and Hedge Health LLC.
2.2 Information Collected Automatically
When you visit our website, certain information is collected automatically through cookies and similar tracking technologies:
- Device and Browser Data: IP address, browser type and version, operating system, device type, screen resolution, and language preferences.
- Usage Data: Pages visited, time spent on pages, navigation patterns, referring URL, exit pages, click-through data, search terms used on our site, and interaction with site elements.
- Geolocation Data: Approximate geographic location derived from your IP address, including country, region, and city-level information.
- Performance Data: Page load times, error logs, crash reports, and diagnostic information that helps us maintain and improve our website performance and reliability.
2.3 Information from Third Parties
We may receive information about you from third-party sources, including:
- Business partners and technology vendors who refer clients to us or collaborate with us on service delivery.
- Publicly available databases and professional networks such as LinkedIn, corporate registries, and industry directories.
- Marketing and analytics platforms that provide aggregated demographic and behavioral insights about our website audience.
- Credit reference agencies and background verification services, where required for enterprise service agreements and compliance purposes.
3. How We Use Your Information
Hedge Health LLC uses the information we collect for the following purposes:
- Service Delivery: To provide, maintain, and improve our computer systems design, integration, consulting, and related professional services according to your requirements and our contractual obligations.
- Client Communications: To respond to inquiries, provide project updates, deliver technical support, send administrative notifications, and maintain ongoing communication regarding your engagement with us.
- Business Operations: To process payments, manage billing and invoicing, maintain accurate client records, and fulfill our legal and regulatory obligations as a professional services firm.
- Marketing and Promotions: To send newsletters, service announcements, industry insights, and promotional materials that may be of interest to you, subject to your communication preferences and opt-out choices.
- Website Improvement: To analyze website traffic patterns, understand user behavior, optimize user experience, and enhance the functionality and content of our digital presence.
- Security and Fraud Prevention: To detect, prevent, and investigate potential security breaches, unauthorized access, fraudulent activities, and abuse of our systems and services.
- Legal Compliance: To comply with applicable laws, regulations, court orders, government requests, and to enforce our terms of service and other agreements.
4. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties for their marketing purposes. We may share your information in the following limited circumstances:
4.1 Service Providers
We engage trusted third-party service providers to assist us in operating our business and delivering services. These providers include cloud hosting infrastructure services, payment processing platforms, customer relationship management systems, email communication services, analytics tools, and professional services automation software. All service providers are contractually bound to process your data solely on our instructions and are required to implement appropriate security measures to protect your information.
4.2 Business Transfers
In the event of a merger, acquisition, reorganization, asset sale, or transfer of all or a portion of our business, your personal information may be among the assets transferred. We will notify you via email or prominent notice on our website prior to any such change in ownership or control of your personal data.
4.3 Legal Requirements
We may disclose your information when required to do so by law, subpoena, court order, or governmental authority, or when we believe in good faith that such disclosure is necessary to protect our rights, your safety, the safety of others, investigate fraud, or respond to a government request. We will make reasonable efforts to notify you of such disclosure unless prohibited by law or court order.
4.4 Aggregated and De-identified Data
We may share aggregated, anonymized, or de-identified data that cannot reasonably identify you with partners, researchers, and the public for analytics, industry benchmarking, marketing, and product improvement purposes. This data does not constitute personal information under applicable privacy laws.
5. Cookies and Tracking Technologies
Our website employs cookies and similar tracking technologies to enhance your browsing experience and collect usage analytics. Cookies are small text files stored on your device by your web browser. We use the following categories of cookies:
- Essential Cookies: These cookies are necessary for the core functionality of our website, including session management, security features, and load balancing. Disabling these cookies may impair website operation.
- Performance Cookies: These cookies collect anonymized data about how visitors interact with our website, including which pages are visited most frequently and whether users encounter error messages. We use this information to improve our website design and functionality.
- Functional Cookies: These cookies enable enhanced personalization, such as remembering your language preferences and form field entries to provide a more seamless experience during return visits.
- Analytics Cookies: These cookies, implemented through third-party services such as Google Analytics, help us understand visitor engagement patterns, traffic sources, and content performance across our website.
You have the ability to manage or disable cookies through your browser settings. Most browsers allow you to refuse cookies, delete existing cookies, or be alerted when new cookies are being set. Please note that disabling certain categories of cookies may affect the functionality and user experience of our website.
6. Third-Party Services and Links
Our website may contain links to third-party websites, platforms, and services that are not owned, operated, or controlled by Hedge Health LLC. These third-party services include social media platforms, partner websites, industry publications, and technology vendor portals. We are not responsible for the privacy practices, content, or security of any third-party website or service. We encourage you to review the privacy policies of every website and service you visit before providing any personal information.
We integrate with certain third-party tools for analytics, marketing automation, customer relationship management, project management, and cloud service delivery. While these integrations are necessary for our business operations, we carefully evaluate the privacy and security posture of each integration partner and establish data processing agreements where applicable.
7. Data Security
Hedge Health LLC implements and maintains industry-standard administrative, technical, and physical safeguards designed to protect the confidentiality, integrity, and availability of your personal information. Our security measures include:
- Encryption of data at rest and in transit using AES-256 and TLS 1.3 protocols respectively.
- Multi-factor authentication for administrative access to systems containing personal data.
- Regular vulnerability scanning and penetration testing of our infrastructure and applications.
- Access controls based on the principle of least privilege, with role-based permissions and audit logging.
- Continuous security monitoring, intrusion detection, and incident response procedures.
- Employee training on data protection, confidentiality obligations, and security best practices.
- Secure development lifecycle practices including code review, dependency scanning, and static analysis.
- Regular data backups with encrypted storage and tested disaster recovery procedures.
While we strive to protect your personal information using commercially reasonable means, no method of electronic storage or transmission over the internet is absolutely secure. We cannot guarantee or warrant the absolute security of any information you transmit to us. You share your personal information with Hedge Health LLC at your own risk, and we encourage you to take appropriate precautions to protect your own devices and credentials.
8. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this privacy policy, including for the duration of our service engagement with you and any applicable post-engagement retention period. The specific retention period depends on the nature of the information and the purposes for which it was collected. Factors we consider in determining retention periods include:
- The duration of our contractual relationship and the need to provide ongoing services.
- Legal and regulatory obligations requiring us to retain certain records for specified periods.
- Statutes of limitations for potential legal claims that may arise from our business relationship.
- Industry best practices for data retention in the professional services and IT consulting sector.
- Our legitimate business interests in maintaining accurate historical records for operational reference.
Upon expiration of the applicable retention period, we will securely delete, anonymize, or destroy your personal information in accordance with our data disposal policies and procedures. If you wish to request deletion of your data prior to the standard retention period, please contact us using the information provided in the Contact section below.
9. Children's Privacy
Our website and services are not intended for or directed at individuals under the age of 18. We do not knowingly collect, solicit, or maintain personal information from children under 18 years of age. If we become aware that we have inadvertently collected personal data from a child under the age of 18 without verification of parental consent, we will take immediate steps to delete such information from our records. If you believe that we may have collected information from a child under 18, please contact us promptly so that we can investigate and take appropriate action.
10. International Data Transfers
Hedge Health LLC is headquartered in the United States, and our primary data processing activities occur on servers located within the United States. If you are accessing our website or services from outside the United States, including the European Economic Area, the United Kingdom, Canada, Australia, or any other jurisdiction, your personal information may be transferred to, stored in, and processed in the United States or other countries where our service providers maintain facilities.
By providing your personal information to us, you acknowledge and consent to the transfer of your data to countries that may have data protection laws that differ from those in your country of residence. We take appropriate safeguards to ensure that any international data transfers comply with applicable data protection requirements, including the use of standard contractual clauses and other legally recognized transfer mechanisms.
11. California Privacy Rights
Under the California Consumer Privacy Act of 2018, as amended by the California Privacy Rights Act of 2020 (collectively referred to as CCPA/CPRA), California residents are entitled to certain rights regarding their personal information. If you are a California resident, you have the following rights:
- Right to Know: You may request, up to twice in a 12-month period, that we disclose the categories and specific pieces of personal information we have collected about you, the categories of sources from which the information was collected, the business or commercial purpose for collecting the information, and the categories of third parties with whom we share personal information.
- Right to Delete: You may request that we delete personal information we have collected from you, subject to certain exceptions including completing transactions, detecting security incidents, debugging, exercising free speech rights, and complying with legal obligations.
- Right to Correct: You may request correction of inaccurate personal information that we maintain about you.
- Right to Opt-Out: You have the right to opt-out of the sale or sharing of your personal information. We do not sell your personal information as defined under the CCPA.
- Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA rights, including by denying services, charging different prices, or providing a different level or quality of services.
To exercise your California privacy rights, please contact us using the contact information provided below. We will verify your identity before processing your request, which may require you to provide sufficient information to confirm that you are the individual about whom we have collected personal information. You may also designate an authorized agent to make a request on your behalf, provided that the agent demonstrates written authorization from you.
12. GDPR and EEA Data Subject Rights
If you are located in the European Economic Area, Switzerland, or the United Kingdom, the General Data Protection Regulation and applicable national data protection laws grant you specific rights regarding your personal data. These rights include:
- Right of Access: You have the right to obtain confirmation about whether we process your personal data and to receive a copy of the personal data we hold about you.
- Right to Rectification: You have the right to request correction of inaccurate or incomplete personal data we hold about you.
- Right to Erasure: Also known as the right to be forgotten, you may request deletion of your personal data under certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected.
- Right to Restriction: You may request that we restrict the processing of your personal data under certain conditions, such as when you contest the accuracy of the data or object to its processing.
- Right to Data Portability: You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit that data to another data controller.
- Right to Object: You may object to the processing of your personal data on grounds relating to your particular situation, including objecting to processing for direct marketing purposes.
- Right to Withdraw Consent: Where processing is based on your consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
If you wish to exercise any of these rights or have questions about the legal basis for our processing of your personal data, please contact us using the information provided below. You also have the right to lodge a complaint with a supervisory authority in your country of residence, place of work, or the location where the alleged infringement occurred if you believe that our processing of your personal data violates applicable data protection law.
13. Do Not Track Signals
Do Not Track is a web browser setting that sends a signal to websites requesting that they disable cross-site user tracking. Currently, there is no universally accepted standard for how websites should respond to Do Not Track signals. Our website does not respond to Do Not Track signals at this time. However, you can configure your browser settings to block cookies, disable tracking scripts, or use private browsing mode to limit the data collected during your visit. We will continue to monitor developments in Do Not Track technology and industry standards and may update our approach as consensus emerges.
14. Changes to This Privacy Policy
We reserve the right to update, modify, or replace this privacy policy at any time. When we make material changes, we will post the revised policy on this page and update the Last updated date at the top of the document. We may also provide additional notice of significant changes through email notification to registered clients or through a prominent notice displayed on our website homepage.
We encourage you to review this privacy policy periodically to stay informed about how we are protecting your information. Your continued use of our website and services after any modification to this policy constitutes your acknowledgment and acceptance of the updated terms. If you disagree with any changes to this policy, you should cease using our website and services and contact us regarding the deletion of your data where applicable.
15. Contact Information
If you have any questions, concerns, requests, or complaints regarding this privacy policy or our data handling practices, please contact us using the following information:
Hedge Health LLC
350 E 400 S Ste 500
Salt Lake City, UT 84111-2993
United States
Email: office@hedgehealth.autos
Phone: +1 (765) 972-4730
Website: https://www.hedgehealth.autos
We take all privacy inquiries seriously and endeavor to respond to your communications promptly. For data subject access requests, deletion requests, or other privacy rights exercises, please allow up to 30 days for us to process and respond to your request, though we strive to acknowledge all inquiries within 5 business days of receipt.