Privacy Policy

Version 0.9.0 (DRAFT)
Last Updated: January 2025

⚠️ DRAFT VERSION - Pending Legal Review

Introduction

Nurse Charting Pro ("we," "our," or "us") is committed to protecting the privacy and security of your personal and health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and services.

Information We Collect

Personal Information

We may collect the following types of personal information:

  • User Profile Data: Name, nursing unit, professional credentials
  • Contact Information: Email address (if provided for support)
  • Usage Data: App interaction patterns, feature usage statistics

Health Information (PHI)

As a healthcare documentation application, we process Protected Health Information (PHI) including:

  • Patient identifiers (room numbers, medical record references)
  • Clinical observations and assessments
  • Nursing narratives and documentation
  • Vital signs and patient status information

Technical Information

  • Device information (model, operating system, unique identifiers)
  • Log data (timestamps, error reports, performance metrics)
  • Security events (authentication attempts, data access logs)

How We Use Your Information

We use the collected information for:

  • Service Delivery: Providing patient rounding and documentation features
  • Data Security: Maintaining audit trails and security monitoring
  • Improvement: Analyzing usage patterns to enhance functionality
  • Support: Responding to user inquiries and technical issues
  • Compliance: Meeting HIPAA and healthcare regulatory requirements

Data Storage and Security

Local Storage

Patient data is primarily stored locally on your device using encrypted storage mechanisms. This design ensures data availability even without internet connectivity and minimizes data transmission risks.

Encryption

  • Data at rest: AES-256 encryption for all stored PHI
  • Data in transit: TLS 1.3 for any network communications
  • Secure key management using platform-native security features

Access Controls

  • Device-level authentication required for app access
  • Automatic session timeouts for inactive periods
  • Audit logging of all data access and modifications

Data Sharing and Disclosure

We Do Not Sell Your Data

We will never sell, rent, or trade your personal information or PHI to third parties for marketing purposes.

Limited Sharing Scenarios

We may share information only in these circumstances:

  • Healthcare Operations: With your healthcare facility as part of normal operations
  • Legal Requirements: When required by law or valid legal process
  • Emergency Situations: To prevent serious harm or protect patient safety
  • Service Providers: With vendors who assist in app operations (under strict BAAs)

Your Rights and Choices

You have the right to:

  • Access: Request copies of your personal information
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your data (subject to legal retention requirements)
  • Export: Receive your data in a portable format
  • Restriction: Limit how we use your information

Data Retention

We retain information only as long as necessary for the purposes outlined in this policy or as required by law. Healthcare documentation may be subject to retention requirements ranging from 3-7 years depending on jurisdiction and record type.

Children's Privacy

Nurse Charting Pro is designed for use by healthcare professionals and is not intended for individuals under 18 years of age. We do not knowingly collect information from children.

HIPAA Compliance

As a business associate under HIPAA, we maintain compliance with all applicable regulations including:

  • Privacy Rule (45 CFR Part 160 and Part 164, Subparts A and E)
  • Security Rule (45 CFR Part 164, Subpart C)
  • Breach Notification Rule (45 CFR Part 164, Subpart D)

International Data Transfers

Your data is processed and stored within the United States. If you access our services from outside the U.S., you acknowledge that your information will be transferred to and processed in the U.S.

Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. Material changes will be communicated through:

  • In-app notifications
  • Email notifications (if contact information provided)
  • Updated version number and "Last Updated" date

Continued use of Nurse Charting Pro after policy updates constitutes acceptance of the revised terms.

Contact Us

For privacy-related questions, concerns, or requests, please contact:

State-Specific Rights

California Residents (CCPA)

California residents have additional rights under the California Consumer Privacy Act:

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to say no to the sale of personal information
  • Right to access your personal information
  • Right to equal service and price

Other States

Residents of Virginia, Colorado, Connecticut, and other states with privacy laws may have similar rights. Contact us to exercise your rights under applicable state law.

This Privacy Policy was last updated on the date indicated above. We encourage you to review this policy periodically for any changes.