Who we are
Our website address is: https://ravcare.com
RavCare PRIVACY POLICY
This privacy policy (“Policy”) was last updated on January 1, 2024.
- Purpose of This Privacy Policy and Consent.
This Privacy Policy explains how information is collected, used and disclosed by RavCare with respect to your access and use of our Services through our mobile application (“App”). To make this Privacy Policy easier to read, our services and App are collectively called the “Services.” This Privacy Policy doesn’t apply to any third-party websites, services or applications that may be accessed through our Services.
By using and/or consenting to you and your Authorized Provider’s (as defined in our Terms and Conditions) use of our services, you consent to the collection, use and disclosure of your Personal Information and your Personal Health Information (each as defined below) in accordance with this Policy. We strongly recommend that you read this Policy carefully and retain it for future reference. This Policy may change from time to time (see Section 13 “Changes to this privacy policy” below). For this reason, please check this Policy periodically for updates. Your continued use of our Website, App, and/or any of our Services, as defined in our Terms and Conditions, after we make changes to this policy, indicates that you accept and consent to those changes. We will notify you in advance of any material changes to this Policy and obtain your consent to any new ways that we collect, use and disclose your Personal Information or Personal Health Information.
The application of this Policy is subject to applicable laws, regulations, and the orders or lawful requests of courts or legal authorities.
We take commercially reasonable steps to protect the integrity and confidentiality of personally identifiable and health information that you may share with us. We comply with the HIPAA security rule for administrative, technical, and physical security safeguards and have third party assessments of our controls performed annually. However, please be aware that no security measures are perfect or impenetrable and we cannot guarantee the absolute security of your information.
We will do our part to protect your information, but it is important for you to protect your information as well. Additionally, we do not control the actions of anyone with whom you or any other RavCare user may choose to share information. As such, you should be cautious about the access you provide to others when using the App, and the information you choose to share when using the RavCare Services.
- Categories of Information We May Collect from You.
Personal Information
“Personal Information” is anything that identifies, relates to, describes, is capable of being associated with, or could be reasonably linked, directly or indirectly, to you. Examples of Personal Information include your:
Personal Information we collect might include, but is not limited to, your name, email address, telephone number, sex, date of birth, marital status, physical or emotional characteristics, bank account number, any identifier we may use to contact you, other personally identifiable information that you may choose to add to your User account profile in our App, records, and copies of your correspondence with us and with your Authorized Provider through our App.
Protected Health Information
“Protected Health Information” is a subset of Personal Information that is protected by the Health Insurance Portability and Accountability Act of 1996 and its implementing regulations (collectively, “HIPAA”). As stated above, we may receive Protected Health Information about you from Authorized Providers and the information you provide to us in connection with Services (such as the specific RavCare services that you may receive from a RavCare Authorized Provider) may be Protected Health Information.
Non-Personal Information
“Non-Personal Information” means information that does not permit us to identify, contact or locate you. For example, your device model number and manufacturer, and state of residence are Non-Personal Information unless linked to your Personal Information. If we combine or link your Non-Personal Information with Personal Information (such as combining your name with your device model), we will treat the combined information as Personal Information so long as it is combined.
- Information We Collect from You Automatically.
Cookies and IP Addresses
The Services may use “cookie” technology and similar technology to gather information from our visitors such as which pages are used and how often they are used, and to enable certain features on the Services. In some jurisdictions, this is considered Personal Information.
We may collect information about your activities on our Services using technologies such as cookies, including third party cookies, web beacons, JavaScript code, HTML 5 databases, and server log files. The information we collect using these means may include your Media Access Control (MAC) address, operating system and version, screen resolution, device manufacturer and model, language, Internet browser type and version, the version of the Services you are using, the date and time you access the Services, pages visited, time spent on the Services, general location information, and other activity data. This information is automatically generated. Our third-party business partners and we may use this information to provide you with an optimal experience.
Your “IP Address” (a number that is automatically assigned to the computer or other device that you are using by your internet service provider) may be identified and logged automatically in our server log files whenever you access the Services, along with the time of the visit and the page(s) that were visited. IP Addresses are automatically collected by many websites, applications, and other services. We may use IP Addresses for purposes such as calculating usage levels of the Services, helping diagnose server problems, and administering the Services.
Location Information
“Location Information” is a subset of Personal Information that can be used to locate the device you use to access the Services. Location Information may include: (i) with your consent, the location of the device you used to access the Services; (ii) the IP address of the device or internet service used to access the Services, and (iii) other information made available by a user or others that indicates the current or prior location of the user. If you do not want us to collect Location Information from your device, please disable the location setting(s) on your device or delete the Apps. Please note that disabling the location setting may affect certain features of the Services.
Usage Data
“Usage Data” is information that we automatically collect about your use of the Services and your device. This type of information does not usually, by itself, uniquely identify an individual, and may include your web browser and operating system, device model and manufacturer, and your activity on the Services. If Usage Data is combined with or linked to Personal Information, then we treat it as Personal Information. If the Usage Data cannot be used to identify, contact or locate you, then it is Non-personal Information and will not be treated as Personal Information.
Do Not Track
Some web browsers have “Do Not Track” or similar features that allow you to tell each website you visit that you do not want your activities on that website tracked. Presently, the Services do not respond to “Do Not Track” signals and, consequently, the Services will continue to collect information about you even if your browser’s “Do Not Track” feature is activated. The only way to completely “opt out” of the collection of any information through cookies or other tracking technology is to actively manage the settings on your browser or mobile device to delete and disable cookies and other tracking/recording tools.
- Third-Party Service Providers.
RavCare uses a third-party service provider, Amazon Web Services (“AWS”) to track and prevent errors in our software; and to send, receive and track emails and User login invitations. These third-party service providers may have access to Personal Information and Personal Health Information as an incidental result of the services provided by such third parties to RavCare, but the access of such third parties to such information is strictly controlled in accordance with the safeguards detailed below.
While using our platform, you may choose to authorize RavCare to retrieve and disclose your health records and protected health information. These records may not be a complete 100% comprehensive record, and these records may not be useful for diagnostic purposes. These health records will be shared with Authorized Providers to ensure great healthcare services. RavCare does not alter or modify medical records received from its third parties. If at any time you wish to revoke this authorization, you may do so by deleting your profile on the RavCare App.
- Information Provided by Your Authorized Provider.
Your Authorized Provider may record in our Platform, information such as interactions with you, test results, evaluations, records and notes consistent with treatment and other information related to your mental health. By using our Platform, you agree that your chosen Authorized Provider are authorized to disclose your Personal Information and Personal Health Information to us.
- Purpose for Collecting Information.
We may use information you provide for various purposes, which include:
- Providing you the Services and Fulfilling Your Requests: registering you, administering your account, and providing you the information, products, and services that you request. For example, we respond to your questions when you contact us and assist with any problems you report about our Services;
- Communicating with you;
- Providing, Maintaining, and Improving Our Business: Improving the functionality of our Services, such as data analysis, audits, developing new products, enhancing, improving or modifying our Services, identifying usage trends, determining the effectiveness of our promotional campaigns, and operating and expanding our business activities;
- Enhancing Your Experience: Personalizing and enhancing your experience when you use the Services, such as tailoring content and advertising and remembering your preferences.
- Legal and Other Business Purposes: Taking any action that we believe to be necessary or appropriate: (a) to investigate, prevent, and detect illegal activities; (b) under applicable laws, including laws outside your country of residence; (c) to comply with legal process; (d) to respond to requests from public and government authorities, including public and government authorities outside your country of residence; (e) to enforce our Terms of Use and Privacy Policy (f) to protect our operations or those of our affiliates; (g) to protect our rights, privacy, safety or property, and/or that of our affiliates, you or others; (h) to detect, investigate, and prevent fraudulent transactions and other illegal activities, and to authenticate and confirm your identity when you return to the Services; and (i) to allow us to pursue available remedies or limit the damages that we may sustain;
- Combine with Other Information: Linking or combining with information we get from other sources to help understand your needs and provide you with a better experience; and
- At Your Direction: Carrying out any other purposes specifically disclosed at the time we request your information
We may also de-identify your information or aggregate your information with other users of the Services (“Aggregate Information”). This Aggregate Information is not Personal Information, because it cannot be used to identify you and may be used by us for any lawful purpose. If Aggregate Information is re-identified, it will be treated as Personal Information.
- Who We May Share Information With.
We may share your information with other parties for various business purposes:
- Business Associates:We may also disclose Protected Health Information to our business associates that perform functions on our behalf or provide us with services if the information is necessary for such functions or services. All business associates are obligated to protect the privacy of your information and are not allowed to use or disclose any information other than as specified in our contract.
- With Authorized Providers to Provide Services: We may share your information with our Authorized Providers for whom we provide services or to provide you our Services, and generally to improve our service offerings.
- In the Event of a Corporate Transaction: In the event we go through a business transition, such as a merger, acquisition, divestiture, restructuring, reorganization, dissolution, bankruptcy or sale of all or a portion of our assets, we may disclose your information to the party or parties of such transaction.
- For Legal Purposes: We will disclose your information when we think it is necessary to investigate or prevent actual or expected fraud, criminal activity, injury or damage to us or others or when otherwise required by law, regulation, subpoena, or court order, or if necessary to protect our rights.
- At Your Direction: We will share your information with third parties if and when you direct us to. For example, if you request that we share your information with one of our business partners to take advantage of a product or service that partner offers, we will share your information with that business partner.
RavCare does not sell any Personal Information we collect about you. We may, however, share Aggregate Information about our users in all legally permissible ways.
- How We Protect Your Personal Information and Personal Health Information.
The safety and security of your Personal Information and Personal Health Information is very important to RavCare. While we cannot guarantee complete protection of your Personal Information or Personal Health Information, we follow commercially reasonable practices to protect Personal Information and Personal Health Information collected from you against accidental loss and unauthorized access, use, alteration, disclosure, and destruction.
RavCare focuses on security from the ground up. Our Data Center is compliant with the following standards:
HIPAA
SOC 1/SSAE 16/ISAE 3402 (formerly SAS70)
SOC 2
SOC 3
PCI DSS Level 1
ISO 27001
FedRAMP(SM)
DIACAP and FISMA
ITAR
FIPS 140-2
CSA
MPAA
We also utilize proximity security badge access and digital security video surveillance. Our server network can only be accessed via SSL VPN with public key authentication or via Two-factor Authentication over SSL. Additionally, our network can only be accessed via SSL VPN or multi-factor authentication, and all access to our web portal is secured over HTTPS using SSL 256-bit encryption. Additionally, all staff members with access to Client Data receive certification as a HIPAA Privacy Associate.
Because the transmission of information via the Internet is not completely secure, any transmission of Personal Information or Personal Health Information is at your own risk. Although we maintain security measures to maintain the integrity of the data in our care, including the encryption of all Personal Information and Personal Health Information, while in transit or at rest, we are not responsible for circumvention of any of our privacy settings or security measures. Your Personal Information and Health Information may be transmitted over various networks and may be subject to changes to confirm and adapt to technical requirements of connected networks or devices. We urge you to be cautious about giving out information in any public areas of our Platform.
Safeguard measures to ensure authorized access to your account on our Platform include the use of a username and a password for authentication. You are responsible for keeping your personal password and username private. Please contact us immediately if you believe that your password has been compromised or misused.
- Opting out of Marketing Communication.
You may opt out of receiving emails by unsubscribing using the unsubscribe link provided in all of our marketing email communications.
- Advertising and Analytics Services Provided by Others.
We may allow others to provide analytics services and serve advertisements on our behalf across the Platform. These entities may use cookies, web beacons, device identifiers, and other technologies to collect information about your use of the Services and other websites and applications, including your IP address, web browser, mobile network information, pages viewed, time spent on pages or in apps, links clicked, and conversion information. This information may be used by us and others to, among other things, analyze and track data, determine the popularity of certain content, deliver advertising and content targeted to your interests in our Services and other websites, and better understand your online activity. For more information about interest-based ads, or to opt out of having your web browsing information used for behavioral advertising purposes, please visit www.aboutads.info/choices. We may also work with third parties to serve ads to you as part of a customized campaign on other websites or platforms. To opt out of having information about you used in this way, please contact us through one of the contact methods in Section 16 below.
- Online Privacy Policy for Children.
RavCare believes it is particularly important to protect the privacy of minors online. RavCare defines a “minor” as any person less than 13 years of age. RavCare does not knowingly collect Personal Information about minor users without a parent’s or legal guardian’s permission or knowingly share Personal Information about minor users with third parties without a parent’s or legal guardian’s permission. If we learn we have received Personal Information directly from a child under age 18, we will use that information only to respond directly to that child (or his or her parent or legal guardian) to inform the child that he or she cannot use the Services and will make commercially reasonable efforts to delete such information.
- Your California Privacy Rights.
The California Consumer Privacy Act (CCPA), effective January 1, 2020, grants California residents certain privacy rights with respect to their Personal Information. If you are a California resident subject to the protections of the CCPA, you have the following rights to the extent required by law:
The right to know. You have the right to know (i) the Personal Information that we collect, use, disclose or sell; and (ii) the categories of Personal Information that we collected about you in the preceding 12 months, the sources for that Personal Information, the business purpose for which that Personal Information was collected, the categories of such Personal Information that was shared or sold, the categories of third parties with whom that Personal Information was shared or sold, and the business purpose for which that Personal Information was shared or sold.
The right to access. You have the right to access a copy of the specific Personal Information that we have collected about you to the extent required under the CCPA. You may request this copy to be delivered either by mail or electronically.
The right to deletion. You have the right to request that we delete the Personal Information that we or a third party with whom we shared your Personal Information maintain about you to the extent required under the CCPA. There may be circumstances under which we or the third party are unable to delete your Personal Information, such as if we need to comply with our legal obligations or complete a transaction for which your Personal Information was collected or we cannot verify your identity. If we are unable to comply with your request for deletion, we will let you know the reason why.
The right to opt out of the sale of your Personal Information. Please note that RavCare does not and will not sell any Personal Information we collect about you.
The right to equal service. If you choose to exercise any of your rights under the CCPA, we will not discriminate against you in any way. If you exercise certain rights, such as deleting your account, you may be unable to use or access certain features of the Services.
If you are a California resident and would like to exercise any of these rights, please call 307-278-9811, or by using one of the contact methods in Section 16 below. An authorized representative may exercise these rights on your behalf so long as they present a power of attorney or other legally binding document evidencing the representative’s authority. Please note that we will require you or your authorized representative to provide us with certain personal identifiers to verify your/your representative’s identity when your rights are exercised. Please note further that: (a) if we maintain your Personal Information on behalf of a third party, we may refer you to that third party to exercise your rights; and (b) certain health care providers and information, such as Protected Health Information and “Medical Information” (as defined under California’s Confidentiality of Medical Information Act), may be exempted from the CCPA. This means that we and certain health care providers may not be required to honor the above rights and instead we comply with our obligations under other laws, such as HIPAA and the Confidentiality of Medical Information Act. We will respond to a request to exercise rights under the CCPA in accordance with the timeframe and process required under the CCPA. If we deny a request, we will explain the basis for the denial.
RavCare does not offer financial incentives or price differences in exchange for retention or sale of Personal Information.
- Changes to this Policy.
We reserve the right to amend this Policy at any time. The Policy posted on our Website and in our App shall be deemed to be the policy in effect. A current Policy can also be obtained by contacting us. If we make any material changes to this Policy regarding how we treat your Personal Information or Personal Health Information, we will notify you through a notice on our website and on our App, and/or by email to your last known email address and will obtain your express consent as required under applicable privacy laws. We also include the date this Policy was last revised at the top of the Policy. The revised Privacy Policy will supersede all previous versions.
By continuing to access or use the Services following such changes, you will be deemed to have agreed to such changes. You are responsible for ensuring that we have an up-to-date, active, and deliverable email address for you and for periodically visiting this Policy to check for any changes.
- Correcting or Updating Information and Withdrawing Consent.
It is important that the Personal Information and Personal Health Information we hold about you is accurate and current. The accuracy, integrity and completeness of your Personal Information and Personal Health Information you input into our App or allow someone to input into our App on your behalf, is your responsibility. Please keep us informed if your information changes. By law, you have the right to request access to and to correct the Personal Information and Personal Health Information that we hold about you. You may contact us if you would like to review, verify, correct, or withdraw consent to the use of your Personal Information or Personal Health Information. We may request certain Personal Information for the purposes of verifying the identity of the individual seeking access to their Personal Information or Personal Health Information records.
We may not accommodate a request to view or change information if we believe that:
- The identity of the person requesting access cannot be confirmed;
- The information is not readily retrievable, and the burden or cost of providing it would be disproportionate to the nature or value of the information;
- The requested information does not exist, is not held or cannot be found;
- Disclosure of the information would compromise the confidentiality of another individual or threaten the safety of another person; and/or
- Non-disclosure of the information is required or permitted by law.
Where a request for access to information is made, to protect vulnerable populations, RavCare reserves the right to verify communications, including with your Authorized Provider, before taking action. Where a request for access or alteration of Personal Information or Personal Health Information is declined, the individual making the request will be provided with the reason(s) for declining the request, subject to any legal or regulatory restrictions.
- Cross Borders Transfers.
The Services are intended for use in the United States of America only. RavCare is located in, and operates in, the United States of America (U.S.), and U.S. law governs all matters relating to our services. If you use our Services or contact us from outside of the U.S., please be advised that (i) any information you provide to us or that we automatically collect will be transferred to the U.S.; and (ii) that by using our Services or submitting information, you explicitly authorize its transfer to and subsequent processing in the U.S. in accordance with U.S. law and this Privacy Policy.
- Contacting Us.
If you would like to request a copy of this Privacy Policy or if you have any questions on RavCare’s privacy practices or for clarification on anything contained within this policy, please contact:
Censon LLC
(a) by post, to the postal address: 60 Komitas Ave, Yerevan 0014, Armenia.
(b) by telephone at +374-041-200-356
(c) by email, using the email address [email protected]
Anti-spam policy
1. Introduction
1.1 In the context of electronic messaging, “spam” means [unsolicited, bulk or indiscriminate messages, typically sent for a commercial purpose].
1.2 We have a zero-tolerance spam policy.
2. Credit
2.1 This document was created using a template from Docular (https://docular.net).
3. Spam filtering
3.1 Our messaging systems automatically scan all incoming [email and other] messages and filter out messages that appear to be spam.
3.2 We may also report incoming email as spam. This can result in IP addresses and domain names being blacklisted.
4. Spam filtering issues
4.1 No message filtering system is 100% accurate, and from time to time legitimate messages will be filtered out by our systems.
4.2 If you believe that a legitimate message you have sent has been filtered out by our systems, please advise the message recipient by another means.
4.3 You can reduce the risk of a message being caught by the spam filters by:
(a) sending the message in plain text (instead of, or in addition to, HTML);
(b) removing any message attachments;
(c) avoiding the terminology and text styling typically used by spammers; and/or
(d) ensuring that your messages are scanned for malware before dispatch.
5. User spam
5.1 We provide a facility that enables users to send [email messages] OR [private messages] OR [[message type(s)]] to others.
5.2 Users must not use our messaging facility or any of our other services to store, copy, send, relay or distribute spam.
5.3 Full provisions concerning the use of our messaging facility are set out in our website terms and conditions of use.
6. Receipt of unwanted messages from us
6.1 In the unlikely event that you receive any message from us or sent using our systems that may be considered to be spam, please contact us using the details below and the matter will be investigated. It is our policy not to use unsolicited messages for advertising our services and/or products.
7. Variation
7.1 We may amend this policy at any time by publishing a new version on our website.
8. Our details
8.1 This website is owned and operated by CENSON LLC.
8.2 Our principal place of business is at 60 Komitas Ave, Yerevan 0014, Armenia.
8.3 You can contact us:
(a) by post, to the postal address given above;
(b) using our website contact form
(c) by telephone, on the contact number published on our website; or
(d) by email, using the email address [email protected]