Privacy Policy
1. Introduction
Solaxa, Inc. (“we,” “us,” or “our”) is committed to protecting the privacy and security of your Protected Health Information (PHI) in compliance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and other applicable laws and regulations such as the General Data Protection Regulation (GDPR) (if applicable). This Privacy Policy outlines how we collect, use, disclose, and protect your PHI when you interact with our website, services, or products.
By using our services, you agree to the terms of this Privacy Policy.
2. What is Protected Health Information (PHI)?
PHI, as defined by HIPAA, is individually identifiable health information, including demographic data, that relates to the past, present, or future physical or mental health condition of an individual.
3. How We Collect PHI
We may collect PHI from you when you:
- Access or use our website: We may collect information through cookies, web beacons, or other tracking technologies
- Submit inquiries or contact us: We may collect information you provide in your communications.
- Participate in research studies or clinical trials: We may collect PHI as part of your participation.
- Use our products or services: We may collect PHI as part of the use of our products or services.
We may collect the following types of information:
- Personal Information: Name, contact details, professional credentials for healthcare providers (HCPs), and other identifying information
- Health-Related Information: If applicable, health conditions, treatment details, or medication history (collected with appropriate consent and in compliance with HIPAA)
- Usage Data: IP addresses, device information, browsing activity, and interactions with our website or digital platforms
- Cookies & Tracking Technologies: Used to analyze user behavior and improve our services
4. How We Use Your Information
We use collected information to:
- Provide healthcare-related services, resources, and support
- Facilitate communication with patients, caregivers, and healthcare professionals
- Conduct clinical research, surveys, and patient engagement programs (with consent)
- Ensure regulatory compliance and monitor adverse events
- Improve website functionality and personalize user experiences
We may use and disclose your PHI for the following purposes:
- Treatment: To provide you with our services or products.
- Payment: To process payments for our services or products.
- Healthcare Operations: To conduct our business operations, including quality improvement, research, and compliance.
- As Required or Permitted by Law: To comply with legal obligations or as permitted by law.
- With Your Authorization: We will obtain your written authorization before using or disclosing your PHI for purposes not listed above.
5. Legal Basis for Processing
We process personal data based on:
- Consent: When required by law, such as for marketing or patient support programs
- Legitimate Interest: To enhance patient care and HCP engagement
- Legal & Regulatory Compliance: Including reporting adverse events to health authorities
- Contractual Necessity: When providing services you have requested
6. How We Share Your Information
We will not share PHI without authorization, except as permitted or required by law.
We do not sell personal information. However, we may share data with:
- Healthcare Partners & Service Providers: Including patient support programs, specialty pharmacies, and research organizations
- Regulatory Authorities: To comply with legal reporting obligations, such as pharmacovigilance requirements
- Third-Party Processors: Who assist in data processing under strict confidentiality agreements
- Business Transactions: In the event of mergers, acquisitions, or corporate restructuring
7. Data Security & Retention
We are committed to protecting the security of your PHI and have implemented reasonable security measures to protect against unauthorized access, use, or disclosure.
We implement administrative, technical, and physical security measures to protect your data. However, no system is completely secure.
We retain personal data only as long as necessary to fulfill our obligations or comply with legal requirements.
8. Your Rights & Choices
Depending on applicable laws, you may have the right to:
- Access, correct, or delete your personal data
- Withdraw consent for data processing (where applicable)
- Restrict or object to data processing
- Request data portability
To exercise your rights, contact us at info@solaxa.com.
9. HIPAA Compliance (If Applicable)
For any collection or processing of Protected Health Information (PHI), we comply with HIPAA regulations, ensuring appropriate safeguards and limitations on data use.
10. International Data Transfers
If you are located outside the United States, your data may be transferred to servers in the United States or other jurisdictions with appropriate data protection safeguards.
11. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of these websites.
12. Changes to This Policy
We may update this Privacy Policy periodically. Any changes will be reflected in the “Effective Date” above. Continued use of our services indicates your acceptance of the updated policy.
13. Contact Us
For questions about this Privacy Policy, please contact:
- Solaxa Inc.
- 7272 Wisconsin Avenue Floor 9
- Bethesda, MD 20814
- info@solaxa.com