Privacy Policy
NevoMD (“NevoMD,” “we,” “us,” or “our”) provides a physician-facing clinical decision-support platform designed to assist licensed healthcare professionals in reviewing patient information and clinical data. This Privacy Policy explains how we collect, use, disclose, and protect information when you access or use the NevoMD platform and related services (the “Service”).
NevoMD is not intended to provide medical diagnoses, does not replace professional clinical judgment, and is intended for use only by licensed physicians or authorized clinical professionals.
1. Information we collect
1.1 Physician account and profile information
We collect information you provide to create and maintain your account and profile, which may include:
- Name
- Email address
- Phone number
- Clinic name
- Specialty and professional role
- Authentication identifiers (for example, user IDs and session tokens)
1.2 Patient data and uploaded content
The Service allows you to enter, upload, or otherwise submit patient-related information (“Patient Data”). Patient Data may include patient name and other information you provide about a patient, along with any clinical data and content you upload such as laboratory reports, documents, images, or other files.
You are responsible for ensuring you have the rights and authorizations required to submit Patient Data and for complying with applicable laws and professional obligations when using the Service.
1.3 Usage, device, and log data
We may collect technical and usage information when you use the Service, such as IP address, browser/device type, pages or features used, timestamps, and diagnostic logs. We use this information for security, troubleshooting, and service improvement.
1.4 Cookies and similar technologies
We may use cookies or similar technologies to support authentication, maintain session state, and improve user experience. You can typically control cookies through your browser settings; however, disabling cookies may affect Service functionality.
2. Payment information
NevoMD does not store full credit card numbers, CVC codes, or sensitive payment credentials. Subscription payments are handled by a third-party payment processor (such as Stripe), and we receive only non-sensitive billing metadata (for example, subscription status or plan type) necessary to manage account access.
3. How we use information
We may use information we collect to:
- Provide, operate, and maintain the Service (including authentication and account administration)
- Process subscriptions and manage access based on subscription status
- Generate clinical decision-support outputs requested by you
- Provide customer support and respond to inquiries
- Monitor, prevent, and detect fraud, abuse, and security incidents
- Improve performance, reliability, and usability
- Comply with legal obligations and enforce our terms
We do not sell Personal Information. We do not use Patient Data for advertising.
4. How we share information
4.1 Service providers
We may use third-party service providers to help operate the Service (for example, hosting, authentication, analytics, customer support, and payment processing). These providers may process information on our behalf under contractual terms intended to protect confidentiality and security.
4.2 Legal, safety, and enforcement
We may disclose information if we believe it is necessary to comply with law, respond to lawful requests, protect the rights and safety of NevoMD, our users, patients, or the public, or to investigate suspected wrongdoing.
4.3 Business transfers
If NevoMD is involved in a merger, acquisition, financing, reorganization, bankruptcy, or sale of assets, information may be transferred as part of that transaction, subject to appropriate confidentiality protections.
5. Data security
We implement administrative, technical, and physical safeguards designed to protect information from unauthorized access, loss, misuse, or alteration. Security measures may include encryption of data in transit and at rest, access controls, monitoring, and audit logging. No system can be guaranteed 100% secure.
You are responsible for maintaining the confidentiality of your login credentials and for securing any devices you use to access the Service.
6. Patient privacy and healthcare considerations
The Service is intended for use by licensed healthcare professionals. You remain responsible for clinical interpretation and patient care decisions, and for complying with applicable laws and professional obligations.
If you submit Patient Data that is protected health information (PHI), additional legal requirements may apply depending on your use and applicable law. If your organization requires a business associate agreement (BAA) to use the Service with PHI, contact us before uploading PHI so we can confirm whether we can support your compliance requirements.
7. Data retention
We retain information for as long as reasonably necessary to provide the Service, comply with legal obligations, resolve disputes, enforce agreements, and maintain security. Retention periods may vary depending on the type of data and your account status.
8. Your choices and rights
Depending on your location, you may have rights to access, correct, delete, or obtain a copy of certain Personal Information. To make a request, contact us using the information in the “Contact” section below. We may need to verify your identity before fulfilling requests.
9. International use
The Service may be operated from the United States or other jurisdictions. If you access the Service from outside the United States, your information may be transferred to and processed in jurisdictions that may have different data protection laws than your jurisdiction.
10. Children’s privacy
The Service is not intended for use by children and is offered only to licensed healthcare professionals and authorized staff. We do not knowingly collect Personal Information from children.
11. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will take reasonable steps to provide notice by posting an updated policy on this page. The effective date above indicates when this policy was last revised.
12. Contact
If you have questions about this Privacy Policy or our data practices, please contact NevoMD support through your dashboard or via our official support channels.