Privacy Policy

SignalDX (“SignalDX,” “we,” “our,” or “us”) respects your privacy and is committed to protecting personal information and healthcare-related data handled through our platform and services.

This Privacy Policy explains how we collect, use, disclose, and protect information when you use:

  • SignalDX.ai
  • Our software platform
  • APIs and integrations
  • Demo environments
  • Communications and support channels
  • Related products and services (collectively, the “Services”)

By using the Services, you agree to the practices described in this Privacy Policy.

1. Information We Collect

A. Information You Provide

We may collect information you voluntarily provide, including:

  • Name
  • Email address
  • Phone number
  • Organization name
  • Job title
  • Account credentials
  • Billing information
  • Support requests
  • Communications with us

B. Healthcare & Operational Data

Depending on how customers use the Services, we may process healthcare-related or operational data including:

  • Patient information
  • Provider information
  • Insurance information
  • Order and requisition data
  • Billing-related information
  • Diagnostic testing information
  • Uploaded documents and files
  • Workflow activity and audit logs

This data may include Protected Health Information (“PHI”) governed by HIPAA or other healthcare privacy regulations.

C. Automatically Collected Information

We may automatically collect:

  • IP address
  • Device information
  • Browser type
  • Operating system
  • Usage activity
  • Log files
  • Session data
  • Error reports
  • Analytics data
  • Cookies and tracking technologies

2. How We Use Information

We may use information to:

  • Provide and operate the Services
  • Process and normalize healthcare data
  • Perform provider verification checks
  • Detect workflow or billing issues
  • Improve platform functionality
  • Authenticate users
  • Monitor security and fraud risks
  • Provide customer support
  • Communicate with users
  • Analyze platform performance
  • Comply with legal obligations
  • Enforce agreements and policies

3. AI & Automated Processing

SignalDX uses artificial intelligence, machine learning, OCR, and automated systems to help process and analyze information. These systems may be used for:

  • Data extraction
  • Issue detection
  • Risk scoring
  • Provider verification
  • Workflow automation
  • Data normalization
  • Recommendation generation

AI-generated outputs may require human review and validation.

SignalDX does not use customer healthcare data to train public AI models.

4. HIPAA & Protected Health Information

When applicable, SignalDX may act as a Business Associate under HIPAA.

Customers are responsible for:

  • Determining whether HIPAA applies to their use
  • Obtaining required consents and authorizations
  • Executing a Business Associate Agreement (“BAA”) where appropriate

SignalDX implements administrative, technical, and physical safeguards designed to protect PHI in accordance with applicable law and contractual obligations.

5. Cookies & Tracking Technologies

We may use:

  • Cookies
  • Analytics tools
  • Session identifiers
  • Performance monitoring technologies
  • These technologies help us:

  • Improve usability
  • Understand platform usage
  • Maintain security
  • Analyze performance

Users may adjust browser settings to limit cookies, though some functionality may be affected.

6. Sharing of Information

We do not sell personal information.

We may share information with:

Service Providers

Third-party vendors supporting:

  • Cloud hosting
  • Infrastructure
  • Analytics
  • Communications
  • Security monitoring
  • Payment processing
  • Customer support

Integrations

Systems connected by customers including:

  • LIS platforms
  • EHR systems
  • Billing systems
  • Clearinghouses
  • APIs and interoperability tools

Legal & Compliance

We may disclose information if required to:

  • Comply with law
  • Respond to lawful requests
  • Protect rights or security
  • Investigate fraud or misuse

Business Transactions

Information may be transferred in connection with:

  • Mergers
  • Acquisitions
  • Financing
  • Corporate restructuring

7. Data Retention

We retain information for as long as necessary to:

  • Provide the Services
  • Meet contractual obligations
  • Comply with legal requirements
  • Resolve disputes
  • Enforce agreements

Retention periods may vary based on regulatory, operational, and contractual requirements.

8. Security

SignalDX implements commercially reasonable safeguards designed to protect information, including:

  • Access controls
  • Encryption
  • Audit logging
  • Authentication controls
  • Monitoring systems
  • Security policies and procedures

However, no system can be guaranteed completely secure.

9. International Data Transfers

If applicable, information may be processed or stored in jurisdictions outside your location, including the United States. By using the Services, you consent to such transfers where permitted by law.

10. Your Rights

Depending on applicable law, individuals may have rights to:

  • Access personal information
  • Correct inaccurate information
  • Request deletion
  • Restrict processing
  • Object to certain processing
  • Request data portability

Requests may be subject to legal, contractual, or regulatory limitations.

To submit requests, contact us using the information below.

11. California Privacy Rights

If applicable, California residents may have additional rights under the California Consumer Privacy Act (“CCPA”) and related laws.

SignalDX does not sell personal information.

California users may request information regarding:

  • Categories of collected information
  • Sources of information
  • Business purposes for collection
  • Categories of disclosed information

12. Children’s Privacy

The Services are not intended for children under 13 years of age.

We do not knowingly collect personal information directly from children.

13. Third-Party Services

The Services may contain links or integrations to third-party systems and services.

SignalDX is not responsible for third-party privacy practices or security controls.

Users should review third-party privacy policies independently.

14. Changes to This Privacy Policy

SignalDX may update this Privacy Policy periodically.

Updated versions become effective upon posting to the website.

Continued use of the Services after updates constitutes acceptance of the revised policy.

15. Contact Information

For privacy-related questions or requests:

SignalDX

Website: https://www.signaldx.ai
Email: info@signaldx.ai