Privacy Policy

Effective Date: February 21, 2026

1. Introduction

Mindful Missions Health and Wellness ("we," "our," or "us") is committed to protecting your privacy and the confidentiality of your personal and medical information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform, including telehealth services, medication literacy resources, and medical equipment marketplace.

We are committed to compliance with the Health Insurance Portability and Accountability Act (HIPAA) and other applicable privacy laws. This policy describes our practices regarding Protected Health Information (PHI) and personal information.

2. HIPAA Compliance

HIPAA-Compliant Services

Mindful Missions operates as a HIPAA-compliant platform. We maintain administrative, physical, and technical safeguards to protect your Protected Health Information (PHI) in accordance with HIPAA regulations.

  • We maintain Business Associate Agreements (BAAs) with all third-party service providers who handle PHI
  • All data transmission is encrypted using industry-standard protocols (HTTPS/TLS)
  • Data is stored securely with encryption at rest
  • Access to PHI is restricted to authorized personnel only
  • We maintain audit logs of all access to PHI
  • We provide you with rights to access, amend, and request copies of your health information

3. Information We Collect

3.1 Personal Information

We collect the following personal information:

  • Name, email address, phone number
  • Date of birth and age verification
  • Address and location information
  • Account credentials and authentication information

3.2 Protected Health Information (PHI)

We collect the following health information:

  • Medical history, conditions, and diagnoses
  • Medications and prescriptions
  • Vital signs and health measurements
  • Appointment records and telehealth consultation notes
  • Health goals and wellness information
  • Allergies and medical alerts

3.3 Usage Information

We automatically collect:

  • Device information and IP address
  • Browser type and version
  • Pages visited and features used
  • Time and date of access

4. How We Use Your Information

We use your information for the following purposes:

  • Providing Services: To deliver telehealth consultations, medication management, and marketplace services
  • Treatment: To enable healthcare providers to provide medical care and treatment
  • Payment: To process payments, subscriptions, and marketplace transactions
  • Healthcare Operations: To improve our services, conduct quality assurance, and manage our platform
  • Communication: To send appointment reminders, medication reminders, and important updates
  • Legal Compliance: To comply with applicable laws, regulations, and legal processes
  • Safety: To protect the safety and security of our users and platform

5. Information Sharing and Disclosure

We do not sell your personal information or PHI. We may share your information in the following circumstances:

  • With Your Authorization: We share information with healthcare providers and other parties only with your explicit written authorization
  • Healthcare Providers: Information is shared with your designated healthcare providers for treatment purposes
  • Business Associates: We share information with third-party service providers who have signed Business Associate Agreements and are bound by HIPAA
  • Legal Requirements: We may disclose information when required by law, court order, or regulatory authority
  • Emergency Situations: We may disclose information to prevent serious harm to you or others
  • With Your Consent: We may share information with other parties when you explicitly consent

6. Your Rights Under HIPAA

You have the following rights regarding your Protected Health Information:

  • Right to Access: You have the right to access and obtain a copy of your health information
  • Right to Amend: You may request corrections or amendments to your health information
  • Right to an Accounting: You may request a list of disclosures of your PHI
  • Right to Request Restrictions: You may request restrictions on how we use or disclose your information
  • Right to Confidential Communications: You may request that we communicate with you in a specific way or at a specific location
  • Right to Revoke Authorization: You may revoke any authorization you have given us at any time
  • Right to File a Complaint: You have the right to file a complaint if you believe your privacy rights have been violated

To exercise these rights, please contact our Privacy Officer using the contact information provided below.

7. Data Security

We implement comprehensive security measures to protect your information:

  • Encryption: All data is encrypted in transit (HTTPS/TLS) and at rest
  • Access Controls: Access to PHI is restricted to authorized personnel with unique user credentials
  • Audit Logging: We maintain detailed logs of all access to and modifications of PHI
  • Secure Storage: Data is stored in secure, HIPAA-compliant data centers
  • Regular Security Assessments: We conduct regular security audits and assessments
  • Employee Training: All staff are trained on HIPAA compliance and data security
  • Incident Response: We have procedures in place to respond to security incidents

8. Data Retention

We retain your health information in accordance with applicable laws and regulations. Generally, we retain medical records for a minimum of 6 years from the date of last service, or as required by state law. You may request deletion of your information, subject to legal retention requirements.

9. Children's Privacy

Our services are intended for users who are 18 years of age or older. We do not knowingly collect information from individuals under 18 years of age. If you are a parent or guardian and believe your child has provided us with information, please contact us immediately.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the effective date. We encourage you to review this policy periodically.

11. Contact Information

If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact:

Privacy Officer: Melanie McGraw

Mindful Missions Health and Wellness

801 W Big Beaver Rd

Suite 300 #1064

Troy, MI 48084

Phone: 248-688-6021

Email: Mindfulmissions19@gmail.com

12. Filing a Complaint

If you believe your privacy rights have been violated, you may file a complaint with:

  • Mindful Missions: Contact our Privacy Officer using the information above
  • U.S. Department of Health and Human Services: Office for Civil Rights (OCR)
  • Visit www.hhs.gov/hipaa/filing-a-complaint for more information

You will not be retaliated against for filing a complaint.