Skip to main content

Drive Health Privacy Policy

Effective Date: October 19, 2025

Address: 275 E Rivulon Blvd Ste 300, Gilbert, AZ 85297

Contact: Date: support@drivehealth.ai

1. Introduction

Drive Health (“we,” “us,” or “the Company”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and protect the personal information of all users, including patients, providers, and website visitors.

By using our services or submitting personal information, you acknowledge that you have read and agree to the terms of this Privacy Policy.

2. Who We Are

Drive Health makes healthcare simple and accessible—anytime, anywhere, for everyone. Our mission is to ease the burden on healthcare providers, build trust with consumers, and simplify healthcare through secure, AI-enabled solutions. We provide AI-powered healthcare engagement tools that connect patients and providers, enabling secure communication, personalized health monitoring, and improved care coordination through the Drive Health Platform (the “Platform”) and related services (the “Services”).

3. Scope of This Policy

This Privacy Policy applies to:

  • Users of the Drive Health Platform (patients and providers)
  • Visitors to our websites and web applications
  • Personal data collected directly from you, through devices, or via third-party integrations

It also addresses applicable privacy laws, including HIPAA, Arizona state law, the California Consumer Privacy Act (CCPA/CPRA), and other U.S. state privacy laws.

4. Information We Collect

4.1 Demographic Data

We may collect:

  • Name, date of birth, gender, contact information, and address
  • For providers: National Provider Identifier (NPI)

4.2 Payment Data

If you make payments through the Platform, we may collect:

  • Billing name, address, credit card or bank account information

4.3 Health Data (Patient Users)

We may collect:

  • Medical history, symptoms, physiologic data from supported devices
  • Protected Health Information (PHI) and medical records as defined by law
  • Communications with your healthcare provider via the Platform

4.4 Device, IP, and Usage Data

We may automatically collect:

  • IP address, device and browser type, location, operating system
  • Platform usage data, pages viewed, and interactions
  • Analytics and tracking information (e.g., Google Analytics, Mixpanel)

4.5 Support and Communication Data

When you contact support or file complaints, we may collect:

  • Email, phone number, and support-related technical data
  • Call recordings for quality assurance

5. How We Use Your Information

We use personal data to:

  • Provide and improve our Services
  • Manage your account
  • Process payments
  • Communicate updates, alerts, and support
  • Comply with legal obligations
  • Protect users and the Company
  • Support healthcare providers in delivering care to patients

7. How We Share Your Information

We may share your information with:

  • Authorized providers you connect with via the Platform (patient data)
  • Service providers and business partners who help us operate the Platform
  • Legal authorities when required by law
  • Third-party advisors (auditors, accountants, lawyers)
  • In the event of corporate transactions (merger, sale, or acquisition)

All third parties are contractually bound to protect your personal data.

8. Data Retention

  • Personal data is retained while your account is active and up to six (6) years after account closure, depending on type and legal requirements.
  • Data is deleted or anonymized once retention periods expire.
  • Backups may retain limited information for system recovery.

9. Cookies, Tracking, and Analytics

  • We use cookies, web beacons, and tracking technologies to improve user experience, monitor performance, and analyze usage.
  • Essential cookies are required for platform functionality.
  • Analytics tools may collect usage data to improve Services.
  • You may disable cookies in your browser, but some Services may be limited.

10. Security Measures

  • We employ physical, technical, and administrative safeguards, including encryption, access controls, and regular audits.
  • Despite these measures, no system can guarantee complete security of information transmitted over the Internet.
  • You are responsible for securing your devices and account credentials.

11. Your Rights

Depending on your location, you may have the right to:

  • Access, correct, or delete personal data
  • Restrict or object to processing
  • Receive data in a portable format
  • Withdraw consent at any time
  • Lodge a complaint with a supervisory authority

Requests may be submitted to support@drivehealth.ai.

12. Children’s Privacy

  • Our Services are not intended for children under 18.
  • We do not knowingly collect personal data from children under 18.
  • If we learn we have collected such data, we will delete it promptly.

13. Breach Notification

  • In the event of a data breach, we will promptly investigate and notify affected users in accordance with applicable law and HIPAA requirements.

14. Updates to This Policy

  • We review this Privacy Policy annually or as needed.
  • Updates will be posted on our website, and, when appropriate, communicated directly.

15. California Residents’ Rights

  • California residents may request disclosure of third parties with whom we shared personal data for marketing purposes and the categories of shared data.
  • Requests should be sent to support@drivehealth.ai with the subject line: “California Privacy Rights.”

16. Contact Us

If you have questions about this Privacy Policy:

Please do not include sensitive information in emails, as email is not always secure.