Privacy Policy

 

cliexa Privacy Policy

Effective Date: 10/24/2025

cliexa, Inc. (“cliexa”, “we”, “us”, or “our”) is committed to protecting your privacy. This Privacy Policy describes how we collect, use, store, and share Personally Identifiable Information (PII), including Protected Health Information (PHI), in accordance with applicable federal and state privacy laws, including HIPAA and 42 CFR Part 2.

1. Information We Collect

We may collect PII from users, including but not limited to:

  • Full name, contact information (email, phone)

  • Health-related information submitted through our applications

  • Usage metadata, device identifiers, or login credentials for platform access

This information may be collected directly from users, from healthcare providers, or through integration with authorized third-party systems (e.g., EMR or CRM platforms).

2. How We Use Your Information

cliexa uses PII and PHI only as necessary to:

  • Deliver our licensed digital health platform services

  • Support healthcare operations such as documentation, quality audits, and analytics

  • Provide technical support, system improvements, and compliance tracking

  • Fulfill legal obligations, including HIPAA and contractual requirements under Business Associate Agreements

We do not use PII for marketing or commercial resale purposes without user consent.

3. Data Storage and Security

All user data, including PII and PHI, is securely stored using HIPAA-compliant infrastructure (e.g., Microsoft Azure), with safeguards including:

  • End-to-end encryption

  • Access control based on role and minimum necessary use

  • Audit logs and breach detection systems

De-identified and aggregated data may be used internally for system performance or research, in compliance with HIPAA standards.

4. Information Sharing and Disclosure

cliexa does not sell or rent personal data. We may share user data under the following limited conditions:

  • With authorized healthcare providers or payers for treatment or operations

  • With subcontractors or agents who are bound by HIPAA-compliant obligations

  • As required by law, regulation, or legal process (e.g., court orders or audits)

  • For data aggregation services or system administration, as permitted under our Business Associate Agreements

We ensure that any third party receiving PII complies with all relevant confidentiality and security obligations.

5. User Rights

Users have the right to:

  • Request access to their PII or PHI

  • Request amendments or corrections

  • Receive an accounting of disclosures

  • Revoke consent for certain uses, subject to legal and operational constraints

To exercise these rights, contact us at info@cliexa.com.

6. Retention and Destruction

PII is retained only for as long as needed to fulfill the intended service or legal obligations. When no longer required, data is securely deleted or de-identified following HIPAA-compliant procedures.

7. Contact Information

If you have questions about this Privacy Policy or your personal data, please contact:

cliexa, Inc.
200 Quebec St, Suite 600-205
Denver, CO 80230
Email: info@cliexa.com
Phone: +1 (303) 862-7327