Privacy Policy
Our Privacy Policy was last updated on June 15, 2026.
1. Introduction and Scope
This Privacy Policy describes how Single Thread Health, LLC ("Single Thread Health," "Company," "we," "us," or "our") collects, uses, maintains, protects, and discloses Personal Data when you visit our websites, use our digital properties, request information, communicate with us, use our Virtual Health Operating System, engage us for management services organization and professional corporation support, participate in physician and advanced practice provider collaboration workflows, interact with our white-label provider network, or use any current or future telehealth, clinical, consultation, care-coordination, administrative, or patient-facing services that we make available (collectively, the "Services").
For purposes of this Privacy Policy, "Personal Data" means information that identifies, relates to, describes, is reasonably capable of being associated with, or could reasonably be linked with an identified or identifiable person or household. Personal Data may include personal information, sensitive personal information, consumer health data, protected health information, and similar terms under applicable laws.
This Privacy Policy applies to information we collect from or about website visitors, prospective customers, business customers, business contacts, MSO clients, professional corporation clients, medical groups, provider candidates, providers, collaborating physicians, nurse practitioners, physician associates/assistants, other advanced practice providers, vendors, consultants, patients or prospective patients, and individuals who interact with us on behalf of another person or organization. It does not apply to employment-related information about employees, former employees, job applicants, contractors, or similar personnel, unless specifically stated in a separate notice.
If we process Personal Data on behalf of a customer, medical group, professional corporation, or other entity under a written agreement and only according to that entitys instructions, we may act as a service provider, processor, business associate, or similar role. In that case, the privacy notice or instructions of that customer, medical group, or professional corporation may govern the processing of that data. If you have questions about data we process on behalf of one of our customers or affiliated medical practices, we may direct you to that customer or medical practice.
By using the Services, you acknowledge this Privacy Policy. If you do not agree with this Privacy Policy, do not use the Services. This Privacy Policy may be updated from time to time as described in the Changes section below.
2. Our Role
Single Thread Health supports digital health organizations, management services organizations, friendly professional corporation structures, medical practice operations, white-label clinical infrastructure, provider networks, and collaboration relationships between advanced practice providers and collaborating or supervising physicians. Depending on the product, program, customer, state, and workflow, we may provide operational, administrative, technology, staffing, compliance-support, provider-network, practice-management, and care-coordination services.
Single Thread Health is not intended to replace the independent medical judgment of licensed clinicians or professional medical entities. Medical care, clinical decision-making, diagnosis, treatment, prescribing, clinical supervision, and physician-APP collaboration remain the responsibility of licensed professionals and applicable medical practices or professional entities. Nothing in this Privacy Policy changes the allocation of clinical responsibilities under applicable agreements, professional rules, corporate practice of medicine laws, collaborative practice requirements, supervision requirements, or state and federal health care laws.
When we support clinical or telehealth services, we may interact with Medical Groups, licensed providers, pharmacies, laboratories, electronic health record vendors, health information exchanges, payment processors, messaging vendors, and other service providers. Our use and disclosure of health information in those contexts is limited by applicable law, contractual obligations, Notices of Privacy Practices, business associate agreements, data processing agreements, and this Privacy Policy.
3. Protected Health Information, HIPAA, Consumer Health Data, and Notices of Privacy Practices
Some information collected through the Services may be health-related. Some health information may be protected health information ("PHI") under the Health Insurance Portability and Accountability Act of 1996, as amended, and its implementing regulations (collectively, "HIPAA"). Some health information may also be regulated by state consumer health data laws, medical privacy laws, telehealth laws, pharmacy laws, health information exchange laws, professional licensing laws, and other state or federal laws.
Depending on the facts, Single Thread Health may or may not be a HIPAA covered entity. We may, however, act as a business associate or subcontractor business associate to a covered entity, medical group, provider, pharmacy, health plan, or other regulated entity. If we act as a business associate or subcontractor business associate, we will use and disclose PHI only as permitted by HIPAA, the applicable business associate agreement, the relevant Notice of Privacy Practices, and applicable law.
If a Medical Group, provider, pharmacy, or other covered entity has issued a Notice of Privacy Practices, that Notice of Privacy Practices describes how the covered entity may use and disclose PHI and how you may exercise HIPAA rights. If this Privacy Policy conflicts with HIPAA, an applicable business associate agreement, or an applicable Notice of Privacy Practices, we will comply with the requirements that apply to PHI and the applicable regulated entity.
Where permitted by law, we may use and disclose health information, including PHI, for treatment, payment, health care operations, care coordination, provider collaboration, pharmacy fulfillment, laboratory services, referrals, patient support, quality assurance, compliance, audit, security, credentialing, licensing support, professional review, and health information exchange. We do not sell PHI. We do not use or disclose PHI for marketing where HIPAA or other law requires patient authorization unless such authorization has been obtained or an exception applies.
We may create, receive, maintain, use, disclose, and retain de-identified, anonymized, or aggregated information in accordance with applicable law. De-identified information that does not identify and cannot reasonably be used to identify an individual may be used for analytics, quality improvement, product improvement, research support, compliance review, reporting, benchmarking, business planning, and other lawful purposes.
4. Age Restrictions and Children
The Services are intended for adults. Unless a specific service expressly states otherwise and includes appropriate parental, guardian, or legally authorized consent, the Services are not intended for individuals under eighteen (18) years of age or the age of majority in their jurisdiction, if higher. We do not knowingly collect Personal Data from children through the Services. If you believe a child has provided Personal Data to us without appropriate authorization, contact us using the Contact Information section below and we will take appropriate steps as required by law.
5. Personal Data We Collect
The Personal Data we collect depends on your relationship with us, the products or services you use, the state in which you or a patient is located, whether the interaction is business-to-business, provider-facing, MSO/PC-facing, or patient-facing, and whether we are acting as a controller, business, service provider, processor, covered entity, business associate, or other role.
Identifiers and contact information: Name, alias, email address, mailing address, phone number, mobile phone number, account identifier, username, unique identifiers, IP address, and similar identifiers.
Account and authentication information: Login credentials, profile information, account preferences, portal activity, security questions, authentication factors, device associations, and account status.
Business contact information: Company name, title, role, department, work email, work phone, business address, relationship to Single Thread Health, communication preferences, contract history, sales pipeline information, demo requests, and business correspondence.
MSO/PC and operational information: Information relating to MSO formation, professional corporation support, management services, back-office operations, administrative workflows, practice-management data, contracting, implementation, billing support, compliance support, credentialing support, and customer configuration.
Provider and collaboration information: Professional license information, NPI, DEA or controlled-substance registration status where applicable, board certifications, specialties, practice history, CV, malpractice history, sanctions/exclusions screening, collaboration relationships, supervision arrangements, APP/physician collaboration records, practice state eligibility, continuing medical education data, documentation, audit logs, and similar professional information.
Health, intake, consultation, and care information: Medical history, symptoms, diagnoses, medications, allergies, conditions, treatment goals, photos or images submitted for care evaluation, lab results, vitals, clinical notes, visit records, prescription information, pharmacy information, care plans, follow-up information, and other information you submit or that a provider creates or shares in connection with clinical services.
Hair-loss or dermatology-related information: If we launch or support direct patient telehealth services for hair loss or related services, information may include hair-loss history, scalp or hair images, medication history, contraindications, allergies, treatment preferences, medication or device selections, shipping information, and clinician determinations.
Payment and transaction information: Billing address, payment status, transaction history, subscription status, order information, refund data, tax information, and payment processor tokens. Payment card numbers are generally processed by third-party payment processors and are not stored by us in full.
Communications and support information: Emails, text messages, phone calls, chat messages, portal messages, support tickets, call recordings or transcripts where legally permitted and disclosed, feedback, survey responses, preferences, consent records, and opt-out records.
SMS and mobile messaging information: Mobile telephone number, SMS opt-in status, SMS consent record, date/time of opt-in, opt-in source, campaign identifier, message delivery records, HELP/STOP/START responses, and related compliance logs.
Internet, device, and usage information: IP address, browser type, device type, device identifiers, operating system, pages viewed, links clicked, referring URL, time stamps, session activity, log data, diagnostics, cookies, pixel data, and related analytics.
Geolocation information: Approximate location inferred from IP address and, where enabled by device settings and legally permitted, more precise location information. Precise location information is collected only where needed and permitted.
Audio, electronic, visual, or similar information: Call recordings, voicemail, telehealth session metadata, images submitted through forms or portals, profile photos, screenshots, and other electronic communications where applicable.
Sensitive personal information: Health information, medical information, government identifiers, account login credentials, precise geolocation, racial or ethnic origin if collected for health, legal, reporting, or equity purposes, and other data that applicable law classifies as sensitive.
Inferences and analytics: Preferences, service interests, likely customer needs, workflow configuration, risk or compliance indicators, and other inferences generated from information described in this Privacy Policy.
De-identified, anonymized, or aggregated information: Information that has been de-identified, anonymized, or aggregated in accordance with applicable law and is not intended to identify an individual.
6. How We Collect Personal Data
Directly from you. We collect information you provide when you request a demo, contact us, create an account, complete an intake, submit forms, send messages, upload documents or images, participate in a consultation, provide provider credentials, sign agreements, opt into communications, or otherwise use the Services.
From customers, Medical Groups, providers, and care partners. We may receive information from MSO clients, professional corporations, Medical Groups, providers, collaborating physicians, advanced practice providers, pharmacies, labs, EHR vendors, health information exchanges, care coordination vendors, and other care or operations partners.
From service providers and vendors. We may receive information from vendors that support hosting, security, analytics, messaging, CRM, payment processing, customer support, identity verification, credentialing, sanctions screening, licensing, document management, EHR, pharmacy, lab, telehealth, and related functions.
Automatically through the Services. We may collect device, usage, log, cookie, pixel, and similar information when you use websites, portals, apps, forms, emails, or other digital properties.
From public and commercially available sources. For business contacts and provider verification, we may collect information from professional licensing boards, NPI databases, exclusion lists, sanction lists, corporate registries, websites, public profiles, and other public or legally available sources.
With your authorization or consent. We may collect information when you authorize us or another party to share it with us, including for care coordination, health information exchange, telehealth support, provider collaboration, or SMS communications.
7. How We Use Personal Data
We use Personal Data for the purposes described below. We may also use Personal Data for additional purposes disclosed at the time of collection or with your consent.
To provide, operate, maintain, configure, improve, and secure the Services.
To respond to inquiries, schedule demos, provide customer support, manage accounts, onboard customers, and communicate with business contacts.
To support MSO/PC formation, MSO-friendly professional corporation structures, management services, back-office operations, administrative operations, staffing workflows, licensing support, credentialing support, contract administration, compliance workflows, and practice-management support.
To support provider collaboration relationships, including APP and collaborating physician matching, onboarding, supervision or collaboration workflow support, state-specific documentation, provider rosters, licensing and sanctions checks, compliance tracking, and audit records.
To support clinical, telehealth, consultation, hair-loss, dermatology, care coordination, prescription, pharmacy, lab, and related workflows where applicable.
To route information to Medical Groups, licensed providers, pharmacies, labs, EHRs, health information exchanges, and other care partners where permitted and appropriate.
To process payments, subscriptions, orders, invoices, refunds, taxes, and related transactions.
To communicate with you by email, phone, portal message, SMS, push notification, mail, or other channels about the Services, account activity, appointments, consultations, intake status, prescription status, order status, support, security, compliance, changes to our policies, and other service-related matters.
To send marketing communications about Single Thread Health products and services, subject to applicable law and your communication preferences. Marketing text messages require separate consent where required and are not a condition of purchase.
To personalize and improve website content, user experience, product development, analytics, service performance, quality assurance, training, benchmarking, and reporting.
To prevent, detect, investigate, and respond to fraud, security incidents, unauthorized access, harmful activity, policy violations, and misuse of the Services.
To comply with legal obligations, contractual obligations, regulatory requirements, licensing and credentialing requirements, professional standards, subpoenas, court orders, law enforcement requests, audits, tax rules, corporate requirements, and health care compliance obligations.
To enforce our agreements, protect our rights, defend legal claims, protect the safety of individuals, and manage disputes.
To create, use, disclose, and retain de-identified, anonymized, or aggregated information as permitted by law.
8. SMS, Text Messages, Mobile Information, and 10DLC No-Sharing Notice
Mobile opt-in data and consent - no sharing
No mobile opt-in data or consent will be shared with third parties or affiliates. Mobile opt-in data includes your mobile telephone number, SMS opt-in status, SMS consent records, and related messaging consent information.
No mobile information will be shared with partners, affiliates, third parties, or vendors for marketing or promotional purposes. SMS opt-in consent is not transferable to third parties.
If you provide your mobile phone number and opt in to receive text messages from Single Thread Health, you consent to receive SMS or MMS messages from or on behalf of Single Thread Health at the mobile number you provided. Message frequency varies. Message and data rates may apply. Consent to receive marketing text messages is not a condition of purchasing any goods or services. You may opt out at any time by replying STOP to any text message. You may request help by contacting us at hello@singlethreadhealth.com or (888) 811-9064.
We may send transactional, informational, administrative, account, support, security, appointment, intake-status, consultation, care-coordination, prescription-status, order-status, and service-related text messages. If we send promotional or marketing text messages, we will do so only as permitted by law and, where required, after obtaining separate express written consent. Even if you opt out of promotional text messages, we may still send non-promotional service, account, security, legal, or care-related messages where permitted by law and where the communication channel is appropriate.
We may use telecommunications carriers, messaging platforms, SMS aggregators, CRM tools, customer support tools, and similar service providers to send, route, support, and manage SMS messages on our behalf. Those service providers may process mobile information solely to provide services to us, comply with law, maintain security, prevent fraud or abuse, support delivery and opt-out compliance, or support permitted treatment, payment, health care operations, care coordination, health information exchange, and related healthcare or service operations. They are not authorized to use mobile opt-in data, mobile numbers, or SMS consent for their own marketing or promotional purposes, and they are not authorized to sell, rent, or share that information for third-party marketing.
To the extent mobile phone numbers or contact information are part of PHI, a medical record, a patient-care workflow, a pharmacy workflow, a lab workflow, a provider collaboration record, or a health information exchange workflow, we may use or disclose such information only as permitted by HIPAA, applicable state law, applicable Notices of Privacy Practices, business associate agreements, or your authorization. This may include treatment, payment, health care operations, care coordination, appointment reminders, prescription fulfillment, pharmacy communications, lab coordination, referrals, quality review, safety, security, compliance, or health information exchange. This paragraph does not authorize sharing mobile opt-in consent for third-party marketing.
SMS opt-out requests may not stop all non-SMS communications, such as emails, portal messages, telephone calls, postal mail, or communications required by law or permitted for care, security, account, or administrative reasons. If you change or deactivate your mobile number, you agree to notify us so that we can update our records.
9. How We Disclose Personal Data
We may disclose Personal Data to the categories of recipients described below. We disclose only the information that is reasonably necessary for the relevant purpose, subject to applicable law, contracts, and, where applicable, HIPAA, state health privacy laws, and Notices of Privacy Practices.
Medical Groups, providers, APPs, collaborating physicians, and care partners. We may disclose information to Medical Groups, physicians, nurse practitioners, physician associates/assistants, pharmacists, labs, EHR vendors, health information exchanges, care coordinators, and other care partners to support evaluation, consultation, treatment, prescribing, fulfillment, collaboration, supervision, care coordination, quality review, and related health care operations.
MSO, professional corporation, and business customers. Where we provide services to or on behalf of business customers, professional corporations, Medical Groups, or MSOs, we may disclose information to those entities and their authorized personnel as needed to provide the Services, administer accounts, perform agreements, support workflows, maintain records, and comply with law.
Service providers, contractors, vendors, and processors. We may disclose information to service providers that perform services on our behalf, such as hosting, cloud infrastructure, cybersecurity, EHR, telehealth tools, messaging, SMS delivery, email delivery, customer support, CRM, analytics, payment processing, accounting, document management, identity verification, credentialing, licensing, sanctions screening, pharmacy support, lab support, logistics, fulfillment, and similar operational services. They may use Personal Data only as permitted by contract and law.
Professional advisors. We may disclose information to attorneys, accountants, auditors, compliance consultants, financial advisors, insurers, and other professional advisors where reasonably necessary.
Legal, regulatory, safety, and compliance recipients. We may disclose information to government authorities, courts, regulators, law enforcement, licensing boards, accrediting bodies, payers, auditors, or other parties when we believe disclosure is required or permitted by law, subpoena, court order, legal process, professional rules, reporting obligations, or safety and security needs.
Corporate transaction parties. We may disclose information in connection with a merger, acquisition, financing, reorganization, bankruptcy, sale of assets, transfer of business, diligence process, or similar transaction, subject to appropriate confidentiality and legal safeguards.
With your consent or direction. We may disclose information when you authorize, direct, or consent to the disclosure, including through a consent form, account setting, intake process, patient authorization, or other affirmative action.
De-identified, anonymized, or aggregated information. We may disclose information that has been de-identified, anonymized, or aggregated in accordance with applicable law and does not identify you.
We do not sell Personal Data for money. We do not sell PHI. We do not sell or share SMS opt-in data or SMS consent. We do not disclose mobile opt-in data, mobile phone numbers collected for SMS purposes, or SMS consent to third parties or affiliates for marketing or promotional purposes. Where certain website analytics, advertising cookies, pixels, or similar technologies may be considered a "sale," "sharing," or use for targeted advertising under certain state privacy laws, those practices do not include PHI, patient intake data, SMS opt-in data, SMS consent, or mobile numbers collected for SMS purposes.
10. Cookies, Analytics, Advertising, and Similar Technologies
Our public websites and digital properties may use cookies, pixels, tags, beacons, scripts, SDKs, log files, and similar technologies to operate the Services, remember preferences, analyze usage, improve performance, secure the Services, measure communications, and, where permitted, support marketing or advertising. These technologies may collect device and usage information, including IP address, browser type, device identifiers, pages viewed, referring URL, links clicked, time stamps, and approximate location.
We may use analytics or advertising tools on public marketing pages. We do not intentionally use advertising pixels or third-party targeted advertising technologies in a manner that discloses PHI, patient intake data, sensitive clinical information, or SMS opt-in data to advertising platforms. If a particular workflow collects PHI or sensitive health information, we will use tracking technologies in that workflow only as permitted by applicable law, contracts, business associate agreements, and health privacy requirements.
You can control cookies through your browser settings. You may also have choices through industry opt-out tools or platform settings. Some state laws provide rights to opt out of targeted advertising, sale, or sharing, including through recognized browser-based opt-out preference signals where legally required. Because browser "Do Not Track" signals are not standardized, we may not respond to them unless required by law.
11. Email, Phone, Mail, and Other Communications Preferences
You may opt out of promotional emails by using the unsubscribe link in the email or contacting us. You may opt out of SMS messages by replying STOP. You may request help for SMS messages by replying HELP. You may also contact us to update your communication preferences. Opting out of marketing communications does not prevent us from sending non-marketing communications, such as service messages, account notices, security alerts, legal notices, policy updates, care-related communications, appointment reminders, or other communications permitted by law.
12. Data Retention
We retain Personal Data for as long as reasonably necessary to provide the Services, maintain accounts, support customers, maintain business records, comply with legal and clinical obligations, maintain required medical records or provider records, resolve disputes, enforce agreements, preserve audit logs, prevent fraud and security incidents, and satisfy reporting, tax, accounting, regulatory, licensing, credentialing, and compliance obligations. Retention periods vary by data type, relationship, jurisdiction, contract, and legal requirement. When Personal Data is no longer needed, we will delete, de-identify, anonymize, or aggregate it in accordance with applicable law and operational requirements.
13. Data Security
We use administrative, technical, and physical safeguards designed to protect Personal Data against unauthorized access, acquisition, disclosure, alteration, destruction, and misuse. Safeguards may include access controls, authentication, encryption, logging, monitoring, vendor review, contractual confidentiality obligations, training, security policies, incident response processes, and other measures appropriate to the nature of the information and the risk. Where we handle PHI as a business associate, we maintain safeguards designed to protect the confidentiality, integrity, and availability of PHI as required by HIPAA and applicable agreements.
No website, platform, application, transmission method, or electronic storage system is completely secure. We cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials, using secure networks and devices, logging out of shared devices, and notifying us promptly if you suspect unauthorized access to your account.
14. Your Privacy Choices and Rights
Depending on your location, your relationship with us, the type of information involved, and applicable law, you may have rights to request access, confirmation, correction, deletion, portability, restriction, objection, withdrawal of consent, appeal, opt-out of targeted advertising, opt-out of sale or sharing, limit the use or disclosure of sensitive personal information, or exercise other privacy rights. HIPAA rights for PHI are described in the applicable Notice of Privacy Practices.
To submit a privacy request, contact us at hello@singlethreadhealth.com. We may need to verify your identity and authority before responding. We may deny or limit requests where permitted or required by law, including where we need to retain information for legal, clinical, safety, security, compliance, recordkeeping, contractual, or internal business purposes. We will not discriminate against you for exercising privacy rights where prohibited by law.
15. U.S. State Privacy Notice
This section supplements the rest of this Privacy Policy for residents of states with comprehensive privacy laws, including California, Colorado, Connecticut, Delaware, Iowa, Indiana, Kentucky, Maryland, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Rhode Island, Tennessee, Texas, Utah, Virginia, and other states where similar laws apply. The specific rights and obligations vary by state and may be subject to exceptions.
Categories collected: We may collect the categories of Personal Data listed in Section 5, including identifiers, contact information, business contact data, health data, payment data, internet or network activity, geolocation data, professional information, communications, sensitive personal information, and inferences.
Sources: We collect information from you, customers, Medical Groups, providers, care partners, vendors, public sources, automatically through technology, and with your consent or direction.
Purposes: We use information for the purposes listed in Section 7, including providing Services, MSO/PC operations, provider collaboration, telehealth support, care coordination, payments, communications, security, compliance, and improvements.
Disclosures: We disclose information to the categories of recipients in Section 9, including Medical Groups, providers, care partners, business customers, service providers, advisors, legal recipients, corporate transaction parties, and parties you authorize.
Sale or sharing: We do not sell Personal Data for money. We do not sell PHI. We do not sell or share SMS opt-in data or SMS consent. Some public-website advertising or analytics technologies may be considered sale, sharing, or targeted advertising under certain state laws, but those practices do not include PHI, patient intake data, SMS opt-in data, SMS consent, or mobile numbers collected for SMS purposes.
Sensitive information: We use sensitive personal information only for permitted purposes, such as providing Services, supporting care, security, compliance, legal obligations, or other purposes authorized by law or by you.
Your rights: Depending on your state, you may have rights to access, correct, delete, port, opt out, limit sensitive data processing, withdraw consent, or appeal a decision.
Appeals: If we deny a request and your state provides appeal rights, you may appeal by replying to our denial notice or contacting us at the email address in this Privacy Policy with "Privacy Appeal" in the subject line.
California Notice at Collection and Privacy Rights
For California residents, the California Consumer Privacy Act, as amended by the California Privacy Rights Act ("CCPA"), requires specific disclosures. We collect the categories of personal information described in Section 5. We collect these categories from the sources described in Section 6, use them for the purposes described in Section 7, and disclose them as described in Section 9. We retain personal information as described in Section 12.
California residents may have the right to know/access, correct, delete, opt out of sale or sharing, limit the use and disclosure of sensitive personal information, obtain portability, and not be retaliated against for exercising rights. We do not knowingly sell or share personal information of consumers under 16. We do not use sensitive personal information for purposes that require a right to limit unless we provide the required notice and choice. We do not provide financial incentives unless disclosed in a separate notice.
To exercise California rights, contact us at hello@singlethreadhealth.com. Authorized agents may submit requests if they provide proof of authorization and we can verify the request as required by law.
16. Washington, Nevada, and Other Consumer Health Data Notices
Some states, including Washington and Nevada, regulate consumer health data that may not be PHI under HIPAA. Depending on the Services you use, consumer health data may include health conditions, treatment history, symptoms, diagnoses, medications, allergies, lab results, images, physical characteristics, reproductive or sexual health information if collected, biometric data if used for identification, health-related inferences, care coordination data, and information relating to healthcare services sought or received.
We collect, use, and disclose consumer health data to provide and improve the Services, support telehealth and care coordination, support provider collaboration, support MSO/PC operations, facilitate prescription, pharmacy, lab, and health information exchange workflows, comply with law, secure the Services, and otherwise as described in this Privacy Policy. We do not sell consumer health data without consent or written authorization where required. We do not use geofencing around healthcare facilities for prohibited purposes. We do not disclose consumer health data for third-party marketing without consent where consent is required.
Depending on your state, you may have rights to confirm whether we collect, share, or sell consumer health data; access consumer health data; obtain a list of third parties or affiliates with whom we have shared or sold consumer health data; withdraw consent; delete consumer health data subject to exceptions; or appeal a denial. Contact us using the information below to exercise rights.
17. Third-Party Websites, Platforms, and Services
The Services may contain links to or integrations with third-party websites, platforms, applications, services, pharmacies, laboratories, payment processors, EHR vendors, telehealth tools, health information exchanges, or other resources. We are not responsible for the privacy practices of third parties that are not acting on our behalf. Review the privacy policies and terms of those third parties before providing information to them. This Privacy Policy does not apply to third-party websites or services unless we state otherwise or the third party is acting on our behalf under an applicable agreement.
18. International Users
The Services are intended primarily for use in the United States. If you access the Services from outside the United States, you understand that your information may be processed in the United States or other jurisdictions where privacy laws may differ from those in your location. We will handle Personal Data in accordance with this Privacy Policy and applicable law.
19. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. When we make changes, we will revise the Last Updated or Effective Date above. If changes are material, we may provide additional notice, such as through the Services, by email, or as otherwise required by law. Your continued use of the Services after an updated Privacy Policy is posted means that you acknowledge the updated Privacy Policy to the extent permitted by law.
20. Contact Information
If you have questions, concerns, complaints, requests, or suggestions regarding this Privacy Policy, you may contact us at:
Single Thread Health, LLC
8605 Santa Monica Blvd., Suite 68379, West Hollywood, CA 90069
Email: hello@singlethreadhealth.com
Phone: (888) 811-9064