Last Updated: January 1, 2023
This Privacy Notice applies to the ImageVision.net, LLC dba HealthPay24 (“HEALTHPAY24” or “we” or “us”) websites located at HealthPay24.com and HealthPay24.cloud (and any affiliated sub-domains including those exclusively accessible by a specific Client (“Sub-Domains”) and sites, collectively “Website”) and the services offered on the Website (collectively, the “Services”). This Privacy Notice describes how HEALTHPAY24 collects and uses the personal data you provide on the Website. The use of information collected through our Services shall be limited to the purpose of providing the Services for which you have engaged HEALTHPAY24. This Privacy Notice also describes the choices available to you regarding our use of your personal data and how you can access and update this information. This Privacy Notice does not pertain to protected health information (“PHI”) entered by our clients (“Clients”) and registered users (“Users”). This Privacy Notice is not a contract and does not create any legal rights or obligations.
What is Personal Data?
When we use the term “personal data” in this Privacy Notice, we mean information that identifies, relates to, describes, is reasonably capable of being associated with, or could reasonably be linked, directly or indirectly, to a person. It does not include aggregated or de-identified information that is maintained in a form that is not reasonably capable of being associated with or linked to a person.
1. Client Data
Data protection laws sometimes differentiate between “controllers” and “processors” of personal data. A “controller” determines the purposes and means (or the why and the how) of processing personal data. A “processor,” which is sometimes referred to as a “service provider” or “business associate” (under the Health Insurance Portability and Accountability Act (“HIPAA”)) processes personal data on behalf of a controller subject to contractual restrictions.
As part of our business relationship with our Clients, we are often asked to receive, gather, store, analyze, or otherwise process information, which may include personal data, on behalf of our Clients. We refer to this type of information and personal data as “Client Data.” When we process Client Data, we generally act as a processor or a business associate. This means we process Client Data on behalf of our Clients subject to restrictions set forth in our contracts with them, including HIPAA business associate agreements.
This Privacy Notice does not cover or address how we or our Clients process Client Data in connection with our role as our Client’s processor or business associate. Instead, this Privacy Notice only covers our processing of personal data in our capacity as a controller. Because HEALTHPAY24 generally has no direct relationship with the individuals or Users whose personal data we process on behalf of Clients, we are generally not permitted to respond to individual requests relating to Client Data. As a result, we recommend referring to the privacy notice or Notice of Privacy Practices of the Client with which you have a relationship for
information on how they engage processors or business associates, like us, to process Client Data on their behalf.
We will generally retain the personal data we process on behalf of our Clients for as long as needed to provide services to our Clients, subject to limitations and exceptions such as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.
2. Information Collection and Use
We may collect the following information from you:
- Contact Information such as name, email address, mailing address, phone number
- Financial Information such as credit card number, and Tax ID
- Unique Identifiers such as user name and password
We may also collect the following information from you:
- Information about your business/practice such as company name and license number
We may use this information to:
- Fulfill your order
- Send you an order confirmation
- Send you requested product or service information
- Send product updates
- Respond to customer service requests
- Administer your account
- Send you a newsletter and marketing communications
- Respond to your questions and concerns
- Improve our Website and marketing efforts
We do not ask you for, access, or track any location-based information from your mobile device at any time while using our Sub-Domains or services. We do identify and track your location when actively collecting payments in a point-of-sale or back-office scenario for auditing and PCI compliance purposes.
We also may use personal data:
- To help maintain the safety, security, and integrity of the Services, technology assets, and business
- For our internal business purposes, such as data analysis, customer research, audits, fraud prevention, developing new products and/or features, evaluating, enhancing the Services, improving the Services and identifying usage trends, and determining the effectiveness of our promotional campaigns, including to inform our machine learning for purposes such as user engagement
- To respond to law enforcement requests and as required by applicable law, court order, or governmental regulations and enforce our corporate reporting obligations and the applicable Terms of Use, or to comply with applicable laws
- For purposes disclosed at the time you provide your personal data or as otherwise set forth in this Privacy Notice
Social Networks
When you interact with the Services through various social media networks, such as when you “Like” us on Facebook or when you follow us or share our content on Facebook, LinkedIn or other social networks, we may receive some information about you that you permit the social network to share with third parties. The data we receive is dependent upon your privacy settings with the social network. You should always review and, if necessary, adjust your privacy settings on third party websites and social media networks and services before linking or connecting them to the Services.
3. How We Disclose Personal Data
We may disclose your personal data in the following ways. Patients’ information may be shared with the healthcare provider who is our Client (i.e., Client Data).
Affiliates
We may disclose your personal data between and among our affiliates, including EngageSmart, and our current and future parents, affiliates, and other companies under common control or ownership.
Client
As mentioned above, we share Client Data with our Clients, which may include your personal data.
Service Providers
We may provide your personal data to companies that provide services to help us with our business activities such as an email service provider to send emails on our behalf or for payment processing.
Legal Disclaimer
We may also disclose your personal data:
- as required by law, such as to comply with a subpoena or similar legal process
- when we believe in good faith that disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or respond to a government request
- if HEALTHPAY24 is involved in a bankruptcy, merger, acquisition, reorganization, or sale of all or a portion of its assets, HEALTHPAY24 may sell or transfer user information (including personal data) as part of any such transaction; or
- to any other third party with your prior consent to do so.
If you are a resident of the State of Nevada in the United States, Chapter 603A of the Nevada Revised Statutes permits a Nevada resident to opt out of potential future sales of certain covered information that a website operator has collected or will collect about the resident. To submit such a request, please contact us at security@HEALTHPAY24.com.
4. User Access and Choice
Modifying and Deleting Your Information
If your personal data changes, or if you no longer desire our Services, subject to certain limitations or exceptions, you may correct, update, amend, or delete/remove it by logging into your HEALTHPAY24 account and making the changes in your account settings or by contacting HEALTHPAY24 customer support. We will retain your information for as long as your account is active or as needed to provide you Services. We will retain and use your information as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.
Email Communications Opt-out Preferences
Receiving emails from our site is part of our Services. When you sign up for a HEALTHPAY24 account and/or use our Services, we will use your name, email address and/or your mobile number to communicate with you about your account, including account information, account alerts, and product education. Please note that you may not opt-out of these service-related communications.
We may also use your name and email address to send you marketing emails, including newsletters and promotions from HEALTHPAY24 and/or from our partners. If you no longer wish to receive these marketing emails, you may opt out of them by using the unsubscribe link contained in the email.
Your Choices About Online Ads
We support the self-regulatory principles for online behavioral advertising (Principles) published by the Digital Advertising Alliance (DAA) and, for our Canadian sites, the Digital Advertising Alliance of Canada (DAAC). This means that we allow you to exercise choice regarding the collection of information about your online activities over time and across third-party websites for online interest-based advertising purposes. More information about these Principles can be found at www.aboutads.info and/or www.youradchoices.ca. If you want to opt out of receiving online interest-based advertisements on your internet browser from advertisers and third parties that participate in the DAA/DAAC program and perform advertising-related services for us and our partners, please follow the instructions at www.aboutads.info/choices, www.youradchoices.ca (Canada), or http://www.networkadvertising.org/choices/ to place an opt-out cookie on your device indicating that you do not want to receive interest-based advertisements. Opt-out cookies only work on the internet browser and device they are downloaded onto. If you want to opt out of interest-based advertisements across all your
browsers and devices, you will need to opt out on each browser on each device you actively use. If you delete cookies on your device generally, you will need to opt out again. If you want to opt out of receiving online interest-based advertisements on mobile apps, please follow the instructions at http://www.aboutads.info/appchoices or www.youradchoices.ca (Canada).
We may also utilize certain forms of display advertising and other advanced features through Google Analytics, such as Remarketing with Google Analytics, Google Display Network Impression Reporting, the DoubleClick Campaign Manager Integration, and Google Analytics Demographics and Interest Reporting. These features enable us to use first-party cookies (such as the Google Analytics cookie) and third-party cookies (such as the DoubleClick advertising cookie) or other third-party cookies together to inform, optimize, and display ads based on your past visits to the Service. You may control your advertising preferences or opt-out of certain Google advertising products by visiting the Google Ads Preferences Manager, currently available at https://google.com/ads/preferences, or by visiting the Network Advertising Initiative’s (NAI) online resources at http://www.networkadvertising.org/choices.
5. Tracking Technologies / Cookies
A cookie is a small text file that is stored on a user’s computer for record-keeping purposes. We use cookies on this site and within our platform.
We use session ID cookies to allow you to access your account and to make it easier for you to navigate our site. A session ID cookie expires when you close your browser. If you reject cookies, you may still use our site, but your ability to use some areas of our site will be limited. We do not honor Do Not Track requests. The information from use of these tracking technologies may be combined with information that is personally identifiable so that we can make our website more interesting to you.
If you would prefer not to accept cookies, most browsers will allow you to: (i) change your browser settings to notify you when you receive a cookie, which lets you choose whether or not to accept it; (ii) disable existing cookies; or (iii) set your browser to automatically reject cookies. Please note that doing so may negatively impact your experience using our online Services, as some features and services on our online Services may not work properly. Depending on your device and operating system, you may not be able to delete or block all cookies. In addition, if you want to reject cookies across all your browsers and devices, you will need to do so on each browser on each device you actively use. You may also set your email options to prevent the automatic downloading of images that may contain technologies that would allow us to know whether you have accessed our email and performed certain functions with it.
Do Not Track
Do Not Track (“DNT”) is an optional browser setting that allows you to express your preferences regarding tracking across websites. HEALTHPAY24 does not have a mechanism in place to respond to DNT signals. HEALTHPAY24 does track some activity across websites (including your search terms, the website you visited before you visited or used the Services, and other clickstream data) and we may continue to collect information in the manner described in this Privacy Notice from web browsers that have enabled DNT signals or similar mechanisms.
California ”Shine the Light” Privacy Rights
California law permits residents of California to request certain details about our disclosure of your personal data by us to third parties for direct marketing purposes during the immediately preceding calendar year. If you are a California resident and would like to request this information, please contact us at the address listed below.
Analytics / Log Files
As is true of most Websites, we gather certain information automatically and store it in log files on our site and within our platform. This information includes internet protocol (IP) addresses, browser type, internet service provider (ISP), referring/exit pages, operating system, date/time stamp, and clickstream data.
We use this information to analyze trends, to administer the site and platform, to track users’ movements around the site and platform, and to gather demographic information about our user base as a whole. We may combine this information with other personal data that you have provided to us and/or with other information that is publicly available or that we receive from other reputable sources in order to make our Website and communications more targeted to your interests.
We may collect statistics about the behavior of visitors to the Website, Clients, and Users, and HEALTHPAY24 may utilize third parties to analyze the usage of the Website and Services.
We use Google Analytics to recognize you and link the devices you use when you visit our websites or Services on your browser or mobile device, log in to your account on the Services, or otherwise engage with us. We share a unique identifier, like a user ID or hashed email address, with Google to facilitate the service. Google Analytics allows us to better understand how our users interact with the Services and to tailor our advertisements and content to you. For information on how Google Analytics collects and processes data, as well as how you can control information sent to Google, review Google’s site “How Google uses data when you use our partners’ sites or apps” located at www.google.com/policies/privacy/partners/. You can learn about Google Analytics’ currently available opt-outs, including the Google Analytics Browser Ad-On here https://tools.google.com/dlpage/gaoptout/.
3rd Party Data Collection & Interest-Based Advertising
We participate in interest-based advertising and use third-party advertising companies to serve you targeted advertisements based on your browsing history. We permit third-party online advertising networks, social media companies and other third-party services, to collect information about your use of our online Services over time so that they may play or display ads on the Services, on other websites, or services you may use, and on other devices you may use. Typically, though not always, the information used for interest-based advertising is collected through tracking technologies, such as cookies, web beacons, embedded scripts, location-identifying technologies, and similar technology (collectively, “tracking technologies”), which recognize the device you are using and collect information, including click stream information, browser type, time and date you visited the site, AdID, precise geolocation and other information. We may share a common account identifier (such as a hashed email address or user ID) with our third-party advertising partners to help identify you across devices. We and our third-party partners use this information to make the advertisements you see online more relevant to your interests, as well as to provide advertising-related services such as reporting, attribution,
analytics and market research. We may also use services provided by third parties (such as social media platforms) to serve targeted ads to you and others on such platforms. We may do this by providing a hashed version of your email address or other information to the platform provider. See “User Access and Choice” above, to learn more about interest-based advertising.
Changes To This Privacy Notice
We may update this Privacy Notice to reflect changes to our information practices. If we make any material changes, we will notify you through the appropriate communication channels, including updating the “Last Updated” date at the top of this Privacy Notice. We encourage you to periodically review this page for the latest information on our privacy practices.
Links To Other Sites
This Website contains links to other sites that are not owned or controlled by HEALTHPAY24. Please be aware that we are not responsible for the privacy practices of such other sites. We encourage you to be aware when you leave our site and to read the privacy statements of each and every Website that collects personal data. This Privacy Notice applies only to information collected by this Website.
6. Contact Us
If you have any questions or concerns regarding our Privacy Notice, please contact us at security@HEALTHPAY24.com.