Privacy Policy

ARISTAMD PRIVACY POLICY
VERSION 2.0
EFFECTIVE AS OF SEPTEMBER 12, 2019
LAST REVISED ON: SEPTEMBER 12, 2019

This Privacy Policy is designed to help you understand how AristaMD, Inc. (“AristaMD”, “we”, “us” or “our”) collects, uses and shares personal information.

Table of Contents
What this Privacy Policy Covers
Personal Information We Collect
How We Use Your Personal Information
How We Share your Personal Information
Your Choices
Cookies and Similar Technologies
Other Important Privacy Information
How to Contact Us
Notice to European Users

What this privacy policy covers
This Privacy Policy applies to our collection, use and sharing of your personal information when you visit our website at www.AristaMD.com or any other website to which we post this privacy policy (the “Sites”); or receive our communications. For convenience, we refer to the Sites and our services collectively as the “Service”.

We provide services that businesses use to improve their communication, collaboration and decision making practices. This Privacy Policy does not apply to any information collected, used or shared by our customers or that we handle on our customers’ behalf. Our customers have their own policies for how they collect, use and share personal information, and our contracts with our customers restrict how we use information that we handle on their behalf. You should contact the relevant customer if you have questions, concerns or requests regarding personal information that the customer handles or that we handle on its behalf.

Personal information we collect
Information you give us. Personal information you may provide through the Service or otherwise communicate to us includes:
• Contact information. We collect information about you when you provide contact information to us via email, mail or through the Service. This information may include your first and last name, email and mailing addresses, phone number and company name.
• Correspondence. We may collect information about you when you request information from us or otherwise correspond with us.
• Other information. We may collect other information from you that is not specifically listed here. We will use such information in accordance with this Privacy Policy.

Information we get from others
We may obtain additional information about you from third party sources, to improve your experience with the Service and provide you with more relevant information about our products and services.
Information automatically collected. Our servers and third party service providers may automatically record certain information about how you use the Service, such as your Internet Protocol (IP) address, device and browser type, operating system, the pages or features of the Service that you browsed and the time spent on those pages or features, the frequency with which you use the Service, the links that you click on or use and other statistics. We collect this information in server logs and by using cookies and similar tracking technologies. See our Cookie Policy for more information.

Sensitive personal information
We do not intentionally collect any sensitive personal information (e.g., social security numbers, information related to racial or ethnic origin; political opinions, religion or other beliefs; health, biometrics or genetic characteristics; criminal background or union membership) through the Service or otherwise, but, if you provide it to us, you must consent to our use of this information as described in this Privacy Policy.
How We Use Your Personal Information
We use your personal information for the following purposes and as otherwise described to you in this Privacy Policy or at the time of collection:
To provide the Service. We use your personal information:

  • to provide, operate and improve the Service;
  • to communicate with you regarding the Service, including by sending you announcements, updates, security alerts, and support and administrative messages;
  • to better understand your needs and interests, and personalize your experience with the Service; and
  • to respond to your requests, questions and feedback related to the Service.
    For research and development. We use information automatically collected and other information to analyze trends, administer the Service, analyze users’ movements around our Sites, gather demographic information about our user base as a whole, improve the Service and develop new products and services.

To send you marketing communications
We may send you newsletters or other marketing communications, but you may opt out of receiving them as described in the Opt out of marketing section below.
To create anonymous data. We may create aggregated and other anonymous data from our users’ information. We make personal information into anonymous data by removing information that makes the data personally identifiable. We may use this anonymous data and share it with third parties to understand and improve our Service and for other lawful business purposes.
For compliance, fraud prevention and safety. We may use your personal information as we believe appropriate to (a) investigate violations of and enforce our Service Terms of Use applicable to our customers; (b) protect our, your or others’ rights, privacy, safety or property (including by making and defending legal claims); and (c) protect, investigate and deter against fraudulent, harmful, unauthorized, unethical or illegal activity.
For compliance with law. We may use your personal information as we believe appropriate to (a) comply with applicable laws, lawful requests and legal process, such as to respond to subpoenas or requests from government authorities; and (b) where permitted by law in connection with a legal investigation.

With your consent. In some cases we may ask for your consent to collect, use or share your personal information, such as when required by law or our agreements with third parties.

How we share your personal information
We do not share your personal information with third parties without your consent, except in the following circumstances:
Affiliates. We may share your personal information with parent companies, subsidiaries and affiliates for use consistent with this Privacy Policy.
Service providers. We may share your personal information with third party companies and individuals as needed for them to provide us with services that help us with our business activities and to provide the Service (such as customer support, hosting and storage, website analytics, email delivery, marketing/advertising, database management services and legal and other professional advice). These third parties will be given limited access to your personal information that is reasonably necessary for them to provide their services.
For legal reasons. We may disclose your personal information as we believe appropriate to government or law enforcement officials or private parties for the purposes described above under the following sections: For compliance, fraud prevention and safety and For compliance with law.
Business transfers. We may sell, transfer or otherwise share some or all of our business or assets, including your personal information, in connection with a business deal (or potential business deal) such as a corporate divestiture, merger, consolidation, acquisition, reorganization or sale of assets, or in the event of bankruptcy or dissolution.

Your choices
Access, update, correct or delete your information. You may review, update, correct or delete the personal information you’ve shared with us by contacting us at marketing@AristaMD.com.

Opt out of marketing. You may opt out of marketing-related emails by following the unsubscribe instructions in the email. You may continue to receive Service-related and other non-marketing emails.

Opt out of advertising. See our Cookie Policy for details on how to limit targeted advertising based on your information.
Cookies and Similar Technologies

We may allow service providers and other third parties to use cookies and other tracking technologies to track your browsing activity over time and across the Service and third party websites. For more details, see our Cookie Policy. Some Internet browsers may be configured to send “Do Not Track” signals to the online services that you visit. We currently do not respond to “Do Not Track” or similar signals. To find out more about “Do Not Track,” please visit http://www.allaboutdnt.com.

Other important privacy information
Third party sites and services. The Service may contain links to other websites and services operated by third parties. These links are not an endorsement of, or representation that we are affiliated with, any third party. We do not control third party websites, applications or services, and are not responsible for their actions. Other websites and services follow different rules regarding their collection, use and sharing of your personal information. We encourage you to read their privacy policies to learn more.

Security
The security of your personal information is important to us. We take a number of organizational, technical and physical measures designed to protect the personal information we collect. However, security risk is inherent in all internet and information technologies and we cannot guarantee the absolute security of your personal information.

International data use. We are headquartered in the United States and have affiliates and service providers in other countries, and your personal information may be collected, used and stored in the United States or other locations outside of your home country. Privacy laws in the locations where we handle your personal information may not be as protective as the privacy laws in your home country.

Children
The Service is not directed at, and we do not knowingly collect personal information from, anyone under the age of 16. If we learn that we have collected personal information from a child under age 16, we will attempt to delete that information as soon as possible.
Changes to this Privacy Policy. We reserve the right to modify this Privacy Policy at any time. If we make changes to this Privacy Policy we will post them on the Sites and indicate the effective date of the change. If we make material changes to this Privacy Policy we will notify you by email or through the Service.

How to contact us
AristaMD, Inc.
11099 North Torrey Pines Road Suite 290
La Jolla, CA 92037
Attn: ___Client Services Manager_____________________________________
marketing@AristaMD.com

Notice to European users
The following applies to individuals in the European Economic Area.
Controller. AristaMD, Inc. is the controller of your personal information covered by this Privacy Policy for purposes of European data protection legislation.

Legal bases for processing
The legal basis of our processing of your personal information are described in the table below. If you have questions about the legal basis of how we process your personal information, contact us at marketing@AristaMD.com.

  • Processing purpose (click link for details)
  • Legal basis
  • To provide the Services
  • You have entered a contract with us and we need to use your personal information to provide services you have requested or take steps that you request prior to providing services.
  • For research and development
  • To send you marketing communications
  • To create anonymous data
  • For compliance, fraud prevention and safety

These processing activities constitute our legitimate interests. We consider and balance the potential impact on your rights before we process your personal information for our legitimate interests. We do not use your personal information for activities where our interests are overridden by the impact on you (unless we have your consent or are otherwise required or permitted to by law).

For compliance with law
Processing is necessary to comply with our legal obligations.

With your consent
Processing is based on your consent. Where we rely on your consent, you have the right to withdraw it anytime in the manner indicated in the Service.

To share your personal information as described in this Privacy Policy
This sharing constitutes our legitimate interests, and in some cases may be necessary to comply with our legal obligations.

Retention
We retain personal information where we have an ongoing legitimate business need to do so (for example, to provide you with a service you have requested; to comply with applicable legal, tax or accounting requirements; to establish or defend legal claims; or for fraud prevention). When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize it or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.

Your rights
European data protection laws give you certain rights regarding your personal information. You may ask us to take the following actions in relation to your personal information that we hold:

• Access. Provide you with information about our processing of your personal information and give you access to your personal information.
• Correct. Update or correct inaccuracies in your personal information.
• Delete. Delete your personal information.
• Transfer. Transfer a machine-readable copy of your personal information to you or a third party of your choice.
• Restrict. Restrict the processing of your personal information.
• Object. Object to our reliance on our legitimate interests as the basis of our processing of your personal information that impacts your rights.

You may submit these requests by email to marketing@AristaMD.com or our postal address provided above. We may request specific information from you to help us confirm your identity and process your request. Applicable law may require or permit us to decline your request. If we decline your request, we will tell you why, subject to legal restrictions. If you would like to submit a complaint about our use of your personal information or response to your requests regarding your personal information, you may contact us or submit a complaint to the data protection regulator in your jurisdiction. You can find your data protection regulator here.

Cross-border data transfer
If we transfer your personal information from the European Economic Area to a country outside of it and are required to apply additional safeguards to your personal information under European data protection legislation, we will do so. Please contact us for further information about any such transfers or the specific safeguards applied.