HeartiliHeartili

Privacy Policy

Heartili Inc.Last Updated: January 15, 2026

Heartili, Inc. and its affiliated products, including Wholecare+ ("Heartili," "Wholecare+," "we," "us," or "our"), are committed to protecting your privacy and earning your trust. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our websites, mobile applications, and related services (collectively, the "Services").

By accessing or using our Services, you agree to the practices described in this Privacy Policy.

1. Information We Collect

We collect information you provide directly, information generated through your use of the Services, and information from connected devices or integrations (with your permission).

a. Information You Provide

This may include:

  • Name, email address, phone number
  • Account credentials
  • Demographic information (such as age or sex, if voluntarily provided)
  • Health-related information you choose to share (e.g., symptoms, concerns, goals, care preferences)
  • Communications with us (support requests, feedback)

b. Health & Wellness Data

If you choose to connect wearable devices, health apps, or upload reports, we may collect:

  • Activity, heart rate, sleep, or other wellness metrics
  • Trends, summaries, or derived insights based on your data
  • Information you input for care preparation or education

You control what data you connect and can disconnect integrations at any time.

c. Automatically Collected Information

We may collect:

  • Device type, operating system, and browser information
  • IP address and approximate location
  • Usage data (pages viewed, features used, time spent)
  • Cookies and similar tracking technologies

2. How We Use Your Information

We use your information to:

  • Provide, operate, and improve the Services
  • Generate personalized insights, summaries, and educational content
  • Help you prepare for healthcare visits and coordinate care
  • Communicate with you about your account, updates, and support
  • Monitor and improve safety, quality, and performance
  • Conduct research and analytics (using de-identified or aggregated data where possible)
  • Comply with legal and regulatory obligations

We do not sell your personal health data.

3. Health Information & HIPAA

Heartili Inc. is not healthcare providers and are generally not "covered entities" under HIPAA. However, we take privacy and security seriously and apply safeguards inspired by healthcare best practices.

If we partner with covered entities (such as healthcare providers or insurers), certain data may be handled under a Business Associate Agreement (BAA) and governed by HIPAA where applicable. In those cases, additional privacy notices may apply.

4. How We Share Information

We may share information only as described below:

a. With Service Providers

We may share information with trusted vendors who help us operate the Services (e.g., cloud hosting, analytics, customer support). They are required to protect your data and use it only for authorized purposes.

b. With Your Consent

We may share information when you explicitly authorize us to do so, such as exporting summaries for your clinician or caregiver.

c. De-Identified or Aggregated Data

We may use or share anonymized, aggregated data for research, product improvement, or insights that cannot reasonably identify you.

d. Legal Requirements

We may disclose information if required by law, court order, or to protect the rights, safety, or security of users or the public.

5. Your Choices & Rights

Depending on your location, you may have the right to:

  • Access, correct, or delete your personal information
  • Download certain data you've provided
  • Withdraw consent for data integrations
  • Opt out of certain communications

You can manage many of these preferences directly in your account. To make a request, contact us at info@healthful-benefits.com.

6. Data Security

We use administrative, technical, and physical safeguards designed to protect your information, including:

  • Encryption in transit and at rest where appropriate
  • Access controls and authentication
  • Ongoing monitoring and security reviews

No system is 100% secure, but we work continuously to protect your data.

7. Data Retention

We retain personal information only as long as necessary to provide the Services, comply with legal obligations, resolve disputes, and enforce our agreements. You may request deletion of your account at any time.

8. Children's Privacy

The Services are not intended for children under 13 (or under 16 where required by law). We do not knowingly collect personal information from children without appropriate consent.

9. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you through the Services or by email. The "Last Updated" date reflects the latest revision.

10. Contact Us

If you have questions, concerns, or requests related to privacy, please contact: