Privacy Policy

Last Updated: March 17, 2026

Pursuant Health respects your privacy and is committed to complying with this Privacy Policy, which describes what information we collect about you, how we collect it, how we use it, with whom we may share it, and what choices you have regarding our use of your information.

We treat any data that relates to an identified or identifiable individual as “Personal Data”. Personal Data can be data that either personally identifies you or data that is about you but does not personally identify you because it has been de-identified by removing information that might be used to identify you, such as your name or contact information. When your data is combined or collected together with the data of other individuals in a summary form that does not identify you, such “Aggregated Data” is not considered Personal Data for the purposes of this Privacy Policy.

This Privacy Policy applies to Personal Data collected through the Pursuant Health Kiosk and Pursuant Health’s related services, including those services available through our website, pursuanthealth.com (collectively, the “Services”). To the extent that you receive services from Pursuant Health affiliated providers or from your own providers, each of those providers, and not Pursuant Health, is responsible for providing you with notice of the privacy practices that will govern their use of your data. If you receive such a notice from a healthcare provider, that provider’s notice of privacy practices will apply and not this Privacy Policy.

This Privacy Policy is not intended to and does not create any contractual right in or on behalf of any party.

1. Information We Collect

1.1 Information we collect from users

When you use our Services, you may be asked to provide a variety of information, including:

  • Account information: Including member ID, email address, account status, and date of birth.

  • Health information: Data relating to your age, health status, responses to health-related surveys, and measurements including blood pressure, pulse rate, and weight.

  • Contact information: Data such as name, email address, phone number, physical address, or other contact information.

  • Demographic information: Data you provide that identifies information such as your gender or ethnicity.

  • Health Plan information: Including your health plan’s member ID and the identity of the health plan to which you belong.

  • Usage data: Data about your activity on and use of our Services, including location of Kiosks used, product interaction, performance and diagnostic data, and other usage data.

  • Other information: Including responses to surveys and content of communications with Pursuant Health, including interactions with customer support and social media channels.

YOU ARE NOT REQUIRED TO PROVIDE US WITH YOUR PERSONAL INFORMATION; HOWEVER, IF YOU CHOSE NOT TO DO SO, ACCESS TO CERTAIN FEATURES OF OUR SERVICES MAY BE UNAVAILABLE TO YOU. For example, if you want to receive a copy of your blood pressure and weight measurements, you must provide us with your email address. Some information, such as age, gender, and date of birth is necessary for us to complete an assessment or screening.

Additionally, the use of some of our Services, including retinal imaging services, will require a user to set up a web-based user account to store, view and download retinal images or to consent to and authorize Pursuant Health to send the images to an eye specialist and to receive a report of the results. The establishment of an online user account will require you to provide us with certain personal information, such as your name, email address, and phone number.

When you opt in to receive SMS communications from our customer service or technical support teams, we do not share your mobile phone number, opt-in status, or any related mobile communication data with third parties or affiliates. This information is used solely for providing the requested support services and is maintained with the same privacy protections as your other personal information.

1.2 Information we collect about members or patients of our Covered Entity Customers

In some cases, we may provide Services on behalf of your health plan, health insurance company or health care providers who are subject to the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”), the Health Information Technology for Economic and Clinical Health Act (the “HITECH Act”), and regulations promulgated thereunder (“HIPAA Regulations”). These entities are our “Covered Entity” customers and partners. Individually identifiable health information (“Protected Health Information”, or “PHI”) that we collect on behalf of Covered Entities is subject to additional legal protections. Accordingly, we will only collect, use, and disclose PHI as permitted by our contracts with such Covered Entity customers and as permitted or required by applicable law.

To provide the Services on behalf of our Covered Entity Customers, we may collect certain information from you in addition to information collected from general users of the Pursuant Health Kiosks, such as your health insurance member ID. In these situations, we will notify you about the information that is being collected, why, and how it will be shared, and you will be able to choose whether you want to consent and proceed.

2. How we use and share your information

2.1 General Uses

Pursuant Health and our third-party service providers collect and use personal information to:

  • Operate and deliver the Services;

  • Verify your identity;

  • Administer your account;

  • Provide you with customer support;

  • Tailor the features, performance, and support of our Services to you;

  • Respond to your requests, resolve disputes, and/or troubleshoot problems;

  • Improve the quality of our Services;

  • Communicate with you about our Services;

  • Communicate your screening and assessment results with third parties, including sending your retinal images to a Pursuant Health affiliated eye care specialist, if you authorize it;

  • Address system integrity or security issues;

  • Conduct or participate in research and analysis to maintain, protect, and develop Services.

2.2 Sharing of Personal Information

Pursuant Health does not sell your personal information. We do not share your personal information with third parties for marketing or advertising purposes unless you have expressly consented to that specific sharing at the time the data is collected. Except as described in this Privacy Policy, Pursuant Health will not use, disclose, or transfer your personal information unless one or more of the following applies:

  1. You have expressly consented to the sharing at the time of data collection. For example, when using a Pursuant Health kiosk or web application, you may be presented with an opportunity to consent to sharing your contact information with a specific third party so that they may contact you with additional information. We will only share your information with that third party if you affirmatively agree at the time of collection, and only to the extent you have consented. Such sharing is limited to the specific purpose disclosed at the time of your consent and does not constitute an ongoing sharing relationship. You are never required to consent as a condition of using our Services.

  2. It is necessary to provide the Services or to allow our service providers to provide products or services to us.

  3. It is used for health plan eligibility verification. With your consent, limited personal information such as your name, date of birth, zip code, and health plan member identifiers may be shared with authorized third-party service providers solely for the purpose of determining whether your health plan supports or participates in specific Pursuant Health services.

  4. It is used for research purposes and all direct personal identifiers have been excluded.

  5. It is necessary to protect the confidentiality or security of your records, verify identity, age, or payment details.

  6. It is necessary to comply with law enforcement, governmental mandate, or other legal requirements.

  7. It is necessary to resolve disputes, investigate problems and complaints, or enforce compliance with our Terms of Service.

  8. It is necessary to assert and defend against legal claims or to investigate, prevent, or take action regarding actual or suspected illegal or fraudulent activities.

  9. It is required in connection with a corporate transaction, such as a sale, merger, or reorganization of Pursuant Health, subject to applicable contractual or legal restrictions.

  10. It is otherwise required or permitted by law.

Notwithstanding the above, we may use Aggregated Data or deidentified information without restriction.

2.3 Members and Patients of Our Covered Entity Customers

When we collect Personal Health Information (PHI) from you on behalf of our Covered Entity customers and partners or when we receive your PHI from a Covered Entity customer or partner, we will only use and disclose such information as permitted or required by applicable law and by the terms of our Agreement with the Covered Entity.

3. Advertising

3.1 Kiosk Advertising

On Pursuant Health kiosks, general demographic information such as a user’s self-reported gender, age, and kiosk location may be used to display relevant health-related advertising on the kiosk screen during your session. This use of demographic information is limited to on-screen display at the kiosk and does not involve your personally identifiable information. Your personally identifiable information and account information is not shared with third-party advertisers and is not used to track your behavior across other websites or platforms.

3.2 Online Advertising

Pursuant Health does not currently use cookies, web beacons, pixels, or other online tracking technologies for targeted, interest-based, or behavioral advertising purposes. We do not share or sell your personal information with advertising networks or partners for online advertising. If our advertising practices change in the future, we will update this Privacy Policy and notify you of these changes.

4. Cookies and Tracking Technologies

Pursuant Health uses two categories of cookies on our website:

  • Essential cookies: Cookies that are necessary for the operation of our Services, such as maintaining your session and remembering your preferences. These cannot be disabled.

  • Analytics cookies: We use web analytics tools to understand how our website is used in aggregate, such as which pages are visited and how users navigate our site. Analytics collects anonymized, aggregate data and is not used to identify individual users or to serve advertising.

We do not use advertising cookies, tracking pixels, or similar technologies for marketing or behavioral advertising purposes.

In some email messages we send to you, we may include links that allow us to track click events to help us measure whether we are communicating with you effectively. If you prefer not to be tracked in this way, you should not click on links in email messages.

5. Access, Amendment, and Deletion of Your Personal Information

You may update or delete your personal information at any time by logging into your account at https://my.pursuanthealth.com. To submit a request regarding data that is not accessible through your account, you may submit a request in writing through our Privacy Request Portal. We may need to verify your identity and request more information before taking further action. As a part of this process, we may collect government identification.

You may request deletion of personal information by us, but please note that we may be required or permitted by law to retain certain information. When we delete personal information, it will be deleted from the active database but may remain in our archives as permitted by applicable law. After we delete personal information, we may retain and continue to use deidentified information and Aggregated Data as permitted under this Privacy Policy and applicable law.

We do not sell personal information to third parties, although, as described above, we may disclose your information pursuant to your consent and to our service providers for a business purpose. If you choose to exercise your privacy rights, we will not charge you different prices, if applicable, or provide different quality of services unless those differences are related to the value of your information.

NOTICE TO CALIFORNIA RESIDENTS: California residents have the right to request that Pursuant Health delete your personal information that we collected from you and retained, subject to certain exceptions. Under California law, you may designate an authorized agent to make the request on your behalf. To designate an authorized agent to make a request on your behalf, you may need to provide a valid power of attorney, the requester’s valid government-issued identification, and the authorized agent’s valid government-issued identification. Once we receive and confirm your verifiable consumer request, we will delete (and direct our service providers to delete) your personal information from our records, unless certain exceptions apply. Once the data is deleted you will no longer have access to the data through or by our Services. We will not discriminate against you for exercising any of your rights under the California Consumer Privacy Act.

6. Children

Our Services are intended for a general audience and are not intended for use or view by children under 18 years of age or, in the case of use of the retinal imaging services, under 22 years of age. If you are under age 18 (or 22 in the case of retinal imaging services), please do not attempt to use our Services or provide any personal information about yourself to us. Consistent with the Children’s Online Privacy Protection Act, we will not knowingly collect any information from children under the age of 13. If we learn that we have collected personal information from a child under age 13, we will delete that information.

7. How we protect your information

In providing the Services and conducting our business, Pursuant Health endeavors to strictly comply with all applicable requirements of state and federal privacy laws and employs reasonable, industry-standard physical, electronic, and administrative security controls to help protect against unauthorized access to personal information.

HOWEVER, NO DATA TRANSMISSION OVER THE INTERNET OR SHARED NETWORKS CAN BE GUARANTEED TO BE PERFECTLY SECURE. AS A RESULT, WE CANNOT ENSURE OR GUARANTEE THE SECURITY OF ANY INFORMATION YOU PROVIDE TO US, AND YOU DO SO AT YOUR OWN RISK.

Where you have been given or chosen a password, it is your responsibility to keep this password confidential.

Please report any security violations or concerns to us at our Security Incident Portal.

8. Accessing services from outside the United States

If you are accessing the Services, or any part thereof, from outside of the United States of America, you are hereby notified that your information may be transferred to, stored, or processed in the United States, where our services are located and operated. Thus, we will take all steps necessary to protect your privacy in compliance with the data protection and other laws of the United States, which may or may not be as comprehensive as the laws in your country.

9. Changes to Privacy Policy

Pursuant Health reserves the right to change this Privacy Policy at any time, without prior notice to you. The most recent version of the Privacy Policy is reflected by the ‘Last Updated’ date located at the top of this Privacy Policy. All updates are effective immediately upon notice, which we may give by posting a revised version of this Privacy Policy on our website at www.pursuanthealth.com.

YOU SHOULD REVIEW THIS PRIVACY POLICY PERIODICALLY TO STAY INFORMED OF CHANGES THAT MAY AFFECT YOU, AS YOUR CONTINUED USE OF THE SYSTEM SIGNIFIES YOUR CONTINUING CONSENT TO BE BOUND BY THIS PRIVACY POLICY.

Our electronically or otherwise properly stored copies of this Privacy Policy shall be deemed to be the true, complete, valid, authentic, and enforceable copy of the version of this Privacy Policy which were in force on each respective date you used our Services.

10. Contact Us

If you have any questions about this Privacy Policy, please contact us by submitting a request through our Privacy Request Portal.