Privacy Policy
This is the Caredenza Privacy Policy. We've written it in plain English because we want you to actually read it. If anything is unclear, write to us at info@caredenza.com.
1. Who we are
Caredenza, Inc. is a Delaware corporation with its principal office at 25 Rolfes Lane, Newbury, MA. You can reach us at info@caredenza.com or (617) 932-5820. References to "Caredenza," "we," "us," and "our" mean Caredenza, Inc.
2. What this policy covers
This policy applies to the Caredenza iOS app, the Caredenza website at caredenza.com, and any related services we operate. It does not apply to anything you do outside Caredenza — including how your hospital, pharmacy, or insurance company handles your information.
3. Information we collect
We only collect what the product needs to work for you.
From you, when you use the app
- Your email address, used for sign-in and reminders
- Photographs of your discharge paperwork, used to extract medications, appointments, and care-team information
- Your medication list, dose schedule, and the times you mark each dose taken
- Care-team contacts, appointments, and pharmacy information you add or that we extract from your paperwork
- Caregiver invites you create — the email addresses you choose to share with
Automatically, when you use the app
- Basic device information (device model, iOS version) for compatibility and crash reporting
- App usage events necessary to keep the product working (e.g., a record that a sync succeeded)
- Time zone, so reminders fire at the right local time
We do not use third-party advertising SDKs, behavioral-tracking SDKs, or session-replay tools.
4. How we use your information
- To run the app — manage your medications, send reminders, render your home hub
- To extract structured information from your discharge photographs using AWS Textract
- To generate plain-language explanations of medications, on request, using Amazon Bedrock
- To deliver caregiver views to people you've explicitly invited
- To respond to your support requests
- To investigate security incidents and prevent abuse
5. How we share your information
We share your information in only three situations:
- With caregivers you invite. Caregivers see a read-only view of your dose history and upcoming medications. You can revoke a caregiver's access at any time from the app.
- With service providers we use to run the app. These are Amazon Web Services (hosting, storage, authentication, OCR, and AI processing) and Apple (Sign in with Apple). They process information on our behalf under written contracts that limit how they may use it.
- When required by law. If we receive a valid legal process (subpoena, court order), we will comply, and we will tell you about it unless legally prohibited.
We do not sell your information. We do not share it with advertisers, data brokers, or analytics companies that would build a profile about you.
6. Where your information is stored
All Caredenza data is stored in Amazon Web Services data centers in the United States. Data is encrypted at rest using AWS-managed keys and encrypted in transit using TLS 1.2 or higher.
7. How long we keep your information
- While your account is active — for as long as you are using Caredenza
- When you delete your account — we delete your medications, dose history, photographs, and care-team data within 30 days, with limited backup copies cleared within 90 days
- Aggregated, de-identified statistics — we may keep counts and metrics that cannot identify any individual
8. Your rights
You can ask us, at any time, to:
- Show you the information we have about you
- Correct anything that is wrong
- Delete your account and your data
- Stop using your information for a particular purpose
Most of these you can do directly inside the app. For anything else, write to info@caredenza.com.
9. HIPAA
HIPAA — the U.S. health-privacy law — applies to "covered entities" (hospitals, clinics, and health plans) and to "business associates" who handle health information on their behalf. When you use Caredenza directly as a consumer, we are not acting as a covered entity or a business associate, so HIPAA does not technically govern that use. We voluntarily apply protections that line up with HIPAA's Security Rule because it is the right way to handle health information. If a healthcare organization later offers Caredenza to its patients, we will sign a Business Associate Agreement with that organization for that program.
10. Children
Caredenza is intended for adults — typically older adults managing their own care, and family members supporting them. The app is not directed to children under 13, and we do not knowingly collect information from anyone under 13. If you believe a child has provided information to Caredenza, please contact us.
11. Security
We protect your information with the controls described on our Trust page. No security is perfect, and no provider should claim otherwise; we work to make incidents unlikely and to respond quickly if one happens. We will notify affected users without undue delay if a breach materially affects their information.
12. Changes to this policy
We may update this policy from time to time. If we make material changes, we will notify you in the app and update the effective date at the top of this page. Continued use of Caredenza after the change means you accept the updated policy.
13. Contact
Questions, requests, and complaints all go to:
Caredenza, Inc.
25 Rolfes Lane, Newbury, MA, USA
info@caredenza.com · (617) 932-5820