Chavilah Pharma
Legal & Compliance

Privacy Policy

Last Updated: June 12, 2024. Your privacy is paramount. We adhere to the highest standards of HIPAA compliance and medical data encryption.

1. Introduction

Chavilah Health Pharma (“we,” “us,” or “our”) operates a high-security medical procurement platform designed for healthcare professionals and pharmaceutical distributors. This Privacy Policy describes how we collect, use, and protect your information when you use our services.

By accessing our platform, you acknowledge that you have read and understood this Privacy Policy and our practices regarding your information and how we will treat it. We are committed to maintaining the confidentiality and security of Protected Health Information (PHI) in accordance with applicable federal and state laws.

2. Data We Collect

Professional Identity

  • Full Legal Name and NPI numbers
  • Medical License certifications
  • Facility or Clinic affiliation details

Usage Logistics

  • Real-time procurement patterns
  • IP addresses and access timestamps
  • Inventory monitoring preferences

3. HIPAA Compliance

Chavilah Health is a Business Associate under the Health Insurance Portability and Accountability Act (HIPAA). We implement technical, physical, and administrative safeguards to ensure the integrity and confidentiality of PHI.

AES-256 Encryption
Access Controls
Audit Trails

4. How We Use Data

Logistical Fulfillment

We process data to manage medical inventory flows, track cold-chain logistics, and ensure timely pharmaceutical delivery to verified facilities.

Clinical Safety Monitoring

Data is used for batch tracking and recall management, ensuring that safety alerts reach the correct medical personnel instantly.

5. Data Protection Standards

Standard CategoryMethodology
TransmissionTLS 1.3 for all data in transit across medical networks.
StorageEncrypted sharding across geographically redundant centers.
Employee AccessStrict Least Privilege Principle (PoLP) with 2FA requirement.

6. Your Rights

Under CCPA, GDPR, and HIPAA, you maintain the right to:

  • Request Data Portability
  • Correction of Inaccurate PHI
  • Account Deletion (Right to Erasure)
  • Opt-out of Secondary Processing

Contact Legal & Compliance

For any questions regarding this Privacy Policy or to exercise your rights, please reach out to our dedicated Compliance Officer.

Email

compliance@chavilah.health

Office

Logistics Plaza, Pharma District, Ste 400

See also our Terms of Service and Compliance pages.