Privacy Policy

Last updated: January 2025

Data Protection & HIPAA Compliance

FlowSight is committed to protecting patient health information in accordance with HIPAA, HITECH, and other applicable privacy regulations. We implement comprehensive safeguards to ensure the confidentiality, integrity, and availability of all protected health information (PHI).

Information We Collect

Clinical Data

Vessel geometry data, hemodynamic parameters, and clinical metadata necessary for flow prediction analysis. All data is de-identified according to HIPAA Safe Harbor standards.

Usage Information

System usage logs, performance metrics, and technical data to improve service quality and reliability.

Data Security

  • • End-to-end encryption for all data transmission
  • • AES-256 encryption for data at rest
  • • Multi-factor authentication for all user accounts
  • • Regular security audits and penetration testing
  • • SOC 2 Type II compliance

Data Retention

Clinical data is retained only as long as necessary for analysis and reporting purposes, typically no longer than 90 days unless specifically requested by the healthcare institution. All data is permanently deleted using NIST-approved methods.

Your Rights

Healthcare institutions and patients have the right to request access, correction, or deletion of their data. For any privacy-related inquiries, please contact our Privacy Officer at privacy@flowsight.ai.

Contact Information

FlowSight Privacy Officer

123 Medical Innovation Drive

Boston, MA 02115

Email: privacy@flowsight.ai

Phone: +1 (555) 123-4567