Privacy Policy
How Quanteli collects, uses, protects, and shares information across our website and platform.
01Introduction
Quanteli (“Quanteli,” “we,” “us,” or “our”) provides an AI-native healthcare operations platform and related websites, products, and services (collectively, the “Services”). This Privacy Policy explains how we collect, use, disclose, and safeguard information when you visit our website or use our Services.
By using the Services, you agree to this Privacy Policy. If you do not agree, please do not use the Services.
02Information we collect
We collect the following categories of information:
- Information you provide. Name, work email, organization, role, and the contents of messages or pilot requests you submit through our forms.
- Usage data. Pages visited, referring URLs, approximate location, device and browser type, and similar analytics collected automatically.
- Customer data. Where we provide the platform to an enterprise customer, we process data from that customer’s systems under their direction and our agreement with them (see Protected Health Information).
03How we use information
We use information to:
- Provide, operate, secure, and improve the Services;
- Respond to inquiries, pilot requests, and support requests;
- Send transactional and, where permitted, marketing communications;
- Monitor usage, prevent fraud and abuse, and ensure platform reliability;
- Comply with legal, regulatory, and contractual obligations.
04Protected Health Information (PHI) & HIPAA
When Quanteli processes Protected Health Information (PHI) on behalf of a covered entity or business associate, we act as a Business Associate under the U.S. Health Insurance Portability and Accountability Act (HIPAA) and operate under a Business Associate Agreement (BAA) with the relevant customer.
In that role, PHI is processed only as permitted by the BAA and applicable law — to provide the Services and as directed by the customer. We apply administrative, technical, and physical safeguards including PHI encryption, role-based access control, and audit logging. We do not use PHI for our own marketing and do not sell PHI.
05How we share information
We may share information with:
- Service providers / subprocessors who support hosting, infrastructure, email delivery, and analytics, under appropriate confidentiality and security obligations;
- AI infrastructure providers used to deliver platform features, subject to contractual data-protection terms;
- Legal and safety recipients where required by law or to protect rights and safety;
- Business transfers in connection with a merger, acquisition, or sale of assets.
We do not sell your personal information.
06Data security
We maintain a security program with safeguards such as encryption in transit and at rest, role-based access control, audit trails, and SOC 2-aligned controls. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
07Data retention
We retain information for as long as necessary to provide the Services, comply with our legal obligations, resolve disputes, and enforce our agreements. Customer data and PHI are retained and deleted in accordance with the applicable customer agreement and BAA.
08Your rights & choices
Depending on your location, you may have rights to access, correct, delete, or port your personal information, or to object to or restrict certain processing. You can opt out of marketing emails at any time using the unsubscribe link.
For personal information processed on behalf of a customer, please direct requests to that customer; we will support them as their processor / business associate.
09Cookies & analytics
We use cookies and similar technologies to operate the site, remember preferences, and understand usage. You can control cookies through your browser settings; disabling them may affect some functionality.
10International data transfers
We may process and store information in countries other than where you reside. Where required, we use appropriate safeguards (such as standard contractual clauses) for cross-border transfers.
11Children's privacy
The Services are intended for businesses and are not directed to children under 16. We do not knowingly collect personal information from children.
12Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be posted here with an updated effective date. Your continued use of the Services after changes take effect constitutes acceptance.
13Contact us
Questions about this Privacy Policy or our data practices? Reach us through our contact page and we’ll route your request to the right team.