Your privacy and the security of your health data are our top priorities. Learn how we protect your information.
Industry-leading security measures to keep your health information safe
Full compliance with healthcare privacy regulations
AES-256 encryption for all data at rest and in transit
Role-based access with multi-factor authentication
SOC 2 Type II certified with annual assessments
Our commitment to protecting your privacy
NorCemic Inc. ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal and health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the SmartCemic QESA Pro device and associated services.
HIPAA Compliance: As a healthcare technology provider, we comply with the Health Insurance Portability and Accountability Act (HIPAA) and implement appropriate safeguards to protect your Protected Health Information (PHI).
By using SmartCemic QESA Pro, you consent to the data practices described in this policy. We encourage you to read this policy carefully and contact us if you have any questions.
Types of data we gather to provide our services
| Data Type | Retention Period |
|---|---|
| Health Measurements | Account + 7 years |
| Account Information | Account + 2 years |
| Payment Data | 7 years (tax) |
| Technical Logs | 90 days |
Purposes for processing your data
We use your information to provide, maintain, and improve our services:
Special safeguards for your sensitive health information
Your health data receives the highest level of protection:
All health data encrypted at rest and in transit
Secure communication protocols for all data
Role-based access with MFA required
Complete logging of all data access
Logically separated from other users
Encrypted, geographically distributed
We Never Sell Your Health Data. Your biomarker readings and health information are used solely to provide you with our services. We do not sell, rent, or trade your personal health information.
When and how we may share your data
We may share your information only in the following circumstances:
We Never Sell Your Data: NorCemic Inc. does not sell, rent, or trade your personal or health information to third parties for marketing purposes.
Comprehensive measures to protect your information
We implement comprehensive security measures to protect your data:
Control over your personal information
You have the following rights regarding your personal and health information:
Request a copy of all personal data we hold about you
Request correction of inaccurate or incomplete data
Request deletion of your data (subject to legal requirements)
Export your data in JSON, CSV, or FHIR R4 format
To exercise any of these rights, please contact us at admin@norcemic.com. We will respond within 30 days.
Contact our Privacy Team for any questions or concerns about your data.