Privacy Policy

Last updated: May 19, 2026  ·  Effective: May 19, 2026

Summary: AjutaCare is a HIPAA-compliant platform for home care agencies. We take the privacy of Protected Health Information (PHI) extremely seriously. We do not sell your data, we do not use PHI for advertising, and we maintain strict technical and administrative safeguards.

Table of Contents

  1. Information We Collect
  2. How We Use Your Information
  3. Protected Health Information (PHI)
  4. Data Sharing and Disclosure
  5. Data Security
  6. Data Retention
  7. Your Rights
  8. Cookies and Tracking
  9. HIPAA Compliance
  10. Children's Privacy
  11. Changes to This Policy
  12. Contact Us

1. Information We Collect

Account Information

When you register for AjutaCare, we collect information necessary to create and manage your account, including:

Usage Information

We collect information about how you use AjutaCare, including:

Clinical and Operational Data

As part of providing our service, we store data that agencies enter into the platform, including resident records, medication administration records (MAR), vitals, incident reports, staff schedules, and billing records. This data is owned by the agency and may constitute Protected Health Information under HIPAA.

2. How We Use Your Information

We use the information we collect to:

We do not use your data or your residents' data for advertising purposes. We do not sell data to third parties.

3. Protected Health Information (PHI)

AjutaCare acts as a Business Associate under HIPAA when processing Protected Health Information on behalf of Covered Entities (home care agencies). As a Business Associate:

Each agency's data is stored in a separate, isolated database. No agency can access another agency's data.

4. Data Sharing and Disclosure

We do not sell, trade, or rent your personal information or your residents' health information to third parties. We may share information in the following limited circumstances:

Service Providers

We work with trusted third-party service providers who assist in operating our platform, subject to confidentiality obligations. These include cloud hosting providers, email delivery services, and payment processors. All service providers are carefully vetted and prohibited from using your data for their own purposes.

Legal Requirements

We may disclose information if required to do so by law, court order, or governmental authority, or if we believe in good faith that such disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or comply with a legal process.

Business Transfers

In the event of a merger, acquisition, or sale of all or a portion of our assets, user information may be transferred as part of that transaction. We will notify you via email and/or prominent notice on our platform of any change in ownership.

5. Data Security

We implement industry-standard security measures to protect your information:

While we implement these safeguards, no security system is impenetrable. In the event of a data breach affecting PHI, we will notify affected Covered Entities within 60 days of discovery as required by HIPAA.

6. Data Retention

We retain your data for as long as your account is active or as needed to provide services. Upon account termination:

7. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

For residents whose PHI is stored in AjutaCare, requests for access, amendment, or accounting of disclosures should be directed to the home care agency (the Covered Entity) that manages their care.

To exercise your rights, contact us at privacy@ajutacare.com.

8. Cookies and Tracking

AjutaCare uses cookies and similar technologies to operate the platform:

We do not use third-party advertising cookies. You can control cookie settings through your browser preferences, though disabling essential cookies will prevent you from logging in.

9. HIPAA Compliance

AjutaCare is designed to support HIPAA compliance for home care agencies. As a Business Associate, we:

Agencies using AjutaCare remain responsible for their own HIPAA compliance as Covered Entities, including training their staff, obtaining patient authorizations where required, and implementing their own policies and procedures.

To request a Business Associate Agreement, contact us at compliance@ajutacare.com.

10. Children's Privacy

AjutaCare is designed for use by home care professionals and is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, please contact us immediately at privacy@ajutacare.com.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

Your continued use of AjutaCare after changes become effective constitutes acceptance of the revised policy. We encourage you to review this policy periodically.

12. Contact Us

Privacy & Compliance Contact

For privacy-related questions, data requests, or to report a concern:

📧 privacy@ajutacare.com

📧 compliance@ajutacare.com (HIPAA & BAA inquiries)

We aim to respond to all privacy inquiries within 5 business days.