Last updated: May 19, 2026 · Effective: May 19, 2026
When you register for AjutaCare, we collect information necessary to create and manage your account, including:
We collect information about how you use AjutaCare, including:
As part of providing our service, we store data that agencies enter into the platform, including resident records, medication administration records (MAR), vitals, incident reports, staff schedules, and billing records. This data is owned by the agency and may constitute Protected Health Information under HIPAA.
We use the information we collect to:
We do not use your data or your residents' data for advertising purposes. We do not sell data to third parties.
AjutaCare acts as a Business Associate under HIPAA when processing Protected Health Information on behalf of Covered Entities (home care agencies). As a Business Associate:
Each agency's data is stored in a separate, isolated database. No agency can access another agency's data.
We do not sell, trade, or rent your personal information or your residents' health information to third parties. We may share information in the following limited circumstances:
We work with trusted third-party service providers who assist in operating our platform, subject to confidentiality obligations. These include cloud hosting providers, email delivery services, and payment processors. All service providers are carefully vetted and prohibited from using your data for their own purposes.
We may disclose information if required to do so by law, court order, or governmental authority, or if we believe in good faith that such disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or comply with a legal process.
In the event of a merger, acquisition, or sale of all or a portion of our assets, user information may be transferred as part of that transaction. We will notify you via email and/or prominent notice on our platform of any change in ownership.
We implement industry-standard security measures to protect your information:
While we implement these safeguards, no security system is impenetrable. In the event of a data breach affecting PHI, we will notify affected Covered Entities within 60 days of discovery as required by HIPAA.
We retain your data for as long as your account is active or as needed to provide services. Upon account termination:
Depending on your location, you may have the following rights regarding your personal information:
For residents whose PHI is stored in AjutaCare, requests for access, amendment, or accounting of disclosures should be directed to the home care agency (the Covered Entity) that manages their care.
To exercise your rights, contact us at privacy@ajutacare.com.
AjutaCare uses cookies and similar technologies to operate the platform:
We do not use third-party advertising cookies. You can control cookie settings through your browser preferences, though disabling essential cookies will prevent you from logging in.
AjutaCare is designed to support HIPAA compliance for home care agencies. As a Business Associate, we:
Agencies using AjutaCare remain responsible for their own HIPAA compliance as Covered Entities, including training their staff, obtaining patient authorizations where required, and implementing their own policies and procedures.
To request a Business Associate Agreement, contact us at compliance@ajutacare.com.
AjutaCare is designed for use by home care professionals and is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, please contact us immediately at privacy@ajutacare.com.
We may update this Privacy Policy from time to time. We will notify you of material changes by:
Your continued use of AjutaCare after changes become effective constitutes acceptance of the revised policy. We encourage you to review this policy periodically.
For privacy-related questions, data requests, or to report a concern:
📧 compliance@ajutacare.com (HIPAA & BAA inquiries)
We aim to respond to all privacy inquiries within 5 business days.