
​
HeartLung Privacy Policy
​
HeartLung Corporation ("HeartLung", "we", "our", or "us") respects your privacy and is committed to protecting the information you share with us. This Privacy Policy describes how we collect, use, disclose, and protect information obtained through our websites and applications.
This policy applies to the following websites and any other websites or applications operated by HeartLung:
www.heartlung.ai
www.heartlung.com
www.livelonghealth.com
www.livelongscan.com
www.heartlungscan.com
www.autobmd.ai
These websites and applications are collectively referred to as the “Services.”
HeartLung develops AI-enabled medical imaging software and digital health technologies designed to help healthcare providers and individuals better understand health risks through imaging analytics and related tools. Because some of our services may involve health-related data, we take privacy and security very seriously.
By using the Services, you agree to the practices described in this Privacy Policy.
Information We Collect
Personal Information
We may collect personal information that identifies you directly or indirectly, including:
Name
Email address
Phone number
Mailing address
Date of birth
State or ZIP code
Account login credentials
Professional information for healthcare providers
We collect this information when you create an account, request a demo or trial, subscribe to communications, contact customer support, or otherwise interact with our Services.
Health-Related Information
Certain HeartLung services may process health-related information such as medical imaging data (for example CT scans), imaging biomarkers, clinical measurements, or results generated by our software.
When HeartLung processes health information on behalf of healthcare providers or institutions, we may operate as a HIPAA Business Associate and such information is handled according to applicable healthcare privacy regulations and contractual agreements.
Technical and Usage Information
When you access our websites or applications, we may automatically collect technical information including:
IP address
Device type and operating system
Browser type and version
Pages visited and time spent on pages
Referring website
System performance logs and error reports
This information helps us maintain security, improve performance, and understand how our Services are used.
Mobile Device Permissions
If you use a HeartLung mobile application, the app may request access to certain device features with your permission. These may include camera access for scanning codes or identity verification, microphone access for telehealth interactions where applicable, or file storage access to download reports. These permissions can be managed through your device settings.
How We Use Information
We use the information we collect to operate and improve our Services. This includes providing AI-based analysis and health insights, verifying user accounts, communicating service updates, responding to support requests, improving system performance, conducting research and product development, complying with legal obligations, and protecting against fraud or misuse.
HeartLung may also use aggregated or de-identified data to support scientific research, algorithm development, product validation, and statistical analysis.
De-Identified and Aggregated Data
HeartLung may create datasets that do not identify individual users. These de-identified or aggregated datasets may be used for research, publications, product improvement, and analytics consistent with applicable law.
How We Share Information
HeartLung does not sell personal or health information.
We may share information in the following situations.
Service Providers
We may share information with trusted vendors that support our business operations, such as cloud hosting providers, secure data storage services, analytics providers, and customer support systems. These vendors are contractually required to protect the confidentiality of the information.
Healthcare Providers or Organizations
If you access our Services through a healthcare provider, research institution, or employer health program, relevant information may be shared with those entities as authorized or required.
Legal and Regulatory Requirements
We may disclose information when required to comply with law, regulation, court orders, government requests, or to report safety issues involving medical devices.
Business Transactions
If HeartLung is involved in a merger, acquisition, or other corporate transaction, information may be transferred as part of that transaction.
Cookies and Website Analytics
Our websites may use cookies and similar technologies to understand user behavior and improve functionality. Cookies help us remember user preferences, analyze website traffic, and enhance user experience.
We may use analytics services such as Google Analytics to understand website usage patterns. These services collect information about website activity but do not receive personally identifiable health information from us.
Users can control cookie preferences through their browser settings.
Data Security
HeartLung uses industry-standard physical, administrative, and technical safeguards to protect information. These include encrypted data transmission, secure cloud infrastructure, access controls, and monitoring systems. When applicable, we follow HIPAA-compliant security practices for protected health information.
While we take extensive steps to protect information, no system can guarantee absolute security.
Data Retention
We retain information only as long as necessary to provide our Services, comply with legal obligations, resolve disputes, and enforce agreements. When information is no longer required, it is securely deleted or de-identified.
Your Choices
You may update certain account information through your user account. You may also opt out of marketing communications by using the unsubscribe link in emails we send.
Requests regarding personal information may be submitted to contact@heartlung.ai.
International Users
HeartLung operates primarily in the United States. If you access our Services from outside the United States, your information may be transferred to and processed on servers located in the United States.
Third-Party Websites
Our Services may contain links to third-party websites. HeartLung is not responsible for the privacy practices or content of those external sites.
Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes to our services or legal requirements. The updated version will be posted on our website with a revised “Last Updated” date.
Contact Us
If you have questions about this Privacy Policy or our data practices, please contact:
HeartLung Corporation
2450 Holcombe Blvd
TMC Innovation
Houston, TX 77021
Email: contact@heartlung.ai
Phone: 310-510-6004
​
