Who are we?
We are Infohealth LTD. Our company number is 04004930 and our office address is Lynwood House, 373 – 375 Station Road, Harrow, HA1 2AW, ENGLAND. NowPatient Diabetes is committed to making sure you receive the service you expect while ensuring we protect your privacy. In this policy, you’ll find out exactly what information we collect from you and how we then use this to deliver our services. You will also find out about your rights.
How and why we collect your personal data?
We want to make sure that you understand what personal data we collect from you and how and why we use this information. The personal data that we process will depend on your level of interaction with us.
I am browsing your website
I didn’t qualify for the research programme
I qualified for the research programme but I haven’t downloaded the NowPatient Diabetes app
I qualified for the research programme and I am using the NowPatient Diabetes app
I have downloaded the NowPatient Diabetes app in the AppStore
I have investor interest in NowPatient Diabetes or have been contacted about investing
I am browsing your website
IP Address – Our website hosting provider may collect your IP address. This will provide them with other information about you such as location (e.g. city or town) and your computer or mobile device (e.g. who your internet service provider is and what browsers, screen resolution and type or hardware you are using). The provider collects this information to ensure everything is working as it should. We do not have control over the data that the provider collects and they do not share it with us.
Cookies – Our website uses cookies to distinguish you from other users in order to provide increased functionality and service to you. A cookie is a small file of letters and numbers that is stored on your browser or the hard drive of your computer or permanent memory of your mobile device. Cookies alone will not identify you. You may block or restrict cookies by enabling your settings on your device or browser, this however may affect certain parts of the website and its services, and you may find the website does not function correctly or that certain functionality will not be available to you.
Google Analytics – Our website uses Google Analytics, a web analytics service provided by Google, Inc. (“Google”). Google Analytics uses cookies to analyse how visitors use the website. The information generated by the cookie about your use of the website (including your IP address) will be transmitted to and stored by Google on servers in the United States. We ask Google to provide the information to us about your IP address, language preferences and device and browser information which we use to improve our services. Google will use this information for its own purposes in accordance with its own privacy policy (https://www.google.co.uk/intl/en/policies/privacy/). You may refuse the use of Google Analytics cookies by selecting the appropriate settings on your browser; however, please note that if you do this you may not be able to use the full functionality of this website. Google has an Opt-out Browser Add-on to provide website visitors the ability to prevent their data from being used, please visit the following website for further information: https://tools.google.com/dlpage/gaoptout
If you use our chat functionality then we will store a copy of your message and any contact details that you provide to us. If we call or email you back then we will also keep a copy of our correspondence. These communications and your contact details are used to manage our relationship with you, deal with any requests that you make and to improve our service.
I didn’t qualify for the research programme
We collect some or all of the following information as part of the screening for eligibility to our research programme:
Age range
Phone type
Insulin usage
Insulin treatment
Blood glucose monitor
Country
Contact details
The amount of data we hold will depend on how we recruit you and how many questions you answered. We hold this data in HubSpot. We hold this information to keep you in the loop on any future research and other information that may be of interest.
If you consented to receive marketing from us we will hold this information on file until the point you may decide to opt-out. For further information on marketing preferences refer to the section under ‘Communication tools’ within this privacy policy.
If you request for your data to be deleted we will remove all data held with the exception to your contact details to ensure we do not communicate with you.
All items listed under ‘I am browsing your website’ also apply to you so we recommend you also review those.
I qualified for the research programme but I haven’t downloaded the NowPatient Diabetes app
We collect the following information as part of the screening for eligibility to our research programme and completion of the contractual NDA:
Age range
Phone type
Insulin usage
Insulin treatment
Blood glucose monitor
Address
Contact details
Digital signature
The amount of data we hold will depend on how we recruit you and how many questions you answered. We hold this data in HubSpot. We hold this information to provide you with access to the app, keep you in the loop on any future research and other information that may be of interest.
If you consented to receive marketing from us we will hold this information on file until the point you may decide to opt-out. For further information on marketing preferences refer to the section under ‘Communication tools’ within this privacy policy.
If you request for your data to be deleted we will remove all data held with the exception to the data held on the NDA, contact details and digital signature, which we keep for our legal obligations for 10 years.
We use TestFlight to give you access to the NowPatient Diabetes app. The data collected is your email address and your name.
All items listed under ‘I am browsing your website’ also apply to you so we recommend you also review those.
I qualified for the research programme and I am using the NowPatient Diabetes app
We will collect the following information for regulatory purposes as proof you are eligible for using the NowPatient Diabetes app, the NDA for our legal obligation and provide you with any support you may require:
Phone type
Insulin usage
Insulin treatment
Blood glucose monitor
Address
Contact details
Digital signature
All communications we have sent you and you to us
If you request to leave the research programme and do not want to be contacted by us we will remove all data, with the exception to the data held on the NDA, contact details and digital signature, which we keep for our legal obligations for 10 years.
We collect personal data automatically, and manually from you, when you use the NowPatient Diabetes app. Your personal data is used for the app to function properly and to investigate future in-app features. Any use of tracking tools by the NowPatient Diabetes app or by the owners of third-party services used by the NowPatient Diabetes app serves the purpose of providing the service required to you, in addition to any other purposes as described in this privacy policy. Below provides a list of the sources of data used by the NowPatient Diabetes app, the data collected and why we hold it:
User Entered Data – Whilst using the NowPatient Diabetes app, you will provide data to us. This is stored in a secure, encrypted format on your device and by our data processor Back4App. This includes the food you ate and when you ate it, blood sugar readings, activity performed, and also the insulin treatment used at any time. We also process data about your exercise or dietary intentions. When you set up the NowPatient Diabetes app, you will have told us what type of insulin you use. This data is used to provide the main functionality of the app, and help you make decisions around managing your diabetes. We also pseudonymise the data and use it for the purposes of developing more intelligent in-app features, for example, improving the relevance of the What’s Ahead graph and for regulatory purposes for identifying usage and benefits of the app.
Apple HealthKit – If you give it the necessary permissions, the NowPatient Diabetes app accesses and stores your data from Apple HealthKit. This is stored in a secure, encrypted format on your device and by our data processor Back4App. We process and store the below information:
Whether you’ve been active or not, the duration and distance of the activity
Workout data
All blood glucose values (mmol/L or mg/dL)
We store this for developing app features and complying with medical regulations. In the future we may store more data from Apple Health Kit, when this happens we will communicate the changes to you.
The lawful basis for processing this health data is based on your consent. You can withdraw your consent for processing at any time by contacting us on support@nowpatient.com
Back4App – User entered data and Apple HealthKit data is stored by our data processor Back4App. All data is transmitted from your device using the encrypted HTTPS protocol to ensure the safe transit of your data to Back4App. We have a signed Data Processing Agreement with them and rely on Standard Contractual Clauses when they transfer data outside of the EU. This means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
TestFlight – We use TestFlight to give you access to the NowPatient Diabetes app and release new versions. The data collected is:
Your email address
Your name
What version of the app you’ve installed
When you installed the latest version of the app
How frequently you interact with the app
Any crashes or feedback you report via the app
While the NowPatient Diabetes app is in beta phase we keep it for regulatory purposes in the case of removing non-target users and to improve the app experience. If you leave the research programme we will remove this data.
XCode – We use XCode to collect data about what happened on your device just before and during a crash. We use these so we can fix any issues with the NowPatient Diabetes app and improve your experience. We store this data for up to 3 months to allow adequate time to investigate and improve your experience.
The data collected is:
The version of iOS running on your phone
Device type
Version and build of the app
Information about what the app was doing when it crashed and when it happened
Firebase Crashlytics – We use Firebase Crashlytics to learn what happens when the app crashes or has performance problems. The data collected is:
how many users use the app and how frequently
number of users per country
versions of iOS and the NowPatient Diabetes app in use
devices being used to run the NowPatient Diabetes app
point-in-time, crash and logging data
We use this for regulatory purposes to ensure that the NowPatient Diabetes app continues to be safe to use.
Firebase Analytics is an analytics service provided by Google Inc. In order to understand Google’s use of Data, consult Google’s partner policy. This Application uses identifiers for mobile devices (Advertising Identifier for iOS, respectively) and technologies similar to cookies to run the Firebase Crashlytics service. Users may opt-out of certain Firebase features through applicable device settings, such as the device advertising settings for mobile phones.
Mixpanel – We use Mixpanel to learn how users are using the NowPatient Diabetes app. We have a view of what each of our individual users are looking at. The data collected is:
event data on how you use the app, for example, screen views or button presses in the NowPatient Diabetes app
city and country location
versions of iOS and the NowPatient Diabetes app in use
devices being used to run the NowPatient Diabetes app
We use this for regulatory purposes to provide evidence of safety and benefits and for product development.
Mixpanel is an analytics tool. We have agreed to their Data Processing Agreement and rely on Standard Contractual Clauses when they transfer data outside of the EU. This means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
If you have any concerns with how your data is being used or wish to opt-out please email us on support@nowpatient.com
HubSpot – we keep a store of these details for regulatory purposes, future app development and to provide you with any support you may require:
Insulin brand/s and method of administering
Blood glucose monitor
Country
Contact details
All communications we have sent you and you to us
HubSpot transfers data outside of the EU. We ensure they are signed up to the US Privacy Shield, which means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
Communication tools – we may use various tools to communicate with you to ensure you are provided with good service and you receive any support you may require. We will also use these tools to market to you if you have provided marketing consent. If you wish to opt-out of marketing consent at any time follow the unsubscribe link we make available in our communications. We ensure any tools we use that transfers data outside of the EU are considered by the EU as offering a level of data protection at least equal to GDPR requirements.
Interviews and surveys
We may interview you in person or via video call for research purposes. The data we gather includes, but is not limited to, your experience with the NowPatient Diabetes app and feedback on features or designs of the app. Before we start the interview we will explain that we will record the conversation and provide details on why, as set out below:
“We’d like to check if you are OK that we record this conversation and keep a copy of the audio on file. We use the recording to provide evidence for what our users think about the app and potential new features for medical regulation purposes. The recording is stored up to 10 years and is audited annually by external regulators.”
We transfer the audio recording to a third-party cloud hosting system in the US. We ensure they are signed up to the US Privacy Shield, which means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
From time to time, we may ask you to participate in surveys for research purposes, to get your feedback on your experience with the NowPatient Diabetes app and to help us measure its success. We ensure the survey tools we use offer a level of data protection at least equal to GDPR requirements, if outside of the EU.
CGM data reports
We may request copies of your personal CGM data reports containing summarised details of your CGM data. This information will be used as part of our responsibilities as a medical device provider to determine and develop the ongoing safety and benefits of the NowPatient Diabetes app. Providing this information is optional and not a requirement to use the NowPatient Diabetes app.
We will pseudonymise the information provided to remove personal information that directly identifies you. We will then transfer the reports to a third-party cloud hosting system in the US for storage. We ensure they are signed up to the US Privacy Shield, which means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
Slack
If you join our Slack Channel community, we use Slack as a data processor, which means it is NowPatient Diabetes, not Slack who controls your data. They are US-based but are signed up to US Privacy Shield, which means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
When you join Slack, other users in the Channel will be able to see your contact details as well as any discussion data that you add to the channel. This data is stored for 10 years for regulatory purposes.
All items listed under ‘I am browsing your website’ also apply to you so we recommend you also review those.
I have downloaded the NowPatient Diabetes app in the AppStore
We will collect the following information for regulatory purposes as proof you are eligible for using the NowPatient Diabetes app, for future app development and to provide you with any support you may require:
Phone type
Insulin usage
Insulin treatment
Blood glucose monitor
Contact details
Country
All communications we have sent you and you to us
We collect personal data automatically, and manually from you when you use the NowPatient Diabetes app. Your personal data is used for regulatory purposes, for the app to function properly and future app development. Any use of tracking tools by the NowPatient Diabetes app or by the owners of third-party services used by the NowPatient Diabetes app serves the purpose of providing the service required to you, in addition to any other purposes as described in this privacy policy.
If you have deleted the NowPatient Diabetes app, request for your information to be deleted and no longer wish to hear from us we will remove all data, with the exception to your contact details to ensure we no longer communicate with you.
Below provides a list of the sources of data used by the NowPatient Diabetes app, the data collected and why we hold it:
HubSpot – we keep a store of these details for regulatory purposes, future app development and to provide you with any support you may require:
Insulin brand/s and method of administering
Blood glucose monitor
Country
Contact details
All communications we have sent you and you to us
HubSpot transfers data outside of the EU. We ensure they are signed up to the US Privacy Shield, which means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
If you have downloaded the NowPatient Diabetes app in the AppStore but we currently do not support your personal setup, we will keep a copy of any details you provide where you’ve requested contact with future developments that support the details you’ve provided.
If we support your personal setup and you are using the NowPatient Diabetes app, the following data sources also apply to you: User Entered Data, Apple HealthKit, Back4App, XCode, Mixpanel and Communication tools. You can find details of the data collected and why we hold it under the section “I qualified for the research programme and I am using the NowPatient Diabetes app.”
I have investor interest in NowPatient Diabetes or have been contacted about investing in NowPatient Diabetes
If you have expressed interest in investing in NowPatient Diabetes or have been contacted about investing in NowPatient Diabetes, we will store a copy of the following contact details:
Your name
Your email address
Your telephone number
Your country of origin
We hold this information to keep you updated on investment opportunities. You can opt-out of investment contact from us at any time by emailing support@nowpatient.com
——-
Facebook uses cookies to track visitors to our business page. These cookies are set even if you do not have a Facebook account. They will track your Internet activities on and off Facebook. Despite the fact that only Facebook has access to the data from these cookies, not us, by creating and maintaining a Facebook business page, we are deemed responsible for the cookies being set. We have no way to prevent these cookies being used. We want to be as transparent as possible so you are aware of the way your data is being used by Facebook. For more information on Facebook’s data policies please refer to https://www.facebook.com/about/privacy/
AppsFlyer
We use AppsFlyer to learn how users find our app. We have a view of NowPatient Diabetes media users have seen, if the user interacted with the media, and whether that resulted in the NowPatient Diabetes app being installed. We cannot specifically identify you. The data collected is:
What advertisements you saw, and which ones you interacted with
If you installed the NowPatient Diabetes app, and how often you use the app
What versions of iOS and the NowPatient Diabetes app you use
Which geographic region you are from
The AppsFlyer iOS SDK may use identifiers for mobile devices (Advertising Identifier for iOS) to identify you. Users may opt-out of certain AppsFlyer features through applicable device settings, such as the device advertising settings for mobile phones.
AppsFlyer iOS SDK transfers data outside the EU. We ensure they are signed up the the US Privacy Shield, which means the EU considers that they offer a level of data protection at least equal to GDPR requirements.
Profiles
We carry out something called ‘profiling’ so we can understand the needs, behaviours and socio-demographic characteristics of our user base. This helps us make sure that we‘re offering the right research programme and services to the right people. Profiling also means we can tailor our offerings to you, enhancing your potential benefits. Profiling is also used to personalise features within the NowPatient Diabetes app to enhance your experience of the app by making features more personally relevant. The profiling we do is a combination of manual and automated.
Where we store your data
Some of the data that we collect may be transferred to and stored at a destination outside the European Economic Area (‘EEA’). We take all steps reasonably necessary to ensure that your data is treated in accordance with this privacy policy and applicable privacy laws.
Your rights
As a data subject you have certain rights under certain circumstances, your rights are listed below:
You have the right to know what personal data we are processing about you. This privacy policy explains the sorts of personal data that we may process about you, why and when
You have the right to have access to a copy of the personal data we hold about you
You have the right ask us to correct your personal data if it is inaccurate or incomplete
You have the right to ask us to delete your personal data where there is no legitimate reason for it to be processed
You have the right to stop us processing your personal data in certain ways (e.g. for marketing purposes)
You have the right to obtain a copy of your personal data for your own purposes and to move, copy or transfer it from one environment to another
You have the right to object to processing for purposes of direct marketing, profiling, and research in some circumstances
You have the right to object to the profiling of you without any manual human involvement (“automated decision making”)
If you want to exercise any of these rights, please contact us and we will investigate the matter and respond to you within one month. Sometimes we may tell you that we need to a longer period of time to deal with your request and we will let you know if that is the case and explain why.
If, at any time, you feel that we haven’t processed your data fairly or you’re not satisfied with how we’ve handled your personal information, you can contact the Information Commissioner’s Office, who will look into this for you. For full details about how to share any concerns you may have, visit www.ico.org.uk/make-a-complaint
Our ICO registration number is ZA075677.
Contact us
If you’d like to contact us about your data protection, please email support@nowpatient.com
Updates
Any changes we may make to our privacy policy in the future will be posted on this page – we recommend that you check back regularly. If the change is significant we will take steps to notify you. The version number and date released will always be listed below:
Version: 1.01
Latest update: 04 April 2024