Privacy Policy
Effective Date: February 22, 2026
1. Introduction
Airgap Gate ("we," "us," or "our") is committed to protecting the privacy and security of your information. This Privacy Policy describes how we collect, use, disclose, and safeguard information when you use our AI-powered prior authorization intelligence service ("Service").
2. Information We Collect
We may collect the following types of information:
- Account Information: Name, email address, organization name, and role when you register or join our waitlist.
- Usage Data: Information about how you interact with the Service, including features used, pages visited, and session duration.
- Clinical Data: De-identified or authorized clinical data submitted through the Service for prior authorization analysis, including diagnosis codes, drug information, and documentation metadata.
- Device Information: Browser type, operating system, IP address, and device identifiers.
3. HIPAA Compliance
Airgap Gate is designed to operate in compliance with the Health Insurance Portability and Accountability Act (HIPAA). When processing Protected Health Information (PHI), we act as a Business Associate and will enter into a Business Associate Agreement (BAA) with covered entities. We implement administrative, physical, and technical safeguards to protect PHI in accordance with the HIPAA Security Rule.
4. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service.
- Generate prior authorization predictions, documentation guidance, and analytics.
- Communicate with you about service updates, security alerts, and support.
- Train and improve our machine learning models using de-identified, aggregated data only.
- Comply with legal obligations and enforce our Terms of Service.
5. Data Sharing and Disclosure
We do not sell your personal information. We may share information with:
- Service Providers: Trusted third-party vendors who assist in operating the Service, subject to confidentiality obligations.
- Legal Requirements: When required by law, subpoena, or government request.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with appropriate notice.
6. Data Security
We implement industry-standard security measures to protect your information, including encryption in transit and at rest, access controls, audit logging, and regular security assessments. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Data Retention
We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this policy. Clinical data submitted for analysis is retained in accordance with applicable healthcare record retention requirements. You may request deletion of your account and associated data by contacting us.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate information.
- Request deletion of your personal information.
- Object to or restrict certain processing activities.
- Receive a copy of your data in a portable format.
To exercise these rights, contact us at hello@airgap.health.
9. Demo and Synthetic Data
Our demo environment uses entirely synthetic (fictitious) patient data for demonstration purposes. No real patient data is used in the demo. Synthetic data is generated algorithmically and does not correspond to any real individuals.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated effective date. We encourage you to review this policy periodically.
11. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us at hello@airgap.health.