Privacy Policy
LymeLess Privacy Policy
Version 2.0
Last Update: September 2024
This notice describes how Personal Data (defined below) and/or health information about you may be used and disclosed and how you can obtain access to this information. Please review it carefully.
INTRODUCTION
We at LymeLess, LLC (“we”, “us”, “the Company”, or “LymeLess”) value your privacy and are committed to keeping your personal data confidential. We use your data solely in the context of providing the first intelligent care management platform designed specifically for patients treating Lyme Disease (the “App”) and the LymeLess website (the “Website”), which include features like our Lyme-literate AI assistant, a community and peer-to-peer feature, that enables users to communicate with each other by posting information, comments, messages, and images about their Lyme Disease journey, informational materials and resources, clinician referrals, a personal health record, and tools for comprehensive treatment management, symptom tracking, and tracking treatment progress (collectively, the “Services”).
Privacy Policy Applicability
This Privacy Policy applies to Personal Data that LymeLess collects from users of the LymeLess App and Website (“Users”). The term “Personal Data” includes any information that can be used on its own or with other information in combination to identify or contact one of our Users.
We believe that privacy and transparency about the use of your Personal Data are of utmost importance. In this Privacy Policy, we provide you with detailed information about our collection, use, maintenance, and disclosure of your Personal Data. The Privacy Policy explains what kind of information we collect, when and how we might use your Personal Data, how we protect Personal Data and your rights regarding your Personal Data.
For additional information related to how we use and disclose your Personal Data, please contact our Privacy Officer at privacy@lymeless.com.
Note regarding third-party sites: Our Services may contain links to other sites that are not operated by LymeLess. If you click a third-party link, you will be directed to that third party’s site. We strongly advise you to review the privacy policy(ies) for every site you visit. LymeLess has no control over and assumes no responsibility for the content, privacy policies, or practices of any third-party sites or services. This Privacy Policy does not apply to your use of or access to any third-party sites or services.
Agreement to Privacy Policy Terms
BY ACCESSING AND/OR USING THE APP OR WEBSITE, YOU ARE ACKNOWLEDGING THAT YOU HAVE READ AND AGREE TO THE TERMS OF THIS PRIVACY POLICY. IF YOU DO NOT AGREE, YOU MUST IMMEDIATELY CEASE USING THE APP AND WEBSITE.
Privacy Policy Updates
Please note that we occasionally update this Privacy Policy, and it is your responsibility to stay up to date with any amended versions. We will provide prior notice of material changes to this Privacy Policy by posting the revised Privacy Policy on the Website, and on the App’s login page(s) and notifying you via email. Changes will be effective immediately and will apply to all Personal Data that we maintain, use, and disclose. If you continue to use the App and/or Website following such notice, you are agreeing to those changes.
Account Deletion
If at any point you no longer agree to the use and disclosure of Personal Data, as described in this Privacy Policy, you can delete your user account by sending a deletion request to privacy@lymeless.com with the following information:
-
Your login email address; and
-
A statement that you are requesting account deletion.
Questions or Concerns
If you have any questions or concerns after reading this Privacy Policy, please do not hesitate to contact us at privacy@lymeless.com. We appreciate your feedback.
COLLECTION AND USE OF PERSONAL DATA
What Personal Data Does LymeLess Collect?
We collect four types of information from our Users: (i) demographic data; (ii) health data; (iii) support data; and (iv) technology use data. Each category of data is explained in depth below.
Demographic Data: LymeLess collects demographic data from Users, which may include, but not be limited to, your name, phone number, and e-mail address. The collection of this demographic data is primarily used to create your User Account, which you can use to securely receive the Services.
Health Data: In addition to demographic information, we will collect information regarding your health conditions, including, but not limited to, images, age, gender, weight, height, medical history, and symptoms. We collect this information to provide you with the Services.
Support Data: If you contact us for support or to lodge a complaint, we may collect technical or other information from you through log files and other technologies, some of which may qualify as Personal Data (e.g., IP address). Such information will be used for the purposes of troubleshooting, customer support, software updates, and improvement of the App and Website and related Services in accordance with this Privacy Policy. Calls with LymeLess may be recorded or monitored for training, quality assurance, customer service, and reference purposes.
Technology Use Data: We use common information-gathering tools, such as log files, cookies, web beacons, and similar technologies to automatically collect information, which may contain Personal Data from your computer or mobile device as you navigate the App and Website or interact with emails or other communications we have sent you. The information we collect may include your IP address (or proxy server), device and application identification numbers, location, browser type, Internet service provider and/or mobile carrier, the pages, and files you viewed, your searches, your operating system, and system configuration information, and date/time stamps associated with your usage. This information is used to analyze overall trends, help us provide and improve our Services, and ensure the proper functioning and security of the App and Website.
How Will LymeLess Use Your Personal Data?
LymeLess processes your Personal Data based on legitimate business interests, the fulfillment of our Services to you, compliance with our legal obligations, and/or your consent. We only use or disclose your Personal Data when it is legally mandated or where it is necessary to fulfill those purposes described in this Privacy Policy. Where required by law, we will ask for your prior consent before disclosing your Personal Data to a third party.
More specifically, LymeLess processes your Personal Data for the following legitimate business purposes:
-
To provide Services (e.g., to store data with a third-party hosting vendor)
-
To fulfill our obligations to you under the Terms of Use
-
To communicate with you about and manage your User Account
-
To properly store and track your data within our system
-
To respond to lawful requests from public and government authorities, and to comply with applicable state/federal law, including cooperation with judicial proceedings and court orders
-
To protect our rights, privacy, safety, or property, and/or that of you or others by providing proper notices, pursuing available legal remedies, and acting to limit our damages
-
To handle technical support and other requests from you
-
To enforce and ensure your compliance with our Terms of Use or the terms of any other applicable services agreement we have with you
-
To manage and improve our operations and the App and Website, including the development of additional functionality
-
To manage payment processing
-
To evaluate the quality of service you receive, identify usage trends, and improve your user experience
-
To keep our App and Website safe and secure
-
To send you information about changes to our terms, conditions, and policies
-
To allow us to pursue available remedies or limit the damages that we may sustain
Does LymeLess Use Personal Data for Analytics?
LymeLess uses third-party service providers to monitor and analyze the use of the App and Website as part of our Services. The analytics services we use may include, but are not limited to: Google Analytics, Firebase Crashlytics, behavioral remarketing, Google Ads, Bing Ads remarketing services, and Facebook.
Where Is Personal Data Processed?
The Personal Data we collect through the App and Website will be stored on secure servers in the United States. Personal Data may be transmitted to third parties, which parties may store or maintain the data on their secure servers. These third parties are not permitted to transfer your Personal Data outside of the United States. The App is “native” to your device, meaning information you enter into the App may also be stored directly on the device that you use to access and enter information into the App.
With Whom Does LymeLess Share Personal Data?
We may share your personal information with the following categories of individuals/entities:
Business Partners and Vendors: We share Personal Data with a limited number of partners, service providers, and other persons/entities who help run our business (“Business Partners”). Specifically, we may employ third-party companies and individuals to facilitate our Services, provide Services on our behalf, perform Services-related functions, or assist us in analyzing how our Services are used. Our Business Partners are contractually bound to protect your Personal Data and to use it only for the limited purpose(s) for which it is shared. Business Partners’ use of Personal Data may include, but is not limited to, the provision of services such as data hosting, IT services, customer services, and payment processing.
Our Advisors: We may share your Personal Data with third parties that provide advisory services to LymeLess, including, but not limited to, our lawyers, auditors, accountants, and banks (collectively, “Advisors”). Personal Data will only be shared with Advisors if LymeLess has a legitimate business interest in the sharing of such data.
Third Parties Pursuant to Business Transfers: In the event of a reorganization, merger, sale, joint venture, assignment, transfer, or other disposition of all or any portion of LymeLess’s corporate entity, assets, or stock (including in connection with any bankruptcy or similar proceedings), we may share your Personal Data with a third party.
Government and Law Enforcement Authorities: If reasonable and necessary, we may share your Personal Data to (i) comply with legal processes or enforceable governmental requests, or as otherwise required by law; (ii) cooperate with third parties in investigating acts or omissions that violate this Privacy Policy or the Terms of Use; or (iii) bring legal action against someone who may be violating the Terms of Use or who may be causing intentional or unintentional injury or interference to the rights or property of LymeLess or any third party, including other users of our Services.
How Long Does LymeLess Retain Personal Data?
LymeLess retains your Personal Data only if necessary and as required for our business operations, the provision of Services, archival purposes, and/or to satisfy legal requirements. The exact period of retention will depend on: (i) the amount, nature, and sensitivity of the Personal Data; (ii) the personal risk of harm for unauthorized use or disclosure; (iii) the purposes for which we process your Personal Data, including whether those purposes can be achieved through other means; and (iv) business operations and legal requirements. In general, LymeLess strives to retain your identifiable data for no longer than 5 years after your Account is closed (the “Retention Period”); however, the above factors may extend or decrease this Retention Period.
At the end of the applicable Retention Period, we will remove your Personal Data from our databases and will require that our Business Partners remove any identifiable Personal Data from their databases. If there is any data that we are unable to delete entirely from our systems for technical reasons, we will put in place appropriate measures to prevent any further processing of such data. Please note that once we disclose your Personal Data to third parties, we may not be able to access that Personal Data and we cannot force the deletion or modification of such information by third parties.
LymeLess and its Business Partners reserve the right to continue using de-identified data indefinitely, even after Personal Data has been removed from LymeLess’s databases. We may continue to disclose de-identified data to third parties in a manner that does not reveal personal information, as described in this Privacy Policy. Our continued use of de-identified data will comport with applicable law.
What Happens to Personal Data Submitted by Minors?
LymeLess does not knowingly collect Personal Data from individuals under the age of 18. Additionally, our Services are not directed to individuals under the age of 18. We request that these individuals not provide Personal Data to us. If we learn that Personal Data from users under the age of 18 has been collected, we will deactivate the User Account associated with that data and take reasonable measures to promptly delete such data from our records. If you are aware of a user under the age of 18 accessing the App, please contact us at privacy@lymeless.com.
Personal Data of individuals under the age of 18 may be entered into our App or Website by a parent or legal guardian of such individuals. If we learn that Personal Data from individuals under the age of 18 has been collected directly from the minor person instead of the minor’s person’s parent or legal guardian, we will deactivate the User Account associated with the data and take reasonable measures to promptly delete such data from our records. If you are aware of a user under the age of 18 improperly accessing the App, please contact us at privacy@lymeless.com.
If you are a resident of California under the age of 18 and have registered for a User Account with us, you may ask us to remove content or information that you have posted to the App by contacting us at privacy@lymeless.com. Please note that your request does not ensure complete or comprehensive removal of the content or information, as, for example, some of your content may have been reposted by another user.
PROTECTION OF PERSONAL DATA
Is Personal Data Secure?
LymeLess understands the importance of data confidentiality and security. We use industry standard security controls for organizations of similar size to (i) maintain the security and integrity of your Personal Data; (ii) protect against any threats or hazards to the security or integrity of your Personal Data; and (iii) protect against unauthorized access to or use of such information in our possession or control that could result in substantial harm to you.
While LymeLess uses reasonable security controls, WE CANNOT GUARANTEE OR WARRANT THAT SUCH TECHNIQUES WILL PREVENT UNAUTHORIZED ACCESS TO YOUR PERSONAL DATA. LYMELESS IS UNABLE TO GUARANTEE THE SECURITY OR INTEGRITY OF PERSONAL DATA TRANSMITTED OVER THE INTERNET, AND THERE IS NO GUARANTEE THAT YOUR PERSONAL DATA WILL NOT BE ACCESSED, DISCLOSED, ALTERED, OR DESTROYED BY BREACH OF ANY OF OUR SAFEGUARDS. ACCORDINGLY, WE DO NOT AND CAN NOT ENSURE OR WARRANT THE SECURITY OR INTEGRITY OF ANY PERSONAL DATA YOU TRANSMIT TO US. YOU ASSUME THE RISK THAT UNAUTHORIZED ENTRY OR USE, HARDWARE OR SOFTWARE FAILURE, AND OTHER FACTORS MAY COMPROMISE THE SECURITY OF YOUR PERSONAL DATA AT ANY TIME.
What Safeguards Does LymeLess Have in Place to Secure Personal Data?
LymeLess stores Personal Data on secured servers and uses a combination of technical, administrative, and physical safeguards to protect your personal information. Such safeguards include, but are not limited to, authentication, encryption, backups, and access controls.
How Can Users Protect Their Personal Data?
You are solely responsible for preventing unauthorized access to your devices and your User Account by protecting your account credentials and limiting access to your devices. LymeLess has no access to or control over your device’s security settings, and it is your responsibility to implement any device-level security features and protections you feel are appropriate (e.g., password protection, encryption, remote wipe capability). We recommend that you take all appropriate steps to secure any device that you use to access our App and Website.
Please note that LymeLess will never send you an email requesting confidential information, such as account numbers, usernames, passwords, or Social Security Numbers. If you receive a suspicious email from LymeLess, please notify us at privacy@lymeless.com.
Further, if you know of or suspect any unauthorized use or disclosure of your User Account information or any other security concern, please notify LymeLess immediately.
What If LymeLess Experiences a Data or Security Breach?
LymeLess takes the security of your Personal Data seriously. In the event of a data or security breach, LymeLess will take the following actions: (i) promptly investigate the security incident, validate the root cause, and, where applicable, remediate any vulnerabilities within LymeLess’s control which may have given rise to the security incident; (ii) comply with laws and regulations directly applicable to LymeLess in connection with such security incident; (iii) as applicable, cooperate with any affected LymeLess user or client in accordance with the terms of LymeLess’s contract with such user or client; and (iv) document and record actions taken by LymeLess in connection with the security incident and conduct a post-incident review of the circumstances related to the incident and actions/recommendations taken to prevent similar security incidents in the future. LymeLess will notify you of any data or security breaches as required by and in accordance with applicable law.
ADVERTISING, MARKETING, AND TRACKING
Does LymeLess Send Marketing or Advertisement Materials?
LymeLess may use your Personal Data to contact you via email with newsletters, marketing, or promotion materials, and other information that may be of interest to you after you have opted in to said newsletters, marketing, or promotional materials. You may opt-out of receiving any marketing or advertisement materials from LymeLess at any time by following the unsubscribe link in the email or by contacting us.
Can Users Opt-Out of Receiving Communications from LymeLess?
We may send communications, including emails, to you regarding your User Account or access to the Website or the App. You can choose to filter any LymeLess emails using your email settings, but we do not provide an option for you to opt-out of these communications.
If you consent to receive marketing or other communications not related to your User Account or the Website, we will provide you with the option to opt-out of such marketing communications within the applicable message.
Under California Civil Code sections 1798.83-1798.84, California residents are entitled to ask for and obtain from us an annual list identifying the categories of personal customer information which we shared, if any, with our affiliates and/or third parties in the preceding calendar year for marketing purposes. This list will be provided free of charge. Contact information for such affiliates and/or third parties must be included. If you are a California resident and would like a copy of this notice, please submit a written request to the following address:
LymeLess, LLC
40 W 55th St, Apt 3C
New York, New York 10019
What Is LymeLess’s Cookie Policy?
What are Cookies? Cookies are small data files that are placed on your computer or mobile device when you visit a website. Cookies are widely used by website owners to make their websites work, or to work more efficiently, as well as to provide reporting information. We use cookies for several reasons. Some cookies are required for technical reasons in order for our Website to operate, and we refer to these as "essential" or "strictly necessary" cookies. Other cookies also enable us to track and target the interests of our users to enhance the experience on our Website. Third parties serve cookies through our Website for analytics and other purposes.
Types of Cookies We Use:
-
Essential Cookies: These cookies are strictly necessary for the Website to function and cannot be disabled. They are usually set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in, or filling in forms.
-
Performance and Analytics Cookies: These cookies collect information about how you use our Website, such as which pages you visit most often and if you receive error messages from web pages. These cookies do not collect information that identifies a visitor. All information these cookies collect is aggregated and therefore anonymous. It is only used to improve how the Website works.
-
Functional Cookies: These cookies allow the Website to remember choices you make (such as your username, language, or the region you are in) and provide enhanced, more personal features. The information these cookies collect may be anonymized, and they cannot track your browsing activity on other websites.
-
Targeting Cookies: These cookies are used to deliver advertisements more relevant to you and your interests. They are used to limit the number of times you see an advertisement as well as help measure the effectiveness of the advertising campaign. They are usually placed by advertising networks with the website operator’s permission. They remember that you have visited a website, and this information is shared with other organizations such as advertisers.
How we use Cookies. Presently, LymeLess may use cookies for purposes including, but not limited to:
-
Advertising. The Website integrates cookies for conversion tracking & remarketing
-
Website Analytics. The Website integrates cookies for analytics on Website use and performance
-
3rd Party Integrations. We also use cookies to enable 3rd party integrations on our Website, such as fillable forms that may use cookies to restore any previously filled form information
How Can Users Opt-Out of Cookies?
You have the right to decide whether to accept or reject cookies. You can set or amend your web browser controls to accept or refuse cookies. If you choose to reject cookies, you may still use our website, though your access to some functionality and areas of our site may be restricted. Most web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies if you prefer. Additionally, you can enable the "Do Not Track" (DNT) feature in your browser settings, which sends a signal to websites requesting that your browsing activity not be tracked. Please refer to your browser's help menu for more information on how to manage your cookie settings and DNT signals. LymeLess is committed to remaining apprised of DNT standards. However, LymeLess does not support DNT browser settings and does not currently participate in any DNT frameworks that would allow LymeLess to respond to signals or other mechanisms regarding the collection of your personal information.
STATE PRIVACY RIGHTS
Depending on what state you live in, you may have rights in addition to the rights listed above. These rights may include:
-
Right to access a copy of your Personal Data.
-
Right to correction of your Personal Data.
-
Right to delete your Personal Data from our Services.
-
Right to receive your Personal Data in a structured, commonly used and machine-readable format.
-
Right to opt out of certain uses of your Personal Data.
-
Right to prohibit our collection of Personal Data if it isn’t relevant and necessary to providing you Services.
If you would like to learn more and/or exercise one or more of these rights, please contact us at privacy@lymeless.com.
​