# Privacy Policy

Qaia MD Global Care Journeys LLC

Last Updated: [11/11/2024]

1. Introduction

This Privacy Policy outlines how Qaia MD Global Care Journeys LLC ("we," "our," or "us"), handles both general and protected health information (PHI) in connection with our medical travel consultancy services. As a healthcare business associate under HIPAA, we are committed to protecting your privacy and maintaining the security of your health information.

2. Information We Collect

2.1 Protected Health Information (PHI)

- Medical history and conditions

- Treatment plans and preferences

- Healthcare provider communications

- Medical records and documentation

- Insurance information (if applicable)

2.2 General Information

- Contact information (name, email, phone number)

- Travel preferences and requirements

- Payment information

- Device and usage information

* Browser type and version

* IP address and location data

* Time zone setting

* Operating system

* Device identifiers

* Usage patterns and preferences

3. HIPAA Compliance & Your Rights

Under HIPAA, you have the right to:

- Access your health information

- Request corrections to your information

- Receive a copy of your records

- Request restrictions on information sharing

- Receive confidential communications

- Be notified of any data breaches

- File a complaint regarding privacy practices

- Obtain a copy of this privacy notice

4. Legal Basis for Processing

We process your information based on:

- HIPAA compliance requirements

- Your explicit consent

- Necessity for service provision

- Legal obligations

- Legitimate business interests

5. How We Use Information

5.1 Health Information Uses

- Coordinating medical travel arrangements

- Communicating with healthcare providers

- Processing necessary documentation

- Ensuring continuity of care

- Meeting regulatory requirements

5.2 General Information Uses

- Processing authorized transactions

- Improving service quality

- Communicating about services

- Protecting legal rights

- Preventing abuse

6. Information Sharing & Disclosure

6.1 HIPAA-Compliant Sharing

We may share PHI with:

- Authorized healthcare providers

- Business associates with signed agreements

- Regulatory authorities when required

- Emergency contacts (with authorization)

6.2 General Information Sharing

We may share non-PHI when:

- You explicitly request it

- It's necessary for services

- Required by law

- Needed to protect legal rights

7. Security Measures

We implement HIPAA-required safeguards including:

- Administrative controls

- Physical security measures

- Technical safeguards

- Encryption of electronic PHI

- Access controls

- Audit procedures

- Employee training

8. International Data Transfers

As a medical travel consultancy:

- Information may be transferred internationally

- We ensure appropriate safeguards

- We comply with international data protection laws

- We maintain HIPAA compliance across borders

9. Data Retention

We retain information:

- As required by HIPAA regulations

- As needed for service provision

- To meet legal requirements

- To resolve disputes

- To protect our legal interests

10. Special Considerations

10.1 Medical Information

- Handled according to HIPAA standards

- Extra security measures applied

- Strict access controls

- Regular compliance monitoring

10.2 Children's Privacy

- Services not directed to under-18

- No knowing collection of minor data

- Parent/guardian consent required

11. Breach Notification

In case of a data breach:

- We will notify affected individuals

- Provide details of the breach

- Outline steps taken to protect information

- Offer guidance on protecting yourself

- Report to authorities as required

12. Changes to This Policy

- Updates posted with new "Last Updated" date

- Material changes notified via email

- Continued use indicates acceptance

13. Contact Information

For privacy inquiries:

- Email: info.qaiamd@gmail.com

- Address: 1722 Randons Point Dr, Sugar Land, Texas, 77478

- Phone: +1 (979) 336 2681

14. Additional Rights for European Residents

GDPR rights include:

- Right to be informed

- Right of access

- Right to rectification

- Right to erasure

- Right to restrict processing

- Right to data portability

- Right to object

- Rights regarding automated decision-making

15. Legal Disclosure

Information disclosed if required:

- To comply with laws

- To protect rights or property

- To prevent wrongdoing

- To protect personal safety

- To defend against liability

16. Governing Law

This Privacy Policy is governed by United States law and HIPAA regulations. Disputes shall be subject to the exclusive jurisdiction of the courts of the United States.

---

Note: This privacy policy combines general privacy practices with HIPAA compliance requirements. Regular review and updates may be necessary to maintain compliance with evolving regulations.

Spanish:

Japanese:

Arabic: