Your info is yours and yours alone. That is why we prioritize protecting your sensitive data and assuring safety and security throughout your data’s journey from the device, to your mobile phone, and to our secure cloud storage. This includes protections such as encryption, secure cloud storage, permission-based access, regular backups, and periodic intrusion testing. Furthermore, it is critical to follow best practices and comply with relevant regulations, such as HIPAA for healthcare-related data, GDPR, and the ISO 27001 standard.
CardioMood secures your health data using independently validated end-to-end encryption and zero-access encryption, both on the Bluetooth connection between the device and the phone and in the cloud. This safeguards against data breaches and ensures that no one (including CardioMood) has access to your data unless you choose to share it.
CardioMood is established and located in Switzerland. Which means that all of your data is secured by stringent Swiss privacy regulations and Swiss neutrality.
The Health Insurance Portability and Accountability Act, or HIPAA, covers data protection policies and standards in the US healthcare system, specifically for the protection of health information. HIPAA establishes privacy and security criteria such as physical, technical, and administrative safeguards. HIPAA is intended to preserve the confidentiality, integrity, and availability of health information while also respecting individuals’ rights to privacy and control.
CardioMood is completely GDPR compliant, which means that we adhere to the standards outlined in the General Data Protection Regulation (GDPR) to secure individuals’ personal data within the European Union (EU). When it comes to health data, GDPR demands that it be recognized as a distinct category of data that requires additional safeguards. Overall, GDPR establishes stringent rules for the processing, storage, and transfer of personal data, including health data, in order to preserve individuals’ privacy and data control.
ISO 27001 is a widely accepted international standard for information security management systems. While ISO 27001 focuses on information security, it also includes rules for protecting personal information privacy. CardioMood can benefit from compliance with these standards in the management of privacy risks, compliance with data protection rules, and the confidentiality, integrity, and availability of personal health information.
Cookie | Duration | Description |
---|---|---|
__stripe_mid | 1 year | Stripe sets this cookie cookie to process payments. |
__stripe_sid | 30 minutes | Stripe sets this cookie cookie to process payments. |
cookielawinfo-checkbox-advertisement | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to record the user consent for the cookies in the "Advertisement" category . |
cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
CookieLawInfoConsent | 1 year | Records the default button state of the corresponding category & the status of CCPA. It works only in coordination with the primary cookie. |
elementor | never | This cookie is used by the website's WordPress theme. It allows the website owner to implement or change the website's content in real-time. |
PHPSESSID | session | This cookie is native to PHP applications. The cookie is used to store and identify a users' unique session ID for the purpose of managing user session on the website. The cookie is a session cookies and is deleted when all the browser windows are closed. |
viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
Cookie | Duration | Description |
---|---|---|
_ym_visorc | 30 minutes | Yandex sets this cookie to allow the site's Session Replay to function correctly. |
ymex | 1 year | Yandex sets this cookie to collect information about the user behaviour on the website. This information is used for website analysis and for website optimisation. |
yuidss | 1 year | Yandex stores this cookie in the user's browser in order to recognize the visitor. |
Cookie | Duration | Description |
---|---|---|
_ym_d | 1 year | Yandex sets this cookie to store the date of the users first site session. |
_ym_isad | 20 hours | Yandex sets this cookie to determine if a visitor has ad blockers. |
_ym_uid | 1 year | Yandex sets this cookie to identify site users. |
CONSENT | 2 years | YouTube sets this cookie via embedded youtube-videos and registers anonymous statistical data. |
yabs-sid | session | Yandex sets this cookie to store the session ID. |
yandexuid | 1 year | Yandex sets this cookie to identify site users. |
Cookie | Duration | Description |
---|---|---|
i | 10 years | This cookie is set by OpenX to record anonymized user data, such as IP address, geographical location, websites visited, ads clicked by the user etc., for relevant advertising. |
NID | 6 months | NID cookie, set by Google, is used for advertising purposes; to limit the number of times the user sees an ad, to mute unwanted ads, and to measure the effectiveness of ads. |
sync_cookie_ok | 1 day | This cookie is set by the provider WebVisor. This cookie is used for marketing purposes. |
Cookie | Duration | Description |
---|---|---|
sync_cookie_csrf | 10 minutes | This cookie is set by the Yandex metrica. This cookie is used to monitor the connection with the website and third party Data Management Platforms. The cookie also collects information on the user behaviour on the website which is used for optimizing the website. |