Last updated: [DATE] · [BUSINESS LEGAL NAME] · Contact: [EMAIL].
If you purchase the Personal Benefits Audit, we collect only what's needed to deliver it: your name and contact information, payment confirmation (processed by our payment provider — we never see full card numbers), and the household, income, asset, and program information you choose to share so we can prepare your audit. Some of this is sensitive personal and financial information.
Only to deliver the service you bought — preparing your action plan, assisting with permitted applications, and supporting you. We do not sell your information, and we do not share it with third parties except: (a) the specific benefit programs you ask us to help you apply to, with your direction; and (b) service providers (e.g., our payment processor) under confidentiality obligations.
We maintain a Written Information Security Program as required by Massachusetts 201 CMR 17.00, including encryption of personal information in transit and at rest, access limited to those who need it, and secure disposal. [Attorney/operator to confirm the WISP is implemented before collecting any data.]
We keep your information only as long as needed to provide the service (and any renewal you elect) or as required by law, then securely delete it. You may request a copy or deletion of your information at any time by contacting [EMAIL].
In the unlikely event of a security breach involving your personal information, we will notify you and the appropriate Massachusetts authorities as required by M.G.L. c.93H.
We are not a HIPAA covered entity. Although we may ask about Medicare or disability status to identify benefits, we are not your healthcare provider or insurer.