Last Updated: January 27, 2026 Effective Date: October 1, 2025
Applies To: All Authenticated Users of the airPM Remote Patient Monitoring Platform
airPM LLC ("Company", "we", "us") provides this Platform Privacy Notice to explain how we collect, use, and disclose information about Authorized Users (including clinicians, administrators, staff, and patients) who access our secure SaaS platform.
1.1. Business Associate Status. We operate as a Business Associate to the healthcare entity that authorized your access (the "Medical Practice" or "Covered Entity").
1.2. Patient Data (PHI). While this Platform processes Protected Health Information (PHI), the medical content within the Platform is governed by:
1.3. Scope of this Notice. This Privacy Notice governs your use of the Platform software (e.g., login credentials, device security, audit logs, and technical interaction). In the event of any conflict between this Privacy Notice and the BAA regarding the handling of PHI, the terms of the BAA shall control.
We collect specific data about you (the user logging in) to maintain security and compliance.
2.1. Account Information.
2.2. Audit Logs & Activity Data (Mandatory). To comply with the HIPAA Security Rule (45 CFR § 164.312(b)), we automatically record detailed audit logs of your activity within the Platform, including:
2.3. Device & Connection Information.
Unlike our public marketing website, the authenticated Platform does not use third-party advertising cookies or tracking pixels (such as Google Analytics, Facebook Pixel, or LinkedIn Insights). We do not track your activity across other websites once you log out of the Platform.
We use the information collected from Authorized Users to:
We do not sell the personal information of our Authorized Users. We may disclose your information:
5.1. SMS Consent & Mobile Number Privacy. Notwithstanding any other provision in this Privacy Notice, mobile telephone numbers and SMS consent data collected by the Platform will not be shared with any third parties or affiliates for marketing or promotional purposes. All other categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties. For the avoidance of doubt, the above allows sharing with our service providers (such as our SMS aggregator) solely for the purpose of delivering the messages required for the Service.
6.1. Security Measures. We utilize industry-standard encryption (HTTPS/TLS 1.2+) for data in transit and AES-256 encryption for data at rest. Access controls ensure you only see data relevant to your organization or your own care.
6.2. Retention of Logs. Your user activity logs (Audit Trails) are retained for a minimum of ten (10) years to support legal and compliance requirements, after which they are securely deleted.
If you have questions about this Platform Privacy Notice or how your account data is handled, please contact:
airPM LLC
Email: support@airpm.io