Privacy Policy

Last updated: August 21, 2025

Eldercare Concierge ("we," "our," or "us") is committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our eldercare assessment and advisory platform (the "Service").

By accessing or using our Service, you acknowledge that you have read, understood, and agree to be bound by the terms of this Privacy Policy. If you do not agree with our policies and practices, your choice is not to use our Service.

This Privacy Policy applies to information we collect through our website, mobile applications, and other digital services, as well as information collected offline in connection with our services.

1. Information We Collect

1.1 Information You Provide Directly

We collect information you provide directly to us, including:

  • Account Information: Name, email address, phone number, professional credentials, company information
  • Profile Information: Professional bio, certifications, areas of expertise, profile photos
  • Family Assessment Data: Information about family members, care needs, living situations, relationships, and care preferences
  • Communication Data: Messages, feedback, survey responses, and other communications with us
  • Payment Information: Billing address and payment method details (processed securely through Stripe)
  • Support Information: Information provided when you contact customer support

1.2 Information Collected Automatically

When you use our Service, we automatically collect certain information, including:

  • Usage Information: Pages viewed, features used, time spent on platform, interaction patterns
  • Device Information: IP address, browser type, operating system, device identifiers
  • Location Information: General geographic location based on IP address
  • Log Information: Server logs, error reports, performance data
  • Cookies and Similar Technologies: Information collected through cookies, web beacons, and similar tracking technologies

1.3 Information from Third Parties

We may receive information from third-party sources, including:

  • Authentication Providers: Information from WorkOS and other authentication services
  • Payment Processors: Transaction information from Stripe
  • Professional Networks: Publicly available professional information
  • Analytics Providers: Usage analytics and performance data

2. How We Use Your Information

We use the information we collect for various purposes, including:

2.1 Service Provision

  • Creating and managing your account
  • Facilitating connections between advisors and families
  • Processing family assessments and generating AI-powered analyses
  • Creating personalized care reports and recommendations
  • Processing payments and managing billing
  • Providing customer support and responding to inquiries

2.2 Platform Improvement

  • Analyzing usage patterns to improve our services
  • Developing new features and functionality
  • Conducting research and analytics
  • Testing new services and features
  • Monitoring platform performance and reliability

2.3 Communication and Marketing

  • Sending service-related communications and updates
  • Providing educational content and resources
  • Sending marketing communications (with your consent)
  • Notifying you about platform changes or new features
  • Conducting surveys and collecting feedback

2.4 Legal and Security

  • Complying with legal obligations and requests
  • Protecting against fraud, abuse, and security threats
  • Enforcing our terms of service and policies
  • Resolving disputes and investigating violations
  • Maintaining audit trails and compliance records

3. Information Sharing and Disclosure

We may share your information in the following circumstances:

3.1 With Your Consent

We share information when you explicitly consent to such sharing, including connecting you with advisors or sharing assessment results with family members you designate.

3.2 Service Providers

We share information with trusted third-party service providers who assist us in operating our platform:

  • Payment Processing: Stripe for secure payment processing
  • Authentication: WorkOS for secure user authentication
  • Cloud Infrastructure: Cloud service providers for hosting and storage
  • Analytics: Analytics providers for platform insights
  • Communication: Email and messaging service providers
  • Customer Support: Support platform providers

3.3 Platform Users

Within our platform, we may share certain information:

  • Advisor profiles and credentials with families seeking services
  • Assessment results and reports with authorized family members
  • Communication between advisors and families through our platform
  • Aggregated, anonymized data for research and improvement purposes

3.4 Legal Requirements

We may disclose information when required by law or to:

  • Comply with legal process, court orders, or government requests
  • Protect against fraud, security threats, or illegal activities
  • Enforce our terms of service or other agreements
  • Protect the rights, property, or safety of our users or the public
  • Investigate and defend against legal claims

3.5 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity. We will provide notice of any such transfer and any changes to this Privacy Policy.

4. Data Security

We implement comprehensive security measures to protect your personal information:

4.1 Technical Safeguards

  • Encryption: Data encrypted in transit and at rest using industry-standard protocols
  • Access Controls: Role-based access controls and multi-factor authentication
  • Network Security: Firewalls, intrusion detection, and secure network architecture
  • Regular Updates: Security patches and system updates applied promptly
  • Monitoring: Continuous monitoring for security threats and vulnerabilities

4.2 Administrative Safeguards

  • Employee Training: Regular security and privacy training for all staff
  • Access Management: Strict access controls and regular access reviews
  • Incident Response: Comprehensive incident response and breach notification procedures
  • Vendor Management: Due diligence and security requirements for all vendors
  • Policy Compliance: Regular compliance audits and policy updates

4.3 Physical Safeguards

  • Secure data centers with physical access controls
  • Environmental controls and monitoring
  • Secure disposal of storage media
  • Background checks for personnel with data access

While we implement strong security measures, no system is completely secure. We cannot guarantee the absolute security of your information. You can help protect your account by using a strong password and not sharing your login credentials.

5. Data Retention

We retain your information for as long as necessary to provide our services and fulfill the purposes described in this Privacy Policy:

5.1 Active Accounts

  • Account Information: Retained while your account is active and for a reasonable period thereafter
  • Assessment Data: Retained to maintain service continuity and historical records
  • Communication Records: Retained for customer service and legal compliance purposes
  • Usage Data: Retained for analytics and service improvement (typically 2-3 years)

5.2 Account Deletion

When you delete your account or request data deletion, we will delete your personal information within 30 days, except where retention is required for legal, regulatory, or legitimate business purposes. Some anonymized, aggregated data may be retained for analytical purposes.

5.3 Legal Requirements

We may retain information longer when required by law, to comply with legal obligations, resolve disputes, enforce agreements, or protect our legal rights.

6. Your Privacy Rights

You have various rights regarding your personal information, subject to applicable law:

6.1 Access and Portability

  • Request access to your personal information
  • Receive a copy of your data in a portable format
  • View your account information and settings
  • Download your assessment data and reports

6.2 Correction and Updates

  • Update your account and profile information
  • Correct inaccurate personal information
  • Complete incomplete information
  • Request correction of assessment data

6.3 Deletion

  • Delete your account and associated data
  • Request deletion of specific information
  • Opt-out of marketing communications
  • Withdraw consent for data processing

6.4 Objection and Restriction

  • Object to certain types of data processing
  • Restrict how we use your information
  • Opt-out of automated decision-making
  • Limit data sharing with third parties

6.5 Exercising Your Rights

To exercise these rights, contact us at support@eldercareconcierge.ca or through your account settings. We will respond to your request within 30 days. We may need to verify your identity before processing certain requests.

7. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience on our platform:

7.1 Types of Cookies

  • Essential Cookies: Required for platform functionality, authentication, and security
  • Functional Cookies: Remember your preferences and settings
  • Analytics Cookies: Help us understand how you use our platform
  • Performance Cookies: Monitor platform performance and user experience

7.2 Managing Cookies

You can control cookies through your browser settings or our cookie preference center. Disabling certain cookies may limit platform functionality. Essential cookies cannot be disabled as they are necessary for security and basic operation.

7.3 Third-Party Tracking

Our platform may include third-party cookies from our service providers (Stripe, WorkOS, analytics providers). These third parties have their own privacy policies governing their use of your information.

8. Third-Party Services

Our platform integrates with several third-party services:

8.1 Payment Processing

We use Stripe to process payments. Stripe has access to payment information necessary to process transactions. Stripe's privacy policy governs their use of your payment information.

8.2 Authentication

We use WorkOS for secure authentication and single sign-on. WorkOS processes authentication information according to their privacy policy.

8.3 Analytics and Performance

We use analytics services to understand platform usage and improve our services. These services may collect information about your use of our platform and other websites.

8.4 Links to Other Sites

Our platform may contain links to other websites. We are not responsible for the privacy practices of external sites. We encourage you to review the privacy policies of any sites you visit.

9. International Data Transfers

Our platform operates globally, and your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws than your country.

9.1 Safeguards

When we transfer your information internationally, we implement appropriate safeguards to protect your data, including:

  • Contractual protections with service providers
  • Compliance with applicable data protection frameworks
  • Regular security assessments of international operations
  • Data minimization for international processing

9.2 Your Consent

By using our Service, you consent to the transfer of your information to the United States and other countries where we operate.

10. Children's Privacy

Our Service is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18. If we discover that we have collected information from a child under 18, we will delete it immediately.

If you are a parent or guardian and believe your child has provided personal information to us, please contact us immediately at support@eldercareconcierge.ca.

While our platform focuses on eldercare, assessment information may include details about adult children and their relationships with elderly family members. Such information is collected only with appropriate consent from adults.

11. Canadian Residents

If you are a Canadian resident, you have additional rights under the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial privacy laws:

11.1 Collection and Use

  • We collect personal information only for purposes that a reasonable person would consider appropriate
  • We obtain your consent before collecting, using, or disclosing personal information
  • We limit collection to information necessary for identified purposes
  • We use personal information only for the purposes for which it was collected

11.2 Your Rights

  • Right to know what personal information we have about you
  • Right to access your personal information
  • Right to correct inaccuracies in your personal information
  • Right to withdraw consent (subject to legal and contractual restrictions)
  • Right to file a complaint with the Privacy Commissioner of Canada

11.3 Complaints

If you have concerns about our privacy practices, please contact us first. If you are not satisfied with our response, you may file a complaint with the Privacy Commissioner of Canada at www.priv.gc.ca.

12. California Residents

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with additional rights regarding your personal information:

12.1 Categories of Information

We collect and process the following categories of personal information:

  • Identifiers (name, email, IP address)
  • Commercial information (payment history, preferences)
  • Internet activity (usage data, interactions)
  • Professional information (credentials, work history)
  • Inferences (preferences, characteristics)

12.2 Your CCPA Rights

  • Right to Know: Request information about our collection and use of your personal information
  • Right to Delete: Request deletion of your personal information
  • Right to Opt-Out: Opt-out of the sale of personal information (we do not sell personal information)
  • Right to Non-Discrimination: We will not discriminate against you for exercising your rights

12.3 Exercising CCPA Rights

To exercise your CCPA rights, contact us at support@eldercareconcierge.ca or call 1-800-XXX-XXXX. We will verify your identity before processing your request and respond within 45 days.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:

  • Update the "Last updated" date at the top of this policy
  • Notify you through email or platform notifications for material changes
  • Provide a summary of changes for significant updates
  • Obtain your consent if required by applicable law
  • Maintain previous versions for reference

Your continued use of our Service after changes take effect constitutes acceptance of the revised Privacy Policy. If you do not agree to the changes, you should discontinue use of our Service.

13.1 Material Changes

For material changes that significantly affect how we use your personal information, we will provide at least 30 days advance notice and may require your explicit consent.

14. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

Privacy Officer

Email: support@eldercareconcierge.ca

Phone: 1-800-XXX-XXXX

Address:

Eldercare Concierge
Privacy Department
123 Main Street
Toronto, ON M5V 3A8
Canada

14.1 Response Times

  • General inquiries: 5 business days
  • Privacy rights requests: 30 days
  • Data breach notifications: As required by law
  • Urgent security matters: 24-48 hours

14.2 What to Include

When contacting us about privacy matters, please include:

  • Your full name and email address associated with your account
  • A clear description of your request or concern
  • Any relevant account or transaction information
  • Your preferred method of response

We are committed to addressing your privacy concerns promptly and transparently. Thank you for trusting Eldercare Concierge with your personal information.

Eldercare Concierge