1. Introduction
This Privacy Policy explains how Stunning Vistas 501(c)(3), doing business as KidneyRelief.Life ("we", "us", "our") collects, uses, discloses, and protects information when you visit kidneyrelief.life, register for our masterclass, complete our patient intake form, contact us, or otherwise interact with our services.
We are based at 12112 Almeda Rd #A5, Houston, TX 77045, USA. For privacy questions, contact care@kidneyrelief.life.
By using this site, you agree to the practices described in this policy. If you do not agree, please do not use our services.
2. Information We Collect
2.1 Information you provide directly
- Masterclass registration: first name, email address, optional mobile number.
- Patient intake form: name, contact information, date of birth, gender, address, CKD stage, medical history, current medications, lab values, symptoms, doctors involved in your care, caregiver/emergency contact information, treatment goals, and the consent acknowledgements you sign. This data constitutes Protected Health Information ("PHI") under U.S. HIPAA law and is handled accordingly — see Section 7 below.
- Contact form: name, email, subject, and the message you write.
- Email correspondence: when you write to us at care@kidneyrelief.life, we receive your name, email address, and the contents of your message.
2.2 Information collected automatically
- Server logs: IP address, browser type, operating system, referring URL, pages visited, and timestamps. Used for security, debugging, and aggregate analytics.
- Cookies and similar technologies: small files placed on your device by us and our third-party partners. See Section 4.
- Analytics data: page views, scroll depth, click events, session duration. Aggregated for site improvement.
2.3 Information we do not collect
- Reading our blog does not require you to identify yourself. Blog readership is anonymous.
- We do not collect biometric data, social security numbers (other than what may appear in PHI you provide via intake), or precise geolocation.
3. How We Use Your Information
- To deliver the masterclass: send confirmation, Zoom link, reminder emails, and post-class follow-ups.
- To provide clinical care: review intake submissions, build personalized care plans, coordinate with treating clinicians, and send personalized clinical follow-up.
- To respond to inquiries: reply to contact form messages and emails.
- To improve the site: aggregate analytics on what content is read, how visitors move through the site, and where the experience can be improved.
- To comply with legal obligations: maintain records required by HIPAA, IRS 501(c)(3) reporting, and other applicable law.
- To prevent abuse: detect spam, fraud, and security threats.
We do not sell or rent your personal information to third parties. Ever.
4. Cookies, Analytics, and Advertising
4.1 Cookies we set
- Strictly necessary cookies: session and CSRF tokens required for forms to work.
- Analytics cookies: Google Analytics 4 (or equivalent) to understand aggregate site usage.
4.2 Third-party cookies and ad networks
Our site may display advertising served by Mediavine, an advertising network. Mediavine and its advertising partners use cookies and similar technologies to deliver, measure, and personalize advertising. Mediavine works with vendors that may use device identifiers and may engage in personalized or interest-based advertising.
You can learn more about Mediavine's privacy practices at mediavine.com/privacy-policy and manage your ad preferences via:
- Digital Advertising Alliance opt-out
- Network Advertising Initiative opt-out
- Your Online Choices (EU)
4.3 Browser controls
Most browsers let you refuse or accept cookies through settings. Disabling cookies may affect form functionality. We honor "Do Not Track" signals where technically feasible.
5. Third-Party Services
We use the following third-party services to operate the site. Each is governed by its own privacy policy.
- Medplum — HIPAA-eligible electronic medical record (EMR) for storing patient intake submissions. Covered under a Business Associate Agreement (BAA).
- SendGrid (or equivalent SMTP provider) — transactional email delivery for masterclass and intake follow-ups.
- Mediavine — advertising network (see Section 4.2).
- Google Analytics — aggregate site analytics (anonymized IP).
- Zoom — live masterclass webinar platform. Zoom may collect attendance data per its own privacy policy.
- AWS or equivalent cloud provider — site and backend hosting; HIPAA-eligible services covered under BAA where PHI is involved.
6. Your Rights
6.1 If you are in the European Economic Area, the United Kingdom, or Switzerland (GDPR)
You have the right to: access your data; correct inaccuracies; request deletion ("right to be forgotten"); restrict or object to processing; data portability; and lodge a complaint with your local data protection authority. To exercise any of these rights, email care@kidneyrelief.life.
6.2 If you are a California resident (CCPA / CPRA)
You have the right to: know what personal information we collect; delete personal information we hold about you; correct inaccurate information; opt out of the sale or sharing of personal information (we do not sell personal information); limit the use of sensitive personal information; and not be discriminated against for exercising any of these rights. To exercise any right, email care@kidneyrelief.life with the subject line "CCPA Request".
6.3 All users
You can unsubscribe from marketing emails at any time using the unsubscribe link in any email or by emailing care@kidneyrelief.life. You can request a copy or deletion of your account data at any time.
7. HIPAA Note — for Patient Intake Submissions
Information you submit through the patient intake form is Protected Health Information (PHI) under the U.S. Health Insurance Portability and Accountability Act (HIPAA). We treat this information with the safeguards HIPAA requires:
- Encrypted in transit (TLS) and at rest (AES-256).
- Stored in a HIPAA-eligible EMR (Medplum) under a signed Business Associate Agreement.
- Access restricted to Dr. Priya and authorized clinical staff with role-based access controls.
- Audited via tamper-evident access logs.
- Never used for marketing without your written authorization.
- Disclosed only as permitted by HIPAA Privacy Rule (treatment, payment, healthcare operations) or as required by law.
Browsing the public website and reading the blog are not HIPAA-covered activities — they are anonymous content consumption.
8. Children's Privacy
This site is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has submitted information to us, please contact care@kidneyrelief.life and we will promptly delete it. The patient intake form may be completed by a parent or guardian on behalf of a minor patient; in that case the adult is the responsible submitting party.
9. Data Security
We implement administrative, physical, and technical safeguards designed to protect your information, including TLS encryption in transit, AES-256 encryption at rest for sensitive fields, role-based access controls, audit logging, regular security review, and Business Associate Agreements with our HIPAA-eligible vendors. No security measure is 100% impenetrable; we cannot guarantee absolute security but we work continuously to maintain industry-standard protections.
10. Data Retention
Marketing data (masterclass registrations, contact form messages) is retained for as long as the relationship is active and for up to 24 months after last engagement. PHI is retained per applicable medical-records retention law (typically 7 years from the date of last service in Texas; longer for minors). On request, we will delete data outside any legally-required retention window.
11. International Data Transfers
We are based in the United States and our servers and vendors are primarily U.S.-based. If you access the site from outside the U.S., your information may be transferred to, stored, and processed in the U.S. By using our services you consent to that transfer. For EEA/UK users, we rely on Standard Contractual Clauses with our processors where applicable.
12. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page reflects the most recent revision. Material changes will be communicated via prominent notice on the site or by email. Continued use of the site after a change indicates your acceptance.
13. Contact
For any privacy question, request, or concern, contact us at:
- Email: care@kidneyrelief.life
- Phone: (832) 439-6212
- Mail: Stunning Vistas 501(c)(3), Attn: Privacy, 12112 Almeda Rd #A5, Houston, TX 77045, USA