Privacy Policy
Last updated: October 9, 2025
Verumetrix (“Verumetrix,” “we,” “us,” or “our”) provides performance marketing and related services to healthcare and wellness organizations. We respect your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you visit verumetrix.com (the “Site”), contact us, or interact with our services (together, the “Services”).
If you are a client that engages us to process data on your behalf, our processing is also governed by the applicable service agreement and, where required, a data processing addendum (“DPA”) and/or a Business Associate Agreement (“BAA”). When a BAA applies, it controls our handling of protected health information (“PHI”) to the extent of any inconsistency with this Policy.
1) Scope and who we are
This Policy applies to information we collect about visitors, leads, prospective clients, vendors, and other contacts. It does not apply to third‑party websites or services that we do not control.
Controller/Business: Verumetrix
Contact: dmytro@verumetrix.com
2) Information we collect
We collect the following categories of personal information:
-
Identifiers and contact details such as name, email address, phone number, company, job title, and region.
-
Commercial and engagement data such as inquiries, proposals, contracts, billing preferences, and records of Services requested or considered.
-
Internet / device information such as IP address, device and browser type, pages viewed, referring/exit pages, timestamps, and approximate location derived from IP.
-
Marketing and communications data such as your preferences and interactions with our emails, forms, and ads.
-
User‑generated content you choose to send us (messages, files, notes in forms).
-
Inferences drawn from the above to improve relevance of content and Services.
We do not intentionally collect sensitive personal information via the Site. We do not seek to collect PHI through our marketing Site or forms. If PHI is processed as part of client Services, it is handled under a BAA and not for marketing purposes.
3) Sources of information
-
Directly from you when you complete forms, request a demo, download content, or correspond with us.
-
Automatically when you access the Site (via cookies, pixels, and similar technologies).
-
From third parties such as analytics providers, advertising networks, business partners, or public sources.
4) How we use information
We use personal information to:
-
Provide, operate, and improve the Site and Services;
-
Respond to inquiries, provide proposals, and manage client relationships;
-
Personalize content, measure campaign performance, and perform analytics;
-
Send administrative messages and marketing communications (where permitted);
-
Detect, prevent, and address security or technical issues and enforce terms;
-
Comply with legal obligations and protect our rights.
Legal bases (EEA/UK): We rely on one or more of the following: your consent; performance of a contract or steps prior to entering a contract; our legitimate interests (for example, improving and protecting our Services, marketing to relevant professionals); and compliance with legal obligations.
5) Cookies, analytics, and ads
We and our service providers use cookies, pixels, local storage, and similar technologies to run the Site, remember choices, analyze traffic, and deliver or measure ads. Categories include: strictly necessary, performance/analytics, functional, and targeting/advertising.
Choices: You can manage cookies through your browser settings and, where available, through our on‑site Cookie Settings controls. Blocking some cookies may impact Site functionality. If your browser sends a Global Privacy Control (GPC) signal, we will treat it as a request to opt out of cross‑context behavioral advertising to the extent required by applicable law.
6) When we disclose information
We disclose personal information to:
-
Service providers/processors who help us operate the Site and deliver Services (hosting, analytics, communications, security, billing, customer support, and similar). They may access information only to perform services for us and must protect it.
-
Business partners involved in co‑marketing or referrals, where permitted by law.
-
Professional advisors and authorities when necessary for compliance, legal claims, audits, or protection against harm.
-
Corporate transactions such as mergers, acquisitions, financing, or sale of assets. Information may be transferred as part of that transaction, subject to appropriate safeguards.
We do not sell personal information for money. We may “share” personal information for cross‑context behavioral advertising as defined by certain U.S. state laws. See Your privacy rights below for opt‑out options.
7) International data transfers
We are based in jurisdictions that may not provide the same level of data protection as your home country. When we transfer personal data from the EEA/UK or other regions with data transfer restrictions, we rely on appropriate safeguards such as Standard Contractual Clauses and additional measures where necessary.
8) Data retention
We retain personal information for as long as needed to fulfill the purposes described in this Policy, including to meet legal, accounting, or reporting requirements. We determine retention by considering the amount, nature, and sensitivity of the data, potential risk of harm, the purposes of processing, and applicable legal requirements. When data is no longer needed, we will delete or anonymize it.
9) Security
We maintain reasonable administrative, technical, and physical safeguards designed to protect personal information. No method of transmission or storage is perfectly secure. If we learn of a security incident that affects your information, we will notify you where required by law.
10) Your privacy rights
Your rights depend on where you live. To exercise any right, email dmytro@verumetrix.com. We may need to verify your identity and request additional information.
EEA/UK residents
You may have the right to request access, rectification, erasure, restriction, portability, and to object to processing based on our legitimate interests or direct marketing. Where we rely on consent, you can withdraw it at any time. You also have the right to lodge a complaint with your local supervisory authority.
U.S. state privacy laws (e.g., California, Colorado, Connecticut, Virginia, Utah)
Depending on your state, you may have rights to:
-
Know/access and obtain a portable copy of personal information;
-
Correct inaccuracies;
-
Delete personal information;
-
Opt out of sales, sharing for cross‑context behavioral advertising, and certain profiling; and
-
Appeal a denial of your request (where applicable).
We will not discriminate against you for exercising your rights. Authorized agents may submit requests where permitted, subject to verification and proof of authority.
Opt‑out of targeted ads / “sale” or “sharing”: You can request that we stop using or disclosing your personal information for cross‑context behavioral advertising by emailing dmytro@verumetrix.com with the subject line “Do Not Sell or Share My Personal Information.” Where available, you can also use on‑site controls or your browser’s GPC signal.
California “Notice at Collection”
We collect the categories listed below for the business or commercial purposes described in How we use information and When we disclose information. We retain them as described in Data retention.
Category (CPRA)ExamplesSoldShared for Cross‑Context Ads
Identifiersname, email, IP addressNoPossibly, for ads measurement
Commercial inforecords of Services consideredNoNo
Internet activitypages viewed, device data, referrersNoPossibly, for ads measurement
Geolocation (coarse)city/region from IPNoPossibly, for ads measurement
Inferencesinterest segmentsNoPossibly, for ads personalization
We do not knowingly sell or share personal information of consumers under 16.
11) Children’s privacy
The Site is intended for business professionals. We do not knowingly collect personal information from children under 13 (or under 16 in certain jurisdictions). If you believe a child has provided us personal information, contact us so we can delete it.
12) HIPAA/PHI
Verumetrix does not use the Site to collect PHI. If, as part of client Services, we receive PHI, we act as a Business Associate and process PHI solely as permitted in a BAA. PHI is not used for marketing unless expressly authorized by the individual in accordance with HIPAA.
13) Third‑party links and services
The Site may link to third‑party websites, plug‑ins, and services. We do not
control those third parties and are not responsible for their privacy practices