Privacy Policy

Effective Date: December 2, 2025
Last Updated: December 2, 2025

1. Introduction & Scope

Welcome to Aperion Health. We are a healthcare spend optimization company providing value-based navigation and personalized support to help members make informed healthcare decisions while reducing costs.

This Privacy Policy describes how Aperion Health collects, uses, maintains, and discloses information collected from users of our website, mobile applications, and services.

For members using healthcare navigation services, a separate HIPAA Notice of Privacy Practices is available at /privacy/hipaa-notice.

This policy applies to:

  • Website visitors browsing aperion.health
  • Portal members using healthcare navigation services
  • Employers and plan sponsors partnering with Aperion Health
  • Individuals contacting us or participating in wellness programs

2. Information We Collect

We collect information needed to provide, improve, and secure our healthcare services.

Protected Health Information (PHI):

  • Health assessments, risk evaluations, and wellness program participation
  • Medical history, diagnoses, treatments, and medications
  • Insurance, claims, eligibility, and benefit information
  • Care navigation interactions and support activity

Personal and account information:

  • Name, email, phone number, and address
  • Demographics and employer/group affiliation
  • Account credentials and communication preferences

Technical and usage information:

  • Device, browser, and IP information
  • Usage analytics, pages visited, and session data
  • Cookies and similar technologies
  • System diagnostics and security logs

3. How We Use Your Information

We use your information to deliver healthcare navigation, member support, and wellness services.

Primary service uses:

  • Healthcare navigation and personalized recommendations
  • Care coordination and provider guidance
  • Member communication, service updates, and support
  • Program analytics and quality improvement

HIPAA-permitted uses of PHI:

  • Treatment activities
  • Payment and claims-related processing
  • Healthcare operations such as quality review and care programs

Compliance and protection:

  • Meeting legal and regulatory obligations
  • Preventing fraud, abuse, and security threats
  • Responding to valid legal or governmental requests

4. How We Share Your Information

Important: We never sell PHI. Sharing occurs only for lawful, permitted purposes.

We do not sell Protected Health Information. Information is shared only as permitted by law and this policy.

Sharing scenarios:

  • With your authorization for specific purposes
  • For treatment, payment, and healthcare operations
  • With business associates under contractual protections
  • As required by law, public health, oversight, or legal process

Employer and plan sponsor protections:

  • Employers receive aggregate or de-identified reporting
  • Individual PHI is not shared with employers without authorization or explicit legal allowance

5. Data Security

Aperion Health uses administrative, technical, and physical safeguards to protect your information.

  • Encryption in transit and at rest
  • Access controls and role-based permissions
  • Security monitoring and periodic assessments
  • Employee privacy and HIPAA training
  • Business Associate Agreements with vendors handling PHI

Retention:

  • PHI is retained according to HIPAA and applicable legal requirements
  • Data is securely deleted when no longer required

6. Your Privacy Rights

Members may have rights to access, amend, restrict, and request accounting of certain disclosures of PHI.

Key rights include:

  • Access and obtain copies of information
  • Request amendment of inaccurate information
  • Request restrictions and confidential communications
  • Request data portability and deletion where legally permitted

Contact to exercise rights:

  • Aperion Health Privacy Officer
  • Phone: (612) 208-7537
  • Email: info@aperion.health

7. Cookies & Tracking Technologies

We use cookies and similar technologies for core functionality, analytics, and service improvement.

Analytics data does not include Protected Health Information from secure member workflows.

  • Essential cookies for platform functionality and security
  • Analytics cookies for website performance and usage trends
  • Preference cookies for user experience improvements

8. Children's Privacy

Our services are not directed to individuals under 18. We do not knowingly collect personal information from children under 18.

10. Policy Changes

This policy may be updated to reflect operational, legal, or regulatory changes.

Material updates will be posted with a revised date and may also be communicated through member channels.

11. Contact Information

Questions or requests about this Privacy Policy can be directed to the Aperion Health Privacy Officer.

  • Minneapolis, Minnesota
  • Phone: (612) 208-7537
  • Email: info@aperion.health
  • Member Portal: portal.aperion.health/login

For PHI-specific information, see the HIPAA Notice of Privacy Practices at /privacy/hipaa-notice.