PRIVACY POLICY & NOTICE OF PRIVACY PRACTICES (HIPAA)

Effective Date: March 27, 2026

Promise Pharmacy LLC (“Promise Pharmacy,” “we,” “us,” or “our”) operates the website located at www.promisepharmacy.com (the “Site”) and provides pharmacy related products, services, support, communications, and related business tools and services (collectively, the “Services”). This Privacy Policy & Notice of Privacy Practices explains how we collect, use, disclose, and safeguard information when you visit our Site, communicate with us, submit information through our systems, or otherwise interact with our Services.
This notice also describes how medical information about you may be used and disclosed and how you can access that information. Please review it carefully.

1. Information We Collect

We may collect the following categories of information:

a. Information You Provide Directly

We may collect personal and business information you voluntarily provide to us, including:

Name, email address, phone number, mailing address, company name, clinic name, and professional details

Information submitted through contact forms, onboarding forms, ordering processes, support requests, and other communications.

Payment and billing related information necessary to process transactions, although payment card data may be processed by third party payment processors and not stored directly by us.

Information contained in communications with us by phone, email, SMS, portal submission, or other means

Information related to prescriptions, patient support, and pharmacy services that may be submitted by clinics, providers, or other authorized parties.

b. Information Collected Automatically

When you access the Site, we may automatically collect certain information, including:

  • Cookie and similar tracking technology data.
  • Approximate location data derived from IP address.
  • IP address, browser type, device type, operating system, referring URLs, pages viewed, and interaction data.

c. Information from Third Parties

We may receive information from third parties, including:

  • Clinics, providers, and business partners.
  • Payment processors such as Authorize.net.
  • Service providers supporting communications, analytics, hosting, customer service, and system operations.

2. Our Pledge Regarding Health Information

Promise Pharmacy understands that health information about patients is personal. We are committed to protecting medical information and maintaining reasonable safeguards designed to protect it. We may create and maintain records relating to the care and services provided through pharmacy operations in order to provide services, support patients and providers, and comply with legal and regulatory obligations.

3. How We May Use and Disclose Health Information

In connection with pharmacy operations, clinics and authorized providers may submit prescription related and other health related information through our systems or workflows. We may use and disclose such information as reasonably necessary for the following purposes:

a. Treatment

We may use and disclose health information to provide, coordinate, or manage pharmacy related care and services. For example, we may communicate with prescribing providers to clarify prescription information.

b. Payment

We may use and disclose health information so that services may be billed and payment may be collected from the appropriate person or entity, including patients, providers, clinics, insurers, or other responsible parties.

c. Health Care Operations

We may use health information to operate the pharmacy, improve workflows, review service quality, evaluate staff performance, maintain records, and support operational and compliance activities.

d. Other Permissible Uses and Disclosures

We may also use or disclose information:

  • As required by law
  • For public health and safety purposes where legally permitted or required
  • In response to court orders, legal process, or regulatory requests
  • To prevent fraud, abuse, unauthorized access, or unlawful activity
  • To fulfill authorized requests submitted by clinics, providers, patients, or other authorized parties

4. How We Use Your Information More Broadly

We may use the information we collect to:

  • Provide, operate, and maintain our Site and Services
  • Process orders, payments, and related transactions
  • Communicate with clinics, providers, business prospects, customers, patients, and other authorized contacts
  • Send operational, transactional, service related, and support communications
  • Send SMS or other communications related to business outreach, service coordination, support, or patient communications where requested or otherwise permitted
  • Respond to inquiries, support requests, and customer service needs
  • Verify information and prevent fraud, abuse, or unauthorized activity
  • Comply with legal, regulatory, contractual, and operational requirements
  • Analyze usage trends and improve our Site, systems, workflows, and services

5. SMS Communications

We may use SMS messaging for business communications, including outreach to prospective business contacts, service related updates, and patient communications where requested or otherwise authorized.

Message frequency may vary. Message and data rates may apply depending on the recipient’s carrier and plan. Recipients may opt out of SMS communications where applicable by replying STOP or by contacting us directly. Consent to receive SMS communications is not a condition of purchase.

6. Cookies and Tracking Technologies

We may use cookies, pixels, web beacons, and similar technologies to improve user experience, analyze traffic, understand usage patterns, and support Site functionality. You may manage cookie preferences through your browser settings, although some features may not function properly if cookies are disabled.

7. Sharing of Information

We do not sell personal information. We may share information with:

  • Service providers that support hosting, communications, payment processing, analytics, customer service, CRM, and related operations.
  • Payment processors such as Authorize.net in connection with billing and payment activities.
  • Business partners, providers, clinics, or authorized parties where necessary to provide the Services or fulfill authorized requests.
  • Law enforcement, regulators, courts, or governmental authorities where required by law or legal process.
  • Successors, acquirers, or affiliates in connection with a merger, acquisition, financing, reorganization, or sale of assets.

8. Data Retention

We retain information for as long as reasonably necessary to provide the Services, fulfill the purposes described in this policy, comply with legal and regulatory obligations, resolve disputes, enforce agreements, and maintain appropriate business and operational records.

9. Security

We implement reasonable administrative, technical, and physical safeguards designed to protect information from unauthorized access, disclosure, alteration, and destruction. However, no method of transmission over the internet or electronic storage is completely secure, and we cannot guarantee absolute security.

10. Your Rights Regarding Health Information and Personal Information

Depending on applicable law and the nature of the information involved, you may have rights regarding access to, correction of, deletion of, restriction of, or accounting for certain information.

Where applicable, patients may have rights to:

  • Inspect and copy certain health information.
  • Request amendments to certain health information.
  • Request an accounting of certain disclosures.
  • Request restrictions on certain uses or disclosures.
  • To exercise applicable rights, please contact us using the information below. We may need to verify your identity before processing certain requests.

11. Third Party Links and Services

Our Site and Services may contain links to third party sites or rely on third party platforms and tools. We are not responsible for the privacy practices, content, legality, accuracy, or security of third party services.

12. Children’s Privacy

Our Site and Services are not directed to children under 18, and we do not knowingly collect personal information directly from children through the Site for consumer use. If you believe we have collected such information in error, please contact us.

13. State Availability

Promise Pharmacy services may not be available in all states. At this time, services are not available in AL, AR, CA, LA, MA, MN, MS, SC, VA, and TX. Availability may change based on licensing, regulatory, operational, or legal requirements.

14. Changes to This Notice

We may update this Privacy Policy & Notice of Privacy Practices from time to time. If we make material changes, we will post the updated version on the Site with a revised effective date. Continued use of the Site or Services after such changes constitutes acceptance of the revised version.

15. Complaints

If you believe your privacy rights have been violated, you may file a complaint with Promise Pharmacy or with the U.S. Department of Health and Human Services where applicable. All complaints should be submitted in writing. You will not be penalized for filing a complaint.

16. Contact Us

If you have questions or concerns about this Privacy Policy & Notice of Privacy Practices, please contact us at:

Promise Pharmacy LLC

31818 US Hwy 19 N

Palm Harbor, FL 34684

United States

Email: privacy@promisepharmacy.com

General Contact: info@promisepharmacy.com

Phone: 727-772-0500

Website: www.promisepharmacy.com