Privacy Statement
Quit&Fit is an Internet based tool designed to empower people to become
tobacco-free in conjunction with the Healthyroads tobacco cessation program.
Quit&Fit is made available through Healthyroads, Inc., a subsidiary of
American Specialty Health Incorporated (“ASH”). Quit&Fit values its
users and respects their privacy. We collect user information in an effort to
improve the user shopping experience and to communicate information about our
products and services. Quit&Fit is committed to using user information
responsibly. Quit&Fit will not sell or rent any online information provided
by a user to third parties.
The following privacy statement discloses the privacy policy for Quit&Fit by
describing:
-
The personal information Quit&Fit.com may collect;
-
Why the personal information is collected;
-
How the personal information will be used;
-
The choices users have about the collection and use of personal information.
For any questions about this privacy statement, please contact us directly.
Quit&Fit will respond to any questions within 10 business days from the
date of receipt. Contact Quit&Fit directly through any means noted at the
end of this privacy statement.
If information practices change, Quit&Fit will post the revised policy on
Quit&Fit.com or will notify users through direct communication.
What kind of information does Quit&Fit.com collect upon Opt-in?
The information collected may be considered Protected Health Information (PHI)
and Personally-Identifiable Information (PII). Quit&Fit collects only the
minimum PHI and PII necessary in order to complete an online request.
What sections of Quit&Fit.com collect PHI and PII?
Quit&Fit collects PHI or PII in the Store, Site Registration Page Member
Page, , Self Assessment Trackers, including the Getting Started Health
Assessment and the Contact Us sections of the Quit&Fit site.
-
The Store requires name, e-mail address, mailing address, phone, and credit
card numbers when an order is placed.
-
Registering with the site requires name, DOB and e-mail address.
-
Quit&Fit Member Page requires name, date of birth, gender, and e-mail.
-
Trackers require various health information.
-
The Request an appointment section requires a phone number.
-
The Contact Us page requires name, e-mail address, and comment.
In addition, a record of the user’s online purchases is maintained. As is
common with business practice, this information may be maintained indefinitely.
Why is PHI and PII collected?
PHI and PII is used solely to address users’ requests regarding the Store, Site
Registration Page, Self Assessments, Trackers, including the
Getting Started QuitPlan, and the Contact Us sections of the Quit&Fit site.
The QuitandFit.com site will identify the sole reasons for collecting PHI and
PII at the time of submittal.
A user may always choose not to provide PHI and PII. However, should there be a
refusal to provide PHI and PII, QuitandFit.com will not be able to perform some
requested functions.
How does Quit&Fit use PHI and PII?
Quit&Fit collects PHI and PII (including, but not limited to name, e-mail
address, mailing address, and/or telephone number) when the user commences
communications with Quit&Fit.
PHI and PII is used for a number of reasons:
-
When information is submitted in the Store the information is used to complete
the order process. E-mails are sent to confirm orders. Quit&Fit will
communicate via phone or U.S. Mail with questions regarding orders. When
registering with Quit&Fit users may choose to receive e-mails regarding our
products and services. Quit&Fit may also send notices about our products
and services through U.S. mail.
-
When information is submitted while registering with the Quit&Fit site the
information can only be seen in a secure location in the My Account section and
a unique User ID is created to coincide with the registration information.
-
Quit&Fit requires PII to create an account to gain access to special
features on the site and for billing purposes.
-
Many sections within the Quit&Fit site have the option for the user
to submit additional PII or PHI. These sections request users to enter various
health metrics such as weight and body measurements and this information is
utilized to provide users with individualized health results. These trackers
are optional and at any time the user may discontinue use of any on-line tools.
-
The Quit&Fit site also features a secure on-line Message Center for users
to communicate with Health Educators. Users receive automated messages about
the status of telephone appointments and correspond directly with health
educators about their progress. Health Educators will always include their
professional signature, i.e. their name, credentials and title so the user will
know when they are interacting with a health professional.
-
The Request an Appointment feature of the site requires a phone number in order
for the Health Educator to contact the user at the scheduled time.
-
After removal from an e-mail or mail list ASH will maintain names(s) in a “do
not mail” file to ensure the request is honored.
The Getting Started Assessment tools do not store PHI. Information submitted
using this application is to determine health status.
What information does Quit&Fit share with third parties?
As stated previously, Quit&Fit will not sell, trade, or rent any online
information provided to third parties. Quit&Fit uses an outside shipping
company for orders placed on the Quit&Fit.com site. A credit card
processing company bills users for goods and services. These companies do not
retain, share, store or use any PII for any secondary purposes. In addition,
Quit&Fit may provide reputable third party vendors with aggregate
statistics regarding users, sales, Quit&Fit site traffic patterns and
related site information. The information provided will not include PHI or PII,
meaning there will be no personal information. In addition, Quit&Fit may
release account information when Quit&Fit believes, in good faith, that
such release is reasonably necessary to:
(i) Comply with law; or
(ii) Enforce or apply the terms of any of our user agreements; or
(iii) Protect the rights, property or safety of Quit&Fit, our users or
others.
How to Opt-Out of collection of PHI or PII?
To Opt-Out of providing PHI or PII while using Quit&Fit.com, contact
Quit&Fit directly using the service@QuitandFit.com
or the contact information provided at the end of this privacy statement,
rather than using the Contact Us form.
Limitations on amendment, deletion, or removal of information
Members maintain the right to amend PHI or PII if the member believes the PHI or
PII is inaccurate or incorrect. A request for an amendment must be made in
writing on American Specialty Health Affiliates’ (ASHA) Member Request to Amend
Protected Health Information form, available online or upon request through the
contact information at the end of this privacy statement. Failure to fully
complete all sections of the form may result in the form being returned to you.
Response to the request for amendment will be issued within 30 days of receipt
of the completed form. However, ASHA may obtain one 30-day extension by sending
the member a written notice stating the reason for the delay and the expected
date of the response.
ASHA may deny the member’s amendment request under the following circumstances:
-
The PHI or PII is accurate and complete.
-
The request for amendment was made verbally.
-
The request does not state a reason for the amendment
-
ASHA did not create the PHI or PII, unless the originator is not available to
act on the request.
PHI and PII cannot be removed from the system and will be retained for a minimum
of 7 years in accordance with the record retention policy. User accounts,
however, may be disabled upon written request, using the contact information at
the end of this privacy statement.
How to remove information from e-mail, phone and U.S, mailing lists?
Quit&Fit communicates with users only if requested. If the preference is to
not receive information from Quit&Fit contact Quit&Fit directly through
any means noted at the end of this privacy statement. Quit&Fit staff will
need to contact the user for order confirmation. The user may be contacted via
phone, e-mail or U.S. Mail for questions regarding his/her order.
How does Quit&Fit protect the privacy of minors?
Quit&Fit is concerned about the safety of children when they use the
Internet. If Quit&Fit becomes aware that a subscriber is under the age of
18 and has registered without prior parental consent, we will remove his or her
PII from our files.
What are cookies? How does Quit&Fit use cookies on its site?
A cookie is a small data file that Web sites often store on a computer's hard
drive when their sites are visited. A cookie may contain information (such as a
unique user ID), that is used to track the pages of the sites visited.
Quit&Fit.com uses cookies, but the cookies do not store PII.
Cookies are used on Quit&Fit.com in order to improve the shopping
experience. Cookies are used in the following ways:
-
To help keep track of orders during the time of shopping.
-
When registered users return to the Web site by providing access to their
account information.
-
To monitor and maintain information about use of the site. Quit&Fit
monitors and maintains information about registered and non-registered users in
such a way that does not identify the user. In either case, this information
helps Quit&Fit serve customers better by improving the site design, as well
as the products and services offered on the Web site.
-
To track and maintain the identity of the Web site a user visited immediately
prior to Quit&Fit.com to further improve site design and to fulfill
contracts with our business partners. Quit&Fit does not otherwise track any
information about the use of other Web sites.
Quit&Fit uses three cookies. None of these cookies store or maintain any
PII. The first two cookies are browser-level session cookies, which give users
a single sign-on experience. For example, users do not need to log in more than
once if they keep their browser open. These cookies are used to identify if a
user has agreed to the User Agreement for Dietary Supplement Interaction Guide.
These cookies will be destroyed when the user closes his/her open browsers. The
last cookie is to identify the user’s current shopping bag. This persistent
cookie is necessary to add the user’s chosen products into the proper shopping
bag, this cookie is automatically destroyed after 60 days.
Users can refuse cookies by turning them off in their browser. When cookies are
turned off, Quit&Fit will not be able to track orders or complete the
ordering process.
How does Quit&Fit ensure information is secure?
In order to maintain the confidentiality of PHI and PII Quit&Fit enforces
strict company-wide policies regarding privacy, security, and confidentiality
on staff users as well as Quit&Fit.com. Quit&Fit limits access to
customer PHI and PII to only the appropriate Quit&Fit staff. For instance,
when a question is submitted to a Health Educator, only Quit&Fit educators
assigned to the question and Quit&Fit Information Technology staff who
maintains Quit&Fit.com may view the PHI and PII.
If a user accesses Quit&Fit through one of its health plan partners, any
information collected is governed by this Quit&Fit privacy statement.
Quit&Fit has an organizational commitment to protecting privacy and
security. All employees who work on Quit&Fit.com are aware of security
policies and practices through employee orientation and annual refresher
training. PHI and PII is secured in an isolated database with tightly
restricted access. Employees authorized to view this information are
authenticated prior to gaining such access.
Quit&Fit reviews web security on an ongoing basis. In addition to daily
security administration and response activities, the Quit&Fit environment
undergoes an overall security review on an annual basis.
Quit&Fit uses Secure Sockets Layer (SSL) technology to protect the security
of on-line order information. Users will see an unbroken key or a closed lock
(depending on the browser used) in the lower left-hand corner of the browser
window when SSL is active and the server is secure. The URL line of the browser
will also contain “https” instead of “http”.
Some versions of browsers and some firewalls don't permit communication through
secure servers. In that case, users will not have the ability to connect to the
server and therefore won't have the ability to place an order through an
unsecure connection. Orders can be made over the phone by calling (877)
330-2746 if access to the secure server can not be accomplished.
What is Quit&Fit’s advertising policy?
Quit&Fit does not allow third-party advertising on its site.
What is Quit&Fit’s editorial policy?
View Quit&Fit Editorial Policy.
What is Quit&Fit’s policy regarding links to other Web sites and
services?
Quit&Fit links to other sites to verify our participation in programs that
protect privacy and security. No PII or PHI is shared with these sites. The
appropriateness of links to external sites is reviewed semi annually.
How to contact Quit&Fit for questions?
Questions may be submitted on-line using Quit&Fit’s Contact Us page.
Quit&Fit is available through Healthyroads, Inc.; which is a subsidiary of
American Specialty Health, Inc., a privately held corporation. All Quit&Fit
site operations are conducted and maintained by staff affiliated with American
Specialty Health. American Specialty Health is a Delaware corporation domiciled
in California, with the corporate office located at 777 Front Street, San
Diego, CA 92101.
-
U.S. Mail
Quit&Fit Customer Service
P.O. Box 509040
San Diego, CA 92150-9040
-
By Phone
(877) 330-2746
-
E-mail
service@QuitandFit.com
Use of this site is governed by the Quit&Fit Terms & Conditions.
|