Privacy policy

Last updated: March 9, 2026

RegenMD Wellness (“RegenMD,” “we,” “us,” or “our”) is committed to protecting the privacy and security of your personal information and, when applicable, your Protected Health Information (“PHI”). This combined Privacy Policy and HIPAA Notice of Privacy Practices (“Notice”) explains how we collect, use, disclose, and safeguard information obtained through our website, online store, telehealth communications, and clinical services.

This Notice applies to information collected by RegenMD Wellness and its workforce, including through our website, telehealth services, electronic communications, and clinical care. Our online store is powered by Shopify, which enables us to provide e-commerce functionality as part of the Services described below.

If there is a conflict between other terms that may apply to your use of our Services and this Notice, this Notice controls with respect to the collection, use, processing, and disclosure of your information.

 


Scope: PHI vs. Website/Store Information

A. Protected Health Information (HIPAA)

When you receive clinical services from RegenMD, certain information we create or receive about you may constitute PHI under the Health Insurance Portability and Accountability Act (“HIPAA”). HIPAA governs how we use and disclose PHI for treatment, payment, and healthcare operations and provides you with rights described in this Notice.

B. Website, Store, and General Personal Information

When you visit our website, use our online store, communicate with us, or make a purchase, we may collect personal information such as contact details, order information, and device/usage data. This information is governed by the Privacy Policy portions of this Notice and applicable privacy laws.

Important: Not all information collected through the website/store is PHI. PHI generally relates to healthcare services and clinical records. Standard website analytics, marketing interactions, and e-commerce purchase records may not be PHI unless created or maintained as part of your healthcare record.

 


Our HIPAA Privacy Commitments (PHI)

RegenMD Wellness is required by law to maintain the privacy and security of your PHI and to provide you with notice of our legal duties and privacy practices under HIPAA. We will:

  • Maintain safeguards designed to protect PHI
  • Use and disclose PHI only as permitted or required by law
  • Notify you following a breach of unsecured PHI as required by law
  • Follow the terms of this Notice currently in effect

We may update this Notice from time to time. The updated Notice will be posted on our website and will apply to PHI we maintain.


Information We Collect

Depending on how you interact with RegenMD, we may collect or process the following categories of information:

A. Personal Information (Website/Store/Communications)

  • Contact details (name, billing/shipping address, phone number, email address)
  • Account information (username, password, and related details, if applicable)
  • Transaction details (items purchased, order history, payment confirmation, returns, customer service interactions)
  • Marketing preferences and communications (email/SMS preferences, responses to campaigns)

B. Financial Information (Store Purchases)

  • Payment card information and related transaction details
    (Payments are processed through payment processors; RegenMD Wellness does not store full payment card numbers in plain text.)

C. Health Information / PHI (Clinical Services)

If you receive medical services, we may collect PHI such as:

  • Medical history, symptoms, diagnoses
  • Treatment plans, prescriptions, medications
  • Laboratory results and clinical notes
  • Provider communications and care coordination information

D. Technical and Usage Information

When you access our Services, we may automatically receive:

  • IP address, browser type, device information
  • Website usage data and interaction events
  • Cookies and similar technologies (described below)

 


How We Use Information

A. How We Use PHI (HIPAA Purposes)

We may use PHI as permitted by HIPAA, including for:

Treatment: coordinating and providing care (e.g., consulting with other providers, prescribing, ordering labs).
Payment: billing and collecting for services, verifying coverage, and related payment activities.
Healthcare Operations: quality improvement, training, compliance, auditing, business planning, and administrative activities.

We may also use or disclose PHI as required or permitted by law, such as for public health reporting, health oversight activities, law enforcement requests, and as otherwise permitted under HIPAA.

B. How We Use Personal Information (Website/Store Purposes)

We use personal information to:

  • Provide and operate the Services (including processing purchases and delivering orders)
  • Communicate with you about orders, services, and support requests
  • Improve our website, offerings, and user experience
  • Prevent fraud and maintain security
  • Send marketing communications where permitted and based on your preferences (you may opt out at any time)

 


How We Disclose Information

A. Disclosures of PHI (HIPAA)

We may disclose PHI:

  • To providers and healthcare professionals involved in your care
  • To business associates who assist us in operations (e.g., billing, IT, secure systems), under HIPAA-compliant agreements when required
  • As required or permitted by law (e.g., reporting, subpoenas, certain law enforcement requests)

B. Disclosures of Personal Information (Website/Store)

We may disclose personal information to:

  • Shopify (as our e-commerce platform) and other service providers that enable website/store functionality
  • Payment processors, shipping carriers, customer support tools, and analytics providers
  • Vendors that help operate our Services, subject to appropriate contractual protections
  • Authorities if required to comply with law or protect rights, safety, and security

We do not sell your PHI. We do not sell your personal information in the traditional sense. We may share personal information with service providers to provide the Services and improve our offerings.

 


Cookies, Analytics, and Similar Technologies

We use cookies and similar technologies to operate our website and improve performance. These technologies may collect information about your device and browsing actions. You may be able to manage cookies through your browser settings; however, disabling cookies may affect site functionality.

 


Your HIPAA Rights (PHI)

Subject to certain exceptions, you have the right to:

  • Access your PHI and obtain a copy
  • Request an amendment to your PHI if you believe it is incorrect or incomplete
  • Request restrictions on certain uses/disclosures (we are not required to agree in all cases)
  • Request confidential communications (e.g., communication at a different phone number or address)
  • Receive an accounting of disclosures of your PHI in certain circumstances
  • Receive a paper copy of this Notice
  • File a complaint if you believe your privacy rights have been violated (you will not be retaliated against)
  • To exercise these rights, contact us using the information in Section 12.

 


Your Choices (Website/Store Communications)

You may:

  • Opt out of marketing emails using the unsubscribe link
  • Opt out of SMS messages by replying STOP (if applicable)
  • Update contact information by contacting us
  • Disable cookies via browser settings (may limit features)

 


Security and Retention

We use administrative, technical, and physical safeguards designed to protect information. No system can be guaranteed 100% secure, but we maintain reasonable protections appropriate to the nature of the information.

We retain information for as long as necessary to provide the Services, comply with legal obligations, resolve disputes, and enforce agreements. Clinical record retention is governed by applicable medical record laws and HIPAA requirements.


Children’s Privacy

Our Services are not intended for children without appropriate parental/guardian involvement. If you believe a child has provided personal information through our Services without appropriate authorization, please contact us.


Changes to This Notice

We may update this Notice periodically. Updates will be posted on our website with a revised “Last updated” date. Where required by law, we will provide additional notice.


Contact Information

If you have questions about this Notice, your information, or HIPAA rights, contact:

RegenMD Wellness
900 Ashwood Parkway, Suite 425, Atlanta, GA, 30338, US
contact@regenmdwellness.com | (470) 671-5955

Complaints

You may also file a complaint with the U.S. Department of Health and Human Services (HHS) Office for Civil Rights if you believe your HIPAA rights have been violated. You will not be retaliated against for filing a complaint.