Tellescope Privacy Policy

Effective: July 16, 2024
Last Updated: May 23, 2025

Immuto, Inc., d/b/a Tellescope (“Tellescope”, “we”, “us”, or “our”) has created a platform (“Platform”) for healthcare services entities (“Tellescope Customers”) to provide a modern patient experience, including a streamlined method for communicating with their patients, managing patient communications and outreach, a method to allow patients to self-schedule, as well as related services that increase productivity and integration of clinical tools (“Services”). Tellescope’s privacy policy for the Platform (“Privacy Policy”) describes how Tellescope collects, receives, uses, retains, and discloses Personally Identifiable Information about Platform users (“User Information”) as well as certain Personally Identifiable Information (“PII”) and Protected Health Information (“PHI”) about Tellescope Customer Patients (“Patient Information”). The Privacy Policy is also the privacy policy for Tellescope’s public website at https://www.tellescope.com (“Public Site”), and describes how Tellescope collects, receives, uses, retains, and discloses Personally Identifiable Information about Public Site visitors (“Visitor Information”). The sections below specify whether they are applicable to the Platform, the Public Site, or both.

By accessing and using the Platform or the Public Site, you acknowledge that you have read, understood, and agree to be legally bound by and comply with this Privacy Policy and our Terms of Service. If any term in this Privacy Policy is unacceptable to you, do not use the Services and do not provide us with User Information or any Patient Information. This Privacy Policy is incorporated into our Terms of Service and by using the Service you consent to the data handling practices described here. This Privacy Policy may change from time to time as described below. Your use of the Platform or Public Site after we make changes is deemed to be acceptance of those changes, so please check this Privacy Policy periodically for updates.

We value your privacy. This Privacy Policy explains how we collect, store, secure, and use Visitor Information, User Information and Patient Information provided through the Platform and Public Site. Please carefully read the full Privacy Policy below, together with our Terms of Service, to fully understand our data handling practices and your rights and obligations when using the Services.

We want to summarize a few key points up front:

  • User Information and Patient Information you share with Tellescope is kept confidential and shared only with infrastructure providers who promise to provide confidentiality and critical security protections, and to only use to the extent necessary for its software infrastructure to operate.
  • Tellescope will NEVER sell your User Information or Patient Information or exchange it with a third party for anything of value.
  • Tellescope will use your User Information or Patient Information solely to provide Services to you unless you consent otherwise.
  • Tellescope will use your Visitor Information solely in accordance with this Privacy Policy unless you consent otherwise.
  • Tellescope may collect data about your interactions with the Services and Public Site on an anonymized, aggregate basis for its business functions, but will do so in a way that does not allow you to be individually identified.
  • If you have any questions or concerns or if you do not agree with our policies and practices, please contact us at legal@tellescope.com so that a member of our team can assist you.

PRIVACY POLICY

I. COLLECTION AND USE OF INFORMATION

A. WHAT INFORMATION DO WE COLLECT?

User Information. We currently collect, and may in the future collect, the following User Information about you:

  • Full Name
  • Date of Birth
  • Gender/Sex
  • Race/Ethnicity
  • Phone Number
  • Home Address
  • Photo Identification
  • Email Address
  • Passwords
  • Authentication Data (i.e., your signature or other credentials)
  • Mobile device access preferences (i.e., whether the application may access your device's camera, microphone, and other features)
  • Notification preferences
  • Support data (i.e., if you contact us via email or otherwise for support or to lodge a complaint, we may collect technical or other information from you through log files and other technologies)
  • Personal Bio
  • NPI, DEA, TIN or other professional credential
  • Skills or Specialities
  • Personal Distinctions

Visitor Information. We currently collect, or may in the future collect, the following about you in connection with your use of the Public Site:

  • IP addresses of visitors
  • Company information tied to IP addresses (using databases like Clearbit, ZoomInfo, etc.)
  • Pages visited
  • Visit duration and click behavior
  • Referrer source (e.g., LinkedIn, Google Ads, direct)
  • Device and browser info
  • UTM parameters if present
  • Cookies
  • Cookie consent
  • Name
  • Phone Number
  • Notification preferences
  • Email
  • Company Name
  • Role
  • LinkedIn URL

B. HOW DO WE USE OR SHARE YOUR INFORMATION?

We process, use and share your User Information and Patient Information as follows:

  • Your User Information will be used to:
    • To operate and improve the Services available through Tellescope.
    • To respond to your inquiries and solve any potential issues you might have with the Services.
    • To send you details on any changes to the Platform, changes to Platform terms and policies, or other similar information.
    • To request feedback on Platform and to contact you about your use of the Services.
    • To find and prevent fraud, and keep our Services and Platform safe and secure.
    • To identify usage trends, effectiveness of the Services, and to improve the Services and your user experience.
    • To comply with legal obligations, respond to legal requests, and exercise, establish, or defend our legal rights.
    • To fulfill our obligations to you under the Terms of Use.
    • For other purposes for which we provide specific notice at the time the information is collected.
  • Patient Information will be used:
    • By Tellescope Customers for treatment, payment, and health care operations, to facilitate communications between Patients’ healthcare providers, and to facilitate outreach by Tellescope Customers to Patients.
    • By Tellescope to create de-identified analytical information.
  • Your Visitor Information will be used:
    • To operate the Public Site.
    • To respond to your inquiries and solve any potential issues you might have with the Public Site.
    • To send you details on any changes to the Public Site, changes to the Public Site terms and policies, or other similar information.
    • To contact you about your use of the Public Site and with marketing materials about us.
    • To request feedback on the Public Site.
    • To identify usage trends, effectiveness of the Public Site, and to improve the Public Site and your user experience.
    • To comply with legal obligations, respond to legal requests, and exercise, establish, or defend our legal rights.
    • To fulfill our obligations to you under the Terms of Use.
    • By our online data partners or vendors to associate your Public Site activities with other personal information they or others have about you, including by association with your email through cookies and similar technologies. We (or service providers on our behalf) may then send communications and marketing to these email addresses. You may opt out of receiving this advertising by visiting the partners or vendors, which may include https://app.retention.com/optout or https://warmly.ai/p/do-not-sell-share-my-data.
    • For other purposes for which we provide specific notice at the time the information is collected.

C. WHAT ABOUT THIRD-PARTY SERVICES?

Our Services and Public Site may include third party services. Tellescope has no control over and assumes no responsibility for the content, privacy policies, or practices of any third-party sites or services. This Privacy Policy does not apply to your use of or access to any third-party services. If you use any third- party tools and features, such as third-party speech-to-text dictation or third-party video, your use of those features is subject to the terms and policies of those third parties.

D. WHERE IS THE INFORMATION STORED?

The Visitor Information, User Information and Patient Information collected through the Platform will be stored on secure servers, which are in the United States for User Information and Patient Information. Visitor Information, User Information and Patient Information may be transmitted to third parties, which such parties may store or maintain the data on their secure servers. These third parties are not permitted to transfer your User Information or any Patient Information outside of the United States.

E. HOW LONG DO WE KEEP YOUR INFORMATION?

Tellescope retains your Visitor Information, User Information and Patient Information only if necessary and as required for our business operations, the provision of Services, archival purposes, and/or to satisfy legal requirements. The exact period of retention (the “Retention Period”) will depend on: (i) the amount, nature, and sensitivity of the Visitor Information, User Information and Patient Information; (ii) the personal risk of harm for unauthorized use or disclosure; (iii) the purposes for which we process your Visitor Information, User Information and/or Patient Information, including whether those purposes can be achieved through other means; and (iv) business operations and legal requirements. Please note, all PHI, PII and other data that may be considered part of a Patient’s medical record will be maintained in accordance with all applicable state and federal medical retention laws, rules, and regulations, and that Tellescope is not the “source of truth” for any Patient Information or related patient medical records.

At the end of the applicable Retention Period, we will remove Patient Information and your Visitor Information and User Information from our databases. If there is any data that we are unable to delete entirely from our systems for technical reasons, we will put in place appropriate measures to prevent any further processing of such data. Tellescope reserves the right to continue using de-identified data indefinitely, even after Information has been removed from our system. We may continue to disclose de-identified data to third parties in a manner that does not reveal personal information, as described in this Privacy Policy. Our continued use of de-identified data will comport with applicable law.

II. USER RIGHTS

A. WHAT RIGHTS DO USERS HAVE CONCERNING THEIR INFORMATION?

As a user of Tellescope’s Services, you have certain rights relating to your User Information. These rights are subject to local data protection and privacy laws, and may include the right to:

  • Access Visitor Information and User Information held by Tellescope;
  • Erase/delete your Visitor Information and User Information, to the extent permitted by applicable data protection and privacy laws and to the extent technologically feasible (note, however, that Patient Information will remain subject to Retention Period requirements as well as all applicable state and federal laws, including HIPAA);
  • Receive communications related to the processing of your Visitor Information and User Information;
  • Object to the further processing of your Visitor Information and User Information, including the right to object to marketing;
  • Rectify inaccurate personal information and, considering the purpose of processing the Visitor Information and User Information, ensure it is complete.

Where the processing of your Visitor Information and User Information by Tellescope is based on consent, you have the right to withdraw that consent at any time. If you would like to withdraw your consent or exercise any of the above rights, please contact us at support@tellescope.com.

With respect to Patient Information, users will:

  • Delete Patient Information if their role-based access permits
  • Make updates by either adding net new information, editing existing information, or deleting existing information.
  • View Patient Information if their role-based access permits.

B. HOW CAN USERS UPDATE, CORRECT, OR DELETE INFORMATION OR THEIR USER ACCOUNT?

You have the right to request restrictions on uses and disclosures of your Visitor Information and User Information. While we are not required to agree to all restriction requests, we will attempt to accommodate reasonable requests when appropriate.

You may change your email address and other contact information by accessing your Tellescope user account (“User Account”). If you need to make changes or corrections to other information, you may contact us at support@tellescope.com.

You also have the right to request deletion of any User Information from your Platform Use. To request deletion of your User Information, please email us at support@tellescope.com and include a description of the Information you would like removed. We will respond to all requests for data deletion as soon as reasonably possible.

Should you decide to delete your User Account entirely, you may do so by emailing support@tellescope.com. By terminating your User Account, you agree that you will not be able to access any information previously contained in your User Account. You further understand that it may not be technologically possible to remove all of your User Information from our systems. While we will use reasonable efforts to remove your Information, the need to back up our systems to protect information from inadvertent loss means a copy of your Information may exist in a non-erasable form that will be difficult or impossible for us to locate or remove.

To comply with certain requests to limit use of your User Information, delete certain of your User Information, or delete your User Account entirely, you understand that we may need to terminate your ability to access and/or use some or all of the Services, which may result in your inability to utilize those Services.

Notwithstanding the foregoing, as noted above, all Patient Information, including PHI and certain other data that may be considered part of a Patient’s medical record will be maintained in accordance with all applicable federal and state medical record retention laws, rules and regulations.

III. PROTECTION OF INFORMATION

A. HOW IS INFORMATION SECURED?

Tellescope understands the importance of data confidentiality and security. We use a combination of reasonable physical, technical, and administrative security controls to: (i) maintain the security and integrity of your Visitor Information, User Information and Patient Information; (ii) protect against any threats or hazards to the security or integrity of your Visitor Information, User Information and Patient Information; and (iii) protect against unauthorized access to or use of such information in our possession or control that could result in substantial harm to you.

While Tellescope uses reasonable security controls, WE CANNOT GUARANTEE OR WARRANT THAT SUCH TECHNIQUES WILL PREVENT UNAUTHORIZED ACCESS TO YOUR PERSONAL DATA. TELLESCOPE IS UNABLE TO GUARANTEE THE SECURITY OR INTEGRITY OF PERSONAL DATA TRANSMITTED OVER THE INTERNET, AND THERE IS NO GUARANTEE THAT YOUR PERSONAL DATA WILL NOT BE ACCESSED, DISCLOSED, ALTERED, OR DESTROYED BY BREACH OF ANY OF OUR PHYSICAL, TECHNICAL, OR ADMINISTRATIVE SAFEGUARDS. ACCORDINGLY, WE DO NOT AND CANNOT ENSURE OR WARRANT THE SECURITY OR INTEGRITY OF ANY PERSONAL DATA YOU TRANSMIT TO US. YOU ASSUME THE RISK THAT UNAUTHORIZED ENTRY OR USE, HARDWARE OR SOFTWARE FAILURE, AND OTHER FACTORS MAY COMPROMISE THE SECURITY OF YOUR PERSONAL DATA AT ANY TIME.

B. CONTROLS FOR DO-NOT-TRACK FEATURES

Most web browsers and some mobile operating systems and mobile applications include a Do-Not-Track (“DNT”) feature or setting you can activate to signal your privacy preference not to have data about your online browsing activities monitored and collected. At this stage no uniform technology standard for recognizing and implementing DNT signals has been finalized. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online. If a standard for online tracking is adopted that we must follow in the future, we will inform you about that practice in a revised version of this Privacy Policy.

C. WHAT SAFEGUARDS ARE IN PLACE TO PROTECT INFORMATION?

Tellescope stores Visitor Information, User Information and Patient Information on secured servers and uses a combination of technical, administrative, and physical safeguards to protect your personal information. Such safeguards include, but are not limited to, authentication, encryption, backups, secure socket layer technology (SSL) encryption, and access controls.

D. HOW CAN USERS PROTECT THEIR INFORMATION?

You are solely responsible for preventing unauthorized access to your devices and your User Account by protecting your account credentials and limiting access to your devices. Tellescope has no access to or control over your device’s security settings, and it is your responsibility to implement any device-level security features and protections you feel are appropriate (e.g., password protection, encryption, remote wipe capability). We recommend that you take all appropriate steps to secure any device that you use to access the Services and the Public Site.

Please note that Tellescope will never send you an email requesting confidential information, such as account numbers, usernames, passwords, or Social Security Numbers. If you receive a suspicious email from Tellescope, please notify us at support@tellescope.com.

Further, if you know of or suspect any unauthorized use or disclosure of your User Account information or any other security concern, please notify Tellescope immediately.

E. WHAT IF TELLESCOPE EXPERIENCES A DATA OR SECURITY BREACH?

Tellescope takes the security of your Information and the Patient Information you provide seriously. In the event of a data or security breach, Tellescope will take the following actions: (i) promptly investigate the security incident, validate the root cause, and, where applicable, remediate any vulnerabilities within Tellescope’s control which may have given rise to the security incident; (ii) comply with laws and regulations directly applicable to Tellescope in connection with such security incident; (iii) as applicable, cooperate with any affected Tellescope user or client in accordance with the terms of Tellescope’s contract with such user or client; and (iv) document and record actions taken by Tellescope in connection with the security incident and conduct a post-incident review of the circumstances related to the incident and actions/recommendations taken to prevent similar security incidents in the future. Tellescope will notify you of any data or security breaches as required by and in accordance with applicable law.

If you have questions regarding this Privacy Policy, you may contact us at legal@tellescope.com.