Privacy Policy

Effective date: July 28, 2026  ·  VigilReady LLC

1. Who We Are

VigilReady LLC (“we,” “our,” or “us”) operates VigilReady, a HIPAA-compliant document management platform for disability services providers. Our principal place of business is in the United States. Questions about this policy can be directed to vigilreadyllc@gmail.com.

2. Information We Collect

We collect the following categories of information in connection with operating the platform:

3. How We Use Information

4. How We Share Information

We do not sell personal information. We share information only as follows:

5. Data Security

All data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Documents are stored in a private Amazon S3 bucket accessible only via time-limited signed URLs. We enforce multi-factor authentication, session timeouts, and rate limiting. Access to PHI is logged in an append-only audit trail. We conduct regular security reviews and monitoring.

6. Data Retention

We retain PHI and compliance records for a minimum of seven (7) years in accordance with HIPAA requirements. Audit logs are retained for the same period. Upon termination of service, data will be securely deleted within 90 days unless a longer retention period is required by law.

7. Your Rights

Depending on applicable law, you may have the right to access, correct, or delete your personal information. Requests regarding PHI must follow the process described in our HIPAA Notice. For other requests, contact vigilreadyllc@gmail.com.

8. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated via email to account administrators. Continued use of the platform after changes take effect constitutes acceptance.