Legal · Privacy

Privacy Policy

Effective: April 20, 2026  ·  Last updated: April 20, 2026
Draft — pending legal counsel review This policy is being finalized and should not be treated as a binding legal document until reviewed and approved by counsel. Production deployments should replace this notice with the signed, dated, effective version.

JetPatient, Inc. (“JetPatient,” “we,” “us,” or “our”) operates a cross-border healthcare coordination platform that connects US patients with accredited clinics internationally. This Privacy Policy explains what information we collect, how we use and protect it, and the choices you have. We take privacy seriously and operate on HIPAA-aligned principles for the handling of any health-related information entrusted to us.

1. Scope

This policy applies to jetpatient.com, the JetPatient marketplace, the JetPatient Clinic Portal, our AI tools (Navigator, Copilot, Scribe, PREDICT, Brief, Risk Engine, Passport), our forms and intake flows, and any other online services that link to this policy (collectively, the “Services”). It does not apply to the websites or services of partner clinics, providers, or third parties that have their own privacy practices.

2. Information we collect

2.1 Information you provide directly

2.2 Information collected automatically

2.3 Information from third parties

We may receive limited information from partner clinics about the status of a care engagement you have initiated (for example, whether a consultation was scheduled or a procedure was completed), and from vendors that help us deliver the Services.

3. How we use information

We do not sell personal information, and we do not use your information to train third-party AI models.

4. Health information & HIPAA

JetPatient is a care coordination platform, not a covered entity under HIPAA. However, we operate on HIPAA-aligned principles: where we handle Protected Health Information (PHI) on behalf of a covered entity (for example, a US-based employer health plan or a clinic partner), we enter into a Business Associate Agreement (BAA) and apply the administrative, physical, and technical safeguards required of a business associate. See our HIPAA Notice of Privacy Practices for a fuller description.

You should not share clinical detail, diagnoses, dosages, or sensitive health data in free-form fields unless specifically asked to do so inside a secure intake flow.

5. Sharing & third parties

We share information only as follows:

6. International transfers

The JetPatient network includes clinics in Colombia, Mexico, Turkey, and other countries. If you ask to be connected with an international clinic, your contact information and inquiry details will be transferred to that clinic in its country of operation. By initiating a care inquiry, you consent to that transfer. Where possible, we use standard contractual protections with our partners.

7. Your rights

Depending on where you live, you may have rights including the right to access, correct, delete, or port your personal information, and to object to or restrict certain uses. California residents may have additional rights under the CCPA/CPRA, including the right to know, delete, and limit use of sensitive personal information; we do not sell personal information or share it for cross-context behavioral advertising.

To exercise any right, email privacy@jetpatient.com. We will respond within the time required by applicable law.

8. Data retention

We retain information for as long as reasonably necessary to provide the Services, comply with our legal obligations, resolve disputes, and enforce agreements. Care inquiry data is typically retained for up to 24 months after the last interaction, unless a longer period is required by law or by an active care engagement.

9. Security

We use reasonable administrative, physical, and technical safeguards designed to protect personal information, including TLS-encrypted transit, access controls, audit logs, and least-privilege access to systems handling sensitive data. No method of electronic transmission or storage is 100% secure; we cannot guarantee absolute security.

10. Children

The Services are not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, contact us and we will take appropriate steps to delete it.

11. Changes to this policy

We may update this policy from time to time. When we do, we will revise the “Last updated” date above and, for material changes, provide additional notice (for example, a banner on the site or an email to registered users).

12. Contact us

JetPatient, Inc.

Privacy inquiries: privacy@jetpatient.com

General: hello@jetpatient.com

Mailing address available on request.


This Privacy Policy is provided for informational purposes and does not constitute legal advice. Please consult counsel for advice specific to your situation.