ATTUNED
PRIVACY POLICY
Last Updated: February 16, 2026
attuned.health
1. INTRODUCTION
This Privacy Policy ("Policy") describes how Attuned, LLC ("Attuned," "we," "us," or "our") collects, uses, discloses, and otherwise processes your personal information when you visit, interact with, or make a purchase from attuned.health (the "Site"), use our mobile applications, or otherwise engage with us (collectively, the "Services").
By accessing or using our Services, you acknowledge that you have read and understood this Policy. If you do not agree with the practices described in this Policy, please do not use our Services. This Policy does not apply to third-party websites, products, or services, even if they link to our Services, and we encourage you to review the privacy policies of any third-party services you access.
2. INFORMATION WE COLLECT
We collect personal information in the following ways:
2.1 Information You Provide Directly
We collect information you voluntarily provide to us, including:
Account and Order Information: When you create an account, place an order, or interact with our Services, we may collect your name, email address, mailing address, billing address, phone number, and payment information (such as credit or debit card numbers, processed through our third-party payment processor).
Communications: When you contact us for customer support, respond to a survey, leave a review, participate in a promotion, or otherwise communicate with us, we collect the content of your communications and any information you choose to provide.
SMS Opt-In Information: If you opt in to receive SMS or text messages from us, we collect your mobile phone number and any message content you send to us in connection with that service.
2.2 Information Collected Automatically
When you access or use our Services, we automatically collect certain information, including:
Device and Browser Information: IP address, browser type and version, operating system, device type and identifiers, language preferences, and time zone settings.
Usage Information: Pages viewed, products browsed, referring and exit pages, search terms, click patterns, time spent on pages, and other interactions with the Services.
Location Information: Approximate geographic location derived from your IP address.
Cookies and Similar Technologies: Information collected through cookies, pixel tags, web beacons, and similar tracking technologies. See Section 8 (Cookies and Tracking Technologies) below for more details.
2.3 Information from Third Parties
We may receive personal information about you from third parties, including our e-commerce platform provider (Shopify), payment processors, analytics providers, advertising networks, and social media platforms. We may combine this information with other information we collect about you.
3. HOW WE USE YOUR INFORMATION
We use the personal information we collect for the following purposes:
Fulfillment and Operations: To process and fulfill your orders, manage your account, process payments, arrange shipping and delivery, provide invoices and order confirmations, and communicate with you about your transactions.
Customer Support: To respond to your inquiries, troubleshoot issues, and provide customer service.
Marketing and Communications: To send you promotional messages, newsletters, SMS communications (where you have opted in), and other marketing materials about our products, services, and offers. You may opt out of marketing communications at any time (see Section 10).
Improvement and Analytics: To analyze usage trends, monitor the effectiveness of our Services, conduct research, improve our website and product offerings, and develop new features.
Personalization: To personalize your experience, including by tailoring content and product recommendations to your interests.
Security and Fraud Prevention: To detect, prevent, and address fraud, unauthorized access, and other illegal or harmful activities, and to protect the rights, property, and safety of Attuned and our users.
Legal Compliance: To comply with applicable laws, regulations, legal processes, or enforceable governmental requests, and to enforce our Terms of Service and other agreements.
4. LEGAL BASES FOR PROCESSING (EEA/UK RESIDENTS)
If you are located in the European Economic Area ("EEA") or the United Kingdom ("UK"), we process your personal information based on the following legal grounds:
Performance of a Contract: Processing is necessary to fulfill our contractual obligations to you, such as processing orders and delivering products.
Legitimate Interests: Processing is necessary for our legitimate business interests, such as improving our Services, marketing, fraud prevention, and ensuring security, where those interests are not overridden by your fundamental rights and freedoms.
Consent: Where you have given us your consent to process your data for specific purposes, such as receiving marketing emails or SMS communications. You may withdraw your consent at any time.
Legal Obligation: Processing is necessary to comply with applicable legal obligations, such as tax and accounting requirements.
5. HOW WE SHARE YOUR INFORMATION
We do not sell your personal information. We may share your personal information in the following circumstances:
Service Providers: We share information with third-party service providers who perform services on our behalf, including our e-commerce platform (Shopify), payment processors, shipping and fulfillment providers, email service providers, SMS service providers, analytics providers, and customer support tools. These providers are contractually obligated to use your information only as necessary to provide their services to us and in compliance with this Policy.
Business Transfers: In connection with, or during negotiations of, any merger, acquisition, sale of assets, financing, or transfer of all or a portion of our business to another company, your personal information may be transferred as part of that transaction.
Legal Requirements: We may disclose your information if required to do so by law or in the good-faith belief that such action is necessary to comply with applicable laws, respond to a court order, subpoena, search warrant, or other lawful request for information, or to protect the rights, property, or safety of Attuned, our users, or the public.
With Your Consent: We may share your information for other purposes with your express consent or at your direction.
6. DATA RETENTION
We retain your personal information for as long as necessary to fulfill the purposes for which it was collected, including to satisfy any legal, accounting, or reporting requirements. When determining retention periods, we consider the amount, nature, and sensitivity of the information, the potential risk of harm from unauthorized use or disclosure, and applicable legal requirements.
Specifically:
Order Information: Retained for the duration of our business relationship and as required by tax and accounting laws (generally up to seven years after the transaction).
Account Information: Retained for as long as your account is active or as needed to provide you with services, and thereafter as required by applicable law.
Marketing Data: Retained until you opt out of marketing communications or request deletion, subject to applicable legal retention requirements.
When your personal information is no longer needed, we will securely delete or anonymize it in accordance with applicable law.
7. DATA SECURITY
We implement commercially reasonable technical and organizational measures designed to protect your personal information from unauthorized access, loss, misuse, alteration, or destruction. These measures include encryption of data in transit (TLS/SSL), access controls, and secure payment processing through PCI-DSS compliant providers.
However, no method of transmission over the Internet or method of electronic storage is completely secure. While we strive to protect your personal information, we cannot guarantee its absolute security. You are responsible for maintaining the confidentiality of any account credentials and for restricting access to your devices.
8. COOKIES AND TRACKING TECHNOLOGIES
We use cookies and similar tracking technologies (such as pixel tags, web beacons, and local storage) to collect and store information when you use our Services. Cookies are small data files placed on your device that help us improve our Services and your experience, understand which areas and features are popular, and count visits.
8.1 Types of Cookies We Use
Strictly Necessary Cookies: Essential for the operation of our Site, including navigation, shopping cart functionality, checkout, and security features. These cookies cannot be disabled.
Analytics and Performance Cookies: Help us understand how visitors interact with our Site by collecting information about pages visited, time spent, and errors encountered. We use this data to improve our Site's performance.
Functional Cookies: Allow the Site to remember choices you make (such as your region or language preferences) to provide enhanced, personalized features.
Marketing and Advertising Cookies: Used to deliver advertisements relevant to you and your interests, limit the number of times you see an ad, and measure the effectiveness of advertising campaigns.
8.2 Cookie Table — Necessary Cookies
|
Cookie Name
|
Function
|
Duration
|
|
_ab
|
Access to admin
|
2 years
|
|
_secure_session_id
|
Storefront navigation
|
24 hours
|
|
_shopify_country
|
Checkout localization
|
Session
|
|
_shopify_m / _shopify_tm / _shopify_tw
|
Customer privacy settings
|
Varies
|
|
_tracking_consent
|
Tracking preferences
|
1 year
|
|
cart / cart_currency / cart_sig / cart_ts / cart_ver
|
Shopping cart
|
2 weeks
|
|
checkout / checkout_token
|
Checkout process
|
4 weeks / 1 year
|
|
secure_customer_sig
|
Customer login
|
20 years
|
|
storefront_digest
|
Customer login
|
2 years
|
8.3 Cookie Table — Analytics Cookies
|
Cookie Name
|
Function
|
Duration
|
|
_landing_page / _orig_referrer
|
Track landing pages
|
2 weeks
|
|
_s / _shopify_s
|
Shopify analytics
|
30 minutes
|
|
_shopify_d
|
Shopify analytics
|
Session
|
|
_shopify_sa_p / _shopify_sa_t
|
Marketing and referrals
|
30 minutes
|
|
_shopify_y / _y
|
Shopify analytics
|
1 year
|
|
_shopify_ga
|
Shopify and Google Analytics
|
Session
|
8.4 Managing Cookies
Most web browsers allow you to control cookies through their settings. You can typically set your browser to refuse all cookies, accept only certain cookies, or notify you when a cookie is set. Please note that disabling cookies may affect the functionality of our Services. For more information about managing cookies, visit www.allaboutcookies.org.
9. DO NOT TRACK SIGNALS
Our Services do not currently respond to "Do Not Track" (DNT) browser signals, as there is no consistent industry standard for compliance. If a standard is established in the future, we will update this Policy accordingly. For information about DNT, visit allaboutdnt.com.
10. YOUR PRIVACY RIGHTS
Depending on your location, you may have certain rights regarding your personal information under applicable data protection laws. We are committed to honoring these rights as required by law.
10.1 Rights for All Users
Opt-Out of Marketing: You may opt out of receiving promotional emails by following the unsubscribe instructions in those messages. You may opt out of SMS communications by texting STOP at any time. Even after opting out, you may still receive transactional or service-related communications.
Cookie Preferences: You may manage your cookie preferences through your browser settings as described in Section 8.4.
10.2 California Residents (CCPA/CPRA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, "CCPA"):
Right to Know: You may request that we disclose to you the categories and specific pieces of personal information we have collected about you, the categories of sources, the purposes for collection, and the categories of third parties with whom we have shared your information.
Right to Delete: You may request that we delete personal information we have collected from you, subject to certain exceptions.
Right to Correct: You may request that we correct inaccurate personal information we maintain about you.
Right to Portability: You may request a copy of your personal information in a portable and readily usable format.
Right to Opt Out of Sale/Sharing: We do not sell your personal information and do not share it for cross-context behavioral advertising purposes. If our practices change, we will update this Policy and provide an opt-out mechanism.
Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA rights.
Authorized Agents: You may designate an authorized agent to submit requests on your behalf by contacting us at the address below with proof of authorization.
To exercise any of these rights, please contact us at hi@attuned.health. We will verify your identity before processing your request. We will respond to verifiable consumer requests within 45 days, as required by law.
10.3 EEA and UK Residents (GDPR)
If you are located in the European Economic Area or the United Kingdom, you have the following rights under the General Data Protection Regulation ("GDPR") and UK GDPR:
Right of Access: You may request a copy of the personal data we hold about you.
Right to Rectification: You may request that we correct any inaccurate or incomplete personal data.
Right to Erasure: You may request deletion of your personal data where there is no compelling reason for its continued processing.
Right to Restrict Processing: You may request that we restrict the processing of your personal data in certain circumstances.
Right to Data Portability: You may request to receive your personal data in a structured, commonly used, and machine-readable format.
Right to Object: You may object to processing based on legitimate interests or for direct marketing purposes.
Right to Withdraw Consent: Where we rely on your consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
Right Not to Be Subject to Automated Decision-Making: You have the right to not be subject to decisions based solely on automated processing that produce legal or similarly significant effects on you.
To exercise these rights, please contact us at hi@attuned.health. If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.
10.4 Other U.S. State Privacy Rights
Residents of Colorado, Connecticut, Delaware, Indiana, Iowa, Montana, New Hampshire, New Jersey, Oregon, Tennessee, Texas, Utah, Virginia, and other states with comprehensive privacy laws may have similar rights to those described above, including the right to access, delete, correct, and port your personal information, and to opt out of targeted advertising and profiling. To exercise your rights under applicable state law, please contact us at hi@attuned.health.
11. AUTOMATED DECISION-MAKING
We do not engage in fully automated decision-making that has a legal or otherwise significant effect on you. Our processor Shopify uses limited automated decision-making solely for fraud prevention purposes, which includes:
Temporary blocking of IP addresses associated with repeated failed transactions (persisting for a small number of hours), and temporary blocking of credit cards associated with flagged IP addresses (persisting for a small number of days).
12. INTERNATIONAL DATA TRANSFERS
Attuned is based in the United States. If you access our Services from outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States and other countries where our service providers operate. These countries may have data protection laws that are different from the laws of your country.
Where required by applicable law, we implement appropriate safeguards for the transfer of personal data, including Standard Contractual Clauses approved by the European Commission, or other legally recognized transfer mechanisms.
13. CHILDREN’S PRIVACY
Our Services are not directed to, and we do not knowingly collect personal information from, children under the age of 13 (or such other age as required by applicable law, including age 16 in certain jurisdictions). If we learn that we have collected personal information from a child without appropriate parental or guardian consent, we will take steps to delete that information promptly. If you believe a child has provided us with personal information, please contact us at hi@attuned.health.
14. SMS / MOBILE TERMS OF SERVICE
Last updated: June 28, 2024
The Attuned mobile message service (the "Service") is operated by Attuned. Your use of the Service constitutes your agreement to these terms. We may modify or cancel the Service or any of its features without notice. Your continued use following changes constitutes acceptance of such changes.
Consent to Receive Messages
By consenting to Attuned’s SMS/text messaging service, you agree to receive recurring SMS/text messages from and on behalf of Attuned through your wireless provider to the mobile number you provided, even if your mobile number is registered on any state or federal Do Not Call list. Messages may be sent using an automatic telephone dialing system or other technology. Service-related messages may include order updates, account alerts, and other transactional information. Promotional messages may include promotions, specials, and other marketing offers.
No Purchase Required
You are not required to opt in to this program to make any purchases, and your consent is not a condition of any purchase with Attuned. Your participation in this program is completely voluntary.
Costs and Charges
We do not charge for the Service, but you are responsible for all charges and fees associated with text messaging imposed by your wireless provider. Message frequency varies. Message and data rates may apply. Check your mobile plan and contact your wireless provider for details.
Opting Out
You may opt out at any time by texting STOP to Attuned or clicking the unsubscribe link in any text message. You will receive a one-time opt-out confirmation message. No further messages will be sent unless you reinitiate contact. If you are subscribed to multiple Attuned messaging programs, you will need to opt out of each separately.
Support
For assistance, text HELP to Attuned or email hi@attuned.health.
Carrier Disclaimer
Wireless carriers are not liable for delayed or undelivered messages. You agree to provide a valid mobile number and to re-enroll if your number changes. To the extent permitted by applicable law, we will not be liable for failed, delayed, or misdirected delivery of any information sent through the Service, any errors in such information, or any action you may or may not take in reliance on such information.
15. THIRD-PARTY LINKS AND SERVICES
Our Services may contain links to third-party websites, plug-ins, or applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party services and are not responsible for their privacy practices. We encourage you to read the privacy policy of every website you visit. For example, our online store is powered by Shopify, and you can learn more about how Shopify handles your data at shopify.com/legal/privacy.
16. CHANGES TO THIS POLICY
We may update this Privacy Policy from time to time to reflect changes to our practices, technologies, legal requirements, or other factors. When we make material changes, we will notify you by updating the "Last Updated" date at the top of this Policy and, where required by law, by providing additional notice (such as a banner on our Site or an email notification). We encourage you to review this Policy periodically to stay informed about how we protect your information.
17. CONTACT US
If you have questions, concerns, or complaints about this Privacy Policy or our privacy practices, or if you wish to exercise any of your privacy rights, please contact us:
|
Attuned, LLC
118 Graceland Blvd #129
Columbus, OH 43214
United States
Email: hi@attuned.health
|
If you are located in the EEA or UK and are not satisfied with our response to your complaint, you have the right to lodge a complaint with your local data protection authority.