Privacy Policy

Last updated: January 19, 2026

1. Introduction

Metrum Health ("we," "us," or "our") respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our healthcare rate intelligence platform.

2. Information We Collect

2.1 Information You Provide

  • Account information (name, email, password)
  • Practice information (specialty, locations)
  • Professional verification data (NPI number, institutional email)
  • Professional license documentation (for manual verification)
  • Billing information (processed securely by Stripe)
  • Rate comparison data you choose to enter
  • Practice data you submit (anonymized and aggregated)
  • Notes and comments on negotiations

2.2 Automatically Collected Information

  • Log data (IP address, browser type, pages visited)
  • Device information
  • Usage analytics
  • Cookies and similar technologies

3. How We Use Your Information

We use your information to:

  • Provide and maintain our services
  • Process your subscription and payments
  • Send you alerts about rate changes
  • Improve and personalize your experience
  • Communicate with you about updates and features
  • Ensure security and prevent fraud
  • Comply with legal obligations

4. Data Sharing

We do not sell your personal information. We may share your information with:

  • Service providers: Third parties that help us operate our platform (hosting, analytics, payment processing)
  • Legal requirements: When required by law or to protect our rights
  • Business transfers: In connection with a merger or acquisition

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption for data at rest and in transit
  • TLS encryption for all data transmission
  • Secure cloud infrastructure (Vercel, Hetzner)
  • Regular security reviews
  • Access controls and authentication
  • Secure password hashing (bcrypt)

6. Your Rights

You have the right to:

  • Access your personal information
  • Correct inaccurate data
  • Delete your account and data
  • Export your data
  • Opt out of marketing communications
  • Withdraw consent where applicable

7. Data Retention

We retain your information for as long as your account is active or as needed to provide services. When you delete your account, we remove your personal data within 30 days, except where we are required to retain it for legal or compliance purposes.

8. Cookies

We use cookies and similar technologies for authentication, preferences, and analytics. You can control cookies through your browser settings. Essential cookies are required for the platform to function.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by email or through a notice on our platform. Your continued use after such modifications constitutes acceptance of the updated policy.

10. California Privacy Rights (CCPA)

If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: You can request information about the personal information we collect, use, and disclose about you.
  • Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
  • Right to Opt-Out: You have the right to opt out of the sale of your personal information. We do not sell personal information.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.

To exercise these rights, contact us at privacy@metrumhealth.com or use the contact information below. We will respond to verifiable requests within 45 days.

Notice of Collection: We collect the categories of personal information described in Section 2 above for the purposes described in Section 3. We do not sell personal information as defined by the CCPA.

11. Children's Privacy

Our services are intended for licensed healthcare professionals and are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly. If you believe we may have collected information from a child under 18, please contact us at privacy@metrumhealth.com.

12. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us at:

Email: privacy@metrumhealth.com

Mail:

Metrum Health
Attn: Privacy
1105 Caymus Court
Columbia, MO 65201