How health information is used
PoeRx uses information you provide to organize intake, support clinician review, process payment, coordinate pharmacy fulfillment, provide account support, operate the service, and meet legal obligations. AI may assist with organization, but it cannot sign a prescription or make the final treatment decision.
Who can access it
Patients can access records tied to their account. Clinicians can open cases only in states where their configured license permits review. Operations users receive the information needed for payment, pharmacy coordination, fulfillment, support, security, and compliance. Access and material workflow changes are logged.
Vendors and analytics
The care experience is designed without advertising pixels or cross-site retargeting. A vendor may receive protected health information only after the service, configuration, contract, and required business associate agreement have been approved. External AI is disabled by default.
Your choices and rights
You can download the electronic information in your patient account. You can also request an amendment, a restriction, or an accounting of applicable disclosures. Some records cannot be deleted when medical, pharmacy, payment, or legal retention duties apply.
Security and incidents
PoeRx uses role-based access, authenticated sessions, workforce step-up verification, secure transport requirements, restricted browser caching, audit records, and data-minimization controls. A production service also requires risk analysis, encrypted managed storage and backups, monitoring, incident response, workforce training, vendor management, and breach-notification procedures.
Questions or complaints
Use the tracked privacy tools in your patient account or contact support. A final notice must identify the PoeRx privacy official and explain how to submit a complaint without retaliation.