Black Health

Legal & policies

Privacy Policy

Effective date:

We take your privacy seriously. Black Health does not sell your data, does not use advertising trackers, and uses cookieless analytics. Read the full policy below.

This Privacy Policy describes how Black Health collects, uses, shares, and protects information about visitors to blackhealth.org and users of our products and services. By using our services, you agree to the collection and use of information in accordance with this policy.

What we collect

Analytics: We use Plausible Analytics, a cookieless, privacy-first analytics tool that does not use cookies and does not collect personally identifiable information. Plausible counts page views and basic referral data in aggregate only. No tracking pixel or advertising cookie is placed on your device.

Email subscribers: If you subscribe to our newsletter, we collect your email address. We use Beehiiv to manage email delivery. Your email address is stored on Beehiiv's servers. We do not collect any additional personal information for newsletter subscriptions.

Provider listings: If you submit a provider application or claim a provider listing, we collect your name, email address, credentials, practice information, and NPI number (if provided). Paid listing information is processed through Stripe.

Contact forms: If you contact us via our contact form, we collect your name, email address, topic, and message. This information is stored in our database and used only to respond to your inquiry.

How we use your information

We use collected information to: operate and improve the site and our services; respond to your inquiries; deliver the newsletter to subscribers; manage provider listings; process payments for paid listings; detect and prevent fraud and abuse; comply with legal obligations.

Who we share with

We never sell, rent, or trade your personal information to third parties. We share information only with the following service providers, strictly for the purpose of delivering our services:

  • Beehiiv: email delivery for our newsletter

  • Stripe: payment processing for paid provider listings

  • Sentry: error tracking and application monitoring

  • Plausible Analytics: cookieless, privacy-safe web analytics

  • Our hosting provider: server infrastructure (database and application hosting)

Cookies

Black Health uses only essential cookies. We set one session cookie required for secure authentication when you are logged into an account. We do not use advertising cookies, third-party tracking cookies, or any cookie for retargeting or behavioral advertising.

Data security

All data transmitted to and from Black Health is encrypted in transit using TLS. Data at rest in our database is encrypted. We follow industry-standard security practices and review our security posture regularly. In the event of a data breach that affects your personal information, we will notify you as required by applicable law.

Data retention

We retain your personal information for as long as necessary to provide our services and comply with legal obligations. Newsletter subscriber data is retained until you unsubscribe. Contact form submissions are retained for two years. Provider application and listing data is retained for the duration of your listing and for three years thereafter.

Your rights

You have the right to access, correct, and delete your personal information. To exercise these rights, email privacy@blackhealth.org. We will respond within 30 days. You may also unsubscribe from our newsletter at any time via the unsubscribe link in any email we send.

California residents (CCPA / California Civil Code Section 1798.83)

California residents have the right to request disclosure of the categories of personal information we have collected about you, the purposes for which we use it, the categories of third parties with whom we share it, and the categories of information we have sold or disclosed for a business purpose. We do not sell your personal information. To submit a verifiable consumer request, email privacy@blackhealth.org.

EU / EEA visitors (GDPR)

If you are located in the European Union or European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR), including the right to data portability, the right to restrict processing, and the right to lodge a complaint with your local supervisory authority. Our lawful basis for processing personal data is: performance of a contract (for provider listings), legitimate interests (for analytics and security), and consent (for newsletter subscriptions). Contact privacy@blackhealth.org for any GDPR-related requests.

Children (COPPA)

Black Health is intended for adults. We do not knowingly collect personal information from children under the age of 13. If we discover that a child under 13 has submitted personal information, we will delete it promptly. If you believe a child under 13 has provided us with personal information, contact privacy@blackhealth.org.

Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated policy on this page with a revised effective date. Continued use of our services after the effective date constitutes acceptance of the updated policy.

Contact

Privacy questions: privacy@blackhealth.org. Legal notices: legal@blackhealth.org.

Questions about this policy? Email hello@blackhealth.org.