Legal Information

Privacy Policy

Last Updated: December 18, 2025

Your privacy and the confidentiality of your information are of utmost importance to us. This policy explains how Burrwell Diagnostics collects, uses, and protects your personal information.

Burrwell Diagnostics ("we," "us," or "our") is committed to protecting the privacy and confidentiality of all personal and health information we collect. This Privacy Policy outlines our practices concerning the collection, use, disclosure, and protection of your information in compliance with applicable federal and state laws, including HIPAA (Health Insurance Portability and Accountability Act).

1 Information We Collect

We may collect the following types of information when you use our services:

Personal Information:

  • Name, address, phone number, and email address
  • Date of birth and Social Security Number (when required)
  • Driver's license or government-issued ID information
  • Employment and employer information

Health and Medical Information:

  • Drug test results and specimen collection data
  • Blood work results and phlebotomy records
  • Medical history relevant to testing procedures
  • Health insurance information (when applicable)

Service-Related Information:

  • Appointment details and service requests
  • Notarized document information (as required by law)
  • Fingerprinting and identity verification data
  • Payment and billing information

Website and Technical Information:

  • IP address, browser type, and device information
  • Website usage data and analytics
  • Cookies and tracking technologies

2 How We Use Your Information

We use the information we collect for the following purposes:

  • Service Delivery: To provide notary, drug testing, phlebotomy, fingerprinting, and courier services
  • Compliance and Reporting: To meet legal, regulatory, and contractual obligations (DOT, HIPAA, etc.)
  • Communication: To contact you regarding appointments, results, and service-related matters
  • Billing and Payment Processing: To process payments and maintain financial records
  • Quality Improvement: To improve our services, training, and customer experience
  • Website Functionality: To maintain and improve our website and online services
  • Legal Requirements: To comply with court orders, subpoenas, and legal processes

3 Information Sharing and Disclosure

We do not sell, rent, or trade your personal information. We may share your information only in the following circumstances:

  • With Your Consent: When you authorize us to share information with third parties
  • Healthcare Providers and Labs: For specimen processing, testing, and medical interpretation
  • Employers and Clients: When providing services on behalf of an employer or organization (e.g., drug test results)
  • Regulatory Agencies: To comply with DOT, SAMHSA, state health departments, and other regulatory bodies
  • Legal Authorities: When required by law, court order, subpoena, or legal process
  • Service Providers: To trusted third parties who assist us in operations (payment processors, IT support) under strict confidentiality agreements
  • Business Transfers: In the event of a merger, acquisition, or sale of business assets

HIPAA Compliance:

All health information is protected under HIPAA regulations. We maintain strict protocols to ensure the confidentiality, integrity, and availability of protected health information (PHI).

4 Data Security

We implement robust physical, technical, and administrative safeguards to protect your information:

  • Secure storage of physical records in locked, access-controlled facilities
  • Encryption of electronic data during transmission and storage
  • Access controls limiting information access to authorized personnel only
  • Regular security audits and employee training on privacy practices
  • Secure disposal of records according to retention policies
  • Chain of custody protocols for specimen handling and transport

While we take extensive measures to protect your information, no system is completely secure. We cannot guarantee absolute security but continuously work to maintain the highest standards of data protection.

5 Your Rights and Choices

You have the following rights regarding your personal information:

Access and Copies

You may request access to your personal and health information and receive copies of your records.

Correction

You may request corrections to inaccurate or incomplete information in your records.

Restrictions

You may request restrictions on certain uses and disclosures of your information (subject to legal requirements).

Confidential Communications

You may request that we communicate with you through specific means or at specific locations.

Disclosure Accounting

You may request an accounting of certain disclosures we have made of your health information.

Opt-Out of Marketing

You may opt out of receiving marketing communications from us at any time.

To exercise any of these rights, please contact us using the information provided at the end of this policy.

6 Data Retention

We retain your information for as long as necessary to fulfill the purposes outlined in this policy and to comply with legal and regulatory requirements:

  • Drug testing records: Minimum of 5 years (DOT requirements)
  • Medical records: As required by state and federal law (typically 6-10 years)
  • Notarization records: As required by state law (typically 5-10 years)
  • Financial records: As required for tax and accounting purposes (typically 7 years)
  • Other service records: As long as reasonably necessary for business purposes

After the retention period expires, we securely destroy or anonymize information in accordance with our data destruction policies.

7 Cookies and Tracking Technologies

Our website uses cookies and similar tracking technologies to enhance your browsing experience:

  • Essential Cookies: Required for website functionality and security
  • Analytics Cookies: Help us understand how visitors use our website
  • Preference Cookies: Remember your settings and preferences

You can control cookies through your browser settings. Note that disabling certain cookies may affect website functionality.

8 Third-Party Links

Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of these external sites. We encourage you to review the privacy policies of any third-party sites you visit.

9 Children's Privacy

Our services are not directed to individuals under the age of 18, except when accompanied by a parent or guardian for legitimate service purposes (e.g., drug testing for minors with parental consent). We do not knowingly collect personal information from children without parental consent.

10 Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal requirements. We will post the updated policy on our website with a revised "Last Updated" date. Significant changes will be communicated through email or prominent notice on our website.

Your continued use of our services after changes are posted constitutes acceptance of the updated policy.

11 Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

Burrwell Diagnostics

Privacy Officer

Burrwell Diagnostics

Phone

Available through our contact page

Filing a Complaint:

If you believe your privacy rights have been violated, you have the right to file a complaint with us or with the U.S. Department of Health and Human Services Office for Civil Rights. We will not retaliate against you for filing a complaint.

HIPAA Notice of Privacy Practices

This Privacy Policy works in conjunction with our HIPAA Notice of Privacy Practices. If you are receiving healthcare services from us, you will receive a separate detailed HIPAA Notice describing how your protected health information may be used and disclosed.

For a copy of our complete HIPAA Notice of Privacy Practices, please request one during your appointment or contact our Privacy Officer.

By using our services or website, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with this policy, please do not use our services or website.