Privacy Policy

Last updated: September 8, 2025



Introduction


Materia+ is a trade name of Homeopathic Healing Inc. (hereinafter referred to as "Homeopathic Healing," "Materia+," "us," "we," or "our"). We are committed to protecting your personal information and ensuring your privacy when you access or use Materiaplus.com and related websites, applications, and services owned and operated by Homeopathic Healing that link to this Privacy Policy (collectively referred to as the “Services”). This policy outlines how we collect, use, and protect your data, the circumstances under which we may share it, your rights regarding your personal information, and how you can reach us with questions or concerns. We adhere to applicable data privacy laws, including Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA) and the U.S. Health Insurance Portability and Accountability Act (HIPAA). 


Please note that this policy does not apply to third-party websites, products, or services that may be linked to our Services. We encourage you to review the privacy practices and policies of any third parties carefully before providing them with your personal information.


By using our Services, you consent to the collection and use of your personal information in accordance with this Privacy Policy, and you agree to our Terms of Use, which incorporates this Privacy Policy by reference.


1. Overview

We obtain Personal Data from patients ("Users") and healthcare providers ("Providers"), collectively referred to as "you" or "your." The purpose of data collection is to connect you to our platform and enable the use of our Services. We are committed to compliance with applicable privacy laws, including PIPEDA and HIPAA, ensuring appropriate safeguards are in place to protect sensitive health information.

2. Definition of Personal Data

“Personal Data” refers to any information that can be used to identify you, as defined under applicable data privacy laws. This includes direct identifiers (e.g., name, email) and indirect identifiers (e.g., IP address, cookies). For health-related data, we recognize the distinction of Protected Health Information (PHI) under HIPAA and personal health information under PIPEDA, and treat such data with heightened safeguards.

3. Personal Data We Collect

We collect the following categories of Personal Data:


a. For Patients: 

  • Full name

  • Phone number

  • Email address

  • Geographical information

  • Sex

  • Date of birth

  • Health information necessary for service delivery (consistent with HIPAA/PHIPA requirements).


b. For Providers: 

  • Full name

  • Phone number

  • Email address

  • Geographical information

  • Credit card information

  • Billing contact and email

  • Other professional information (e.g., regulatory membership information) used to verify you as a practicing healthcare provider


c. Communications with Us:
When you contact us for support or inquiries, you may be required to provide additional data, including your name, job title, company name, address, and phone number. Phone calls may be recorded for quality assurance.


d. Events:
Attendees of events facilitated by us may be asked to provide their email address, phone number, and company affiliation.


e. Providing Third-Party Information:
If you provide us or our affiliates with Personal Data about others, you must have the authority to do so and obtain necessary consents, especially when health data is involved.


f. Automatic Data Collection:
We collect data automatically through cookies and other technologies, such as: 


  • Browser and device data (IP address, device type, operating system, etc.)

  • Usage data (time on the platform, pages visited, links clicked, etc.)
    We may combine this data with other personal data we have about you to provide improved services and targeted marketing, while adhering to applicable privacy laws.

4. Personal Data Providers Collect from Patients

Providers automatically collect the following categories of Personal Data from users (patients using the platform):


  • Full name of the patient

  • Phone number of the patient

  • Email address of the patient

  • Geographical information (postal code) of the patient

  • Sex of the patient

  • Date of birth of the patient

  • Dependents (Name, Date of Birth, and Sex) listed on the patient's accounts

5. Legal Basis for Processing Personal Data

We process Personal Data based on the following legal grounds: 


  • Consent: For health data and other personal data where required by law, including explicit consent for PHI under HIPAA and personal information under PIPEDA.

  • Contractual Necessity: When processing is necessary for the performance of a contract with you.

  • Legal Compliance: To comply with applicable laws, including PIPEDA, HIPAA, and other relevant regulations.

  • Legitimate Interests: When processing is necessary for our legitimate interests, provided those interests do not override your rights.

6. How We Use Personal Data

We use your Personal Data for the following purposes:

 

a. Service Facilitation:
To manage and maintain relationships with users and Providers and to execute the Services we offer, including handling health information securely in compliance with HIPAA and PIPEDA.


b. Marketing Communications:
With your consent, we may send marketing emails regarding our Services, invite you to events, and request your participation in surveys.


c. Advertising:
Your Personal Data may also be used for targeted marketing campaigns, conducted in compliance with applicable laws, including restrictions on health data marketing under HIPAA and PIPEDA.


d. Social Media Features:
Our Services may include social media functionalities that allow you to share activities on those platforms.


7. How We Disclose Personal Data

We do NOT sell or rent your Personal Data to third parties. We may share your information under specific circumstances: 


a. Corporate Transactions:
If we undergo a business transaction (merger, acquisition, etc.), your Personal Data may be transferred.


b. Legal Compliance:
We may disclose your data to comply with applicable laws, including PIPEDA and HIPAA, to protect our rights, or respond to legal requests.


c. Third-Party Data Processors:
We may engage third-party companies or individuals as service providers who process Personal Data on our behalf. These providers are required to protect such data and use it only for the purposes specified by us, including compliance with HIPAA’s Business Associate Agreements (BAAs) and PIPEDA’s confidentiality obligations.


d. Data Security and Safeguards:
All data sharing is conducted with appropriate safeguards, including end-to-end encryption, access controls, and secure storage, to ensure compliance with HIPAA and PIPEDA standards.


e. Your Data Protection Rights:
You have the right to request access, correction, or deletion of your Personal Data, as well as other rights under applicable law (e.g., the right to withdraw consent). For health data, we follow HIPAA procedures for access and amendment requests, and under PIPEDA, we facilitate your rights to access and correct your data.


8. Security and Retention

We implement reasonable organizational, administrative, and technical measures to protect your Personal Data, including health information, in accordance with HIPAA Security Rule and PIPEDA security standards. Despite these measures, no transmission or storage method is completely secure. We retain your Personal Data only as long as necessary for providing our Services, complying with legal obligations, and for fraud detection and prevention.

9. Data Breach Notification

In the event of a data breach involving Protected Health Information or other Personal Data, we will notify affected users promptly, in accordance with HIPAA breach notification requirements and PIPEDA breach protocols, and take appropriate measures to mitigate any harm.

10. Use by Minors

Our Services are not intended for individuals under the age of 14. If we inadvertently collect personal data from minors, including health data, we will take steps to delete such information upon request.

11. International Data Transfers

If you are accessing our Services from outside the United States or Canada, your Personal Data may be transferred to and processed in the U.S. or Canada, where data protection laws differ. We ensure that appropriate safeguards are in place, including contractual measures and compliance with cross-border data transfer standards under PIPEDA and HIPAA.

12. Updates to This Privacy Policy

We may modify this Privacy Policy to reflect changes in our practices or legal requirements, including updates necessary for ongoing HIPAA and PIPEDA compliance. The “Last Updated” date at the beginning of this policy indicates when it was last revised. We encourage you to review this policy periodically.

13. Links to Other Websites

Our platform may contain links to third-party websites with their own privacy policies. We are not responsible for the content or practices of these third-party websites.

14. User Responsibilities

You are responsible for maintaining the confidentiality of your account information and are encouraged to notify us immediately of any unauthorized use of your account or breach of security. This includes safeguarding your health information in accordance with HIPAA and PIPEDA.

15. Contact Us

If you have questions or concerns regarding our Privacy Policy, or wish to exercise your rights under HIPAA or PIPEDA, please contact us at: Email: support@materiaplus.com


Thank you for trusting Materia+ with your personal information. Your privacy and health information are important to us, and we are committed to maintaining compliance with applicable privacy laws, including PIPEDA and HIPAA.