ONLINE PRIVACY POLICY AGREEMENT

Last Updated: March 30, 2026

Nueva Health System, PLLC (NHS) is committed to keeping all personal information collected from individuals who visit our website and make use of our online facilities and services accurate, confidential, secure, and private. This Privacy Policy is designed to ensure those affiliated with Nueva Health System of our commitment to meet and exceed modern privacy standards, including the Health Insurance Portability and Accountability Act (HIPAA), the Texas Medical Privacy Act, and the FTC Health Breach Notification Rule.

1. SCOPE AND HIPAA DISCLOSURE

This Privacy Policy governs data collection and usage on nuevahealthsystem.com and any affiliated sites owned by Nueva Health System, PLLC.

Website vs. Patient Records: Information submitted through general website contact forms, or collected via cookies, is generally considered Personally Identifiable Information (PII).

Protected Health Information (PHI): Information provided during the course of a provider-patient relationship at our Temple, TX clinic is considered Protected Health Information (PHI) and is governed by our HIPAA Notice of Privacy Practices (NPP), which is a separate legal document available upon request or at our physical clinic location.

2. COLLECTION OF INFORMATION

This website collects various types of information, including:

Voluntarily Provided Information: Including your name, address, email address, billing/credit card information, and professional credentials, which may be used when you purchase products/services or register for certifications.

Automatically Collected Information: Including cookies, third-party tracking technologies (such as Google Analytics or Meta Pixels), IP addresses, and server logs.

Compliance Note: In accordance with HHS/OCR 2024-2026 guidance, we do not use tracking technologies on pages where users interact with sensitive health-intent data (e.g., appointment scheduling or symptom checkers) unless a Business Associate Agreement (BAA) is in place with the vendor.

3. USE OF INFORMATION COLLECTED

Nueva Health System may collect and use personal information to:

Operate our website and deliver the services you have requested.

Keep you informed of other products or services available from NHS and its affiliates.

Verify professional licenses for nurse certification programs.

Conduct surveys or research regarding your opinion of current or future services.

NHS does not now, nor will it in the future, sell, rent, or lease any of our customer lists to third parties.

4. SMS AND MOBILE MESSAGING (10DLC COMPLIANCE)

If you opt-in to receive SMS/text messages from us (for appointment reminders or course updates):

Consent: Mobile information will not be shared with third parties or affiliates for marketing or promotional purposes.

Opt-Out: You may reply "STOP" to any text message at any time to discontinue communications.

Help: Reply "HELP" for more information. Message and data rates may apply.

5. DISCLOSURE OF INFORMATION

NHS may disclose your personal information, without prior notice to you, only if required to do so in accordance with applicable laws or in a good faith belief that such action is deemed necessary to:

Remain in conformance with any decrees, laws, or statutes.

Maintain, safeguard, and preserve the rights or property of Nueva Health System.

Comply with the Texas Medical Privacy Act regarding the subpoena of records.

6. CHILDREN UNDER THE AGE OF 13

NHS does not knowingly collect PII from children under thirteen (13) without verifiable parental consent. If such information is inadvertently collected, we will immediately take steps to delete it.

7. YOUR DATA RIGHTS (TEXAS & MULTI-STATE COMPLIANCE)

Under modern privacy frameworks, you have the following rights:

Right to Access/Correct: You may request a copy of the data we hold about you or request corrections to inaccurate professional or personal data.

Right to Deletion: You may request that we delete your PII, subject to legal record-retention requirements (e.g., Texas requires health-related records be kept for a minimum of 7 years).

Unsubscribe: To opt-out of email communications, contact [email protected].

8. SECURITY AND DATA BREACH NOTIFICATION

NHS takes every precaution to maintain physical, procedural, and technical security. Our website uses Secure Socket Layer (SSL) for all private communications and financial transactions.

In the event of a data breach involving your unsecured personal or health information, NHS will notify you in accordance with the FTC Health Breach Notification Rule and/or HIPAA Breach Notification Rule (within 60 days of discovery).

9. CHANGES TO THIS AGREEMENT

NHS reserves the right to update this policy. We will post changes to our homepage at www.nuevahealthsystem.com. If we use your PII in a manner significantly different from that stated at the time of collection, we will notify you promptly via email.

10. HOW TO CONTACT US

For questions regarding this Privacy Policy, please contact us:

Email: [email protected]

Telephone: 254-531-0045

Mailing Address: Nueva Health System, PLLC

9121 Adams Ln Ste 120, Temple, TX 76502