AllergyAIDE Compliance Information
INTRODUCTION
AllergyAIDE is a service developed by medical professionals in conjunction with security and legal experts to provide quick access to children’s allergy information in a standardized format. This form outlines our compliance with relevant healthcare and education privacy laws and explains our data security practices.
HIPAA COMPLIANCE STATEMENT
AllergyAIDE complies with the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and its implementing regulations.
- Protected Health Information (PHI): We collect allergy-related health information about students, which is considered PHI under HIPAA.
- Use and Disclosure: Student allergy information will be used to:
Quick access to information is critical for student safety in emergency situations
• When seconds matter during an allergic reaction, having standardized, readily available information significantly improves response times and treatment
• Parents and legal guardians appreciate this system because it ensures that all authorized school personnel have immediate access to the same accurate information about their child’s allergies, reducing communication errors and providing peace of mind
• All information in the AllergyAIDE system is voluntarily provided by parents or legal guardians concerned about their child’s allergies
• Parents/legal guardians input the information themselves, giving them direct control over what details are shared with the school
• The opt-in approach ensures families participate based on their needs - Rights Under HIPAA: Rights include:
Access to the student’s health information
• Request corrections to inaccurate information
• Receive an accounting of disclosures
• Request restrictions on certain uses and disclosures
• Obtain a paper copy of this notice upon request
• File a complaint if privacy rights have been violated - Notice of Privacy Practices: Our detailed Privacy Policy is available upon request.
EDUCATION 2D LAW COMPLIANCE
AllergyAIDE complies with applicable education privacy laws, including protections for student data. We acknowledge:
- Educational Setting Use: AllergyAIDE collects necessary information related to allergies. Does not use student allergy information for advertising or marketing.
- Data Limitations: We will not create student profiles unrelated to allergy management. We will not sell student information. We will not disclose information beyond what is necessary for allergy management and safety.
- Retention: Student allergy information will be retained only as long as necessary for providing the service and as required by law.
FERPA COMPLIANCE
Given FERPA applies to schools and not mobile applications, schools must comply with FERPA. AllergyAIDE is committed to data privacy and security. All information is voluntarily provided by the minor’s parent or legal guardian.
- Data Limitations: We will not create student profiles unrelated to allergy management. We will not sell student information. We will not disclose information beyond what is necessary for allergy management and safety.
- Retention: Student allergy information will be retained only as long as necessary for providing the service and as required by law.
SECURITY MEASURES
- Technical Safeguards:
• Data encryption in transit and at rest
• Secure authentication procedures
• Regular security assessments and updates - Administrative Safeguards:
Personnel training on data privacy and security
• Access controls limiting PHI exposure to authorized personnel only
• Regular compliance reviews - Physical Safeguards:
Secure data storage systems
• Physical access restrictions to servers and systems
PARENTAL/LEGAL GUARDIAN CONSENT FOR MINOR
AllergyAIDE requires parental or legal guardian consent before collecting, using, or disclosing student allergy information.
Health Information Parents/legal guardians authorize AllergyAIDE to collect, store, use, and disclose the following protected health information regarding the minor:
- An allergy profile related to allergy treatment, if provided
- Emergency contact information, if provided
- Healthcare provider information, if provided
- Action plans for allergy response, if provided
This information is used to create a user profile within AllergyAIDE.
The minor’s health information may be stored and disclosed in the following ways:
- Electronic storage and access via AllergyAIDE mobile application
- Electronic storage and access via school portal and/or the health care provider
- Electronic storage and access via scannable QR codes
- Electronic access for emergency healthcare providers when necessary
The purpose of this disclosure is to create and maintain an allergy profile for the minor within AllergyAIDE. Provide critical health information to caregivers and medical professionals and to provide care to the minor experiencing the allergic reaction.
Recipients of Information Parents/legal guardians give authorization for the health information to be accessible by website and/or mobile application and/or QR code. The purpose of this information’s availability is to assist in allergy reactions. The QR code is accessible by anyone who scans it in order to facilitate assistance to the minor.
Consent Duration and Revocation Parental/legal guardian consent remains valid until either the minor reaches the age of majority (18 in most states) or the AllergyAIDE account is terminated. Parents/legal guardians understand that they may revoke this authorization by submitting a written request to:
Privacy Officer, AllergyAIDE
PGMD Enterprises, LLC
Attn: Privacy Officer
1171 Old Country Road STE 5
Plainview, NY 11803
contact@allergyaide.com