Privacy Policy
A legal disclaimer
We at Adepa Medicals understand that your privacy is important, especially when you are purchasing cosmetic medical supplies. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, create an account, place an order, or otherwise interact with our services.
By using the Website, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree, please do not use the Website.
Information We Collect
Information You Provide Directly
-
Personal identifiers: name, email address, shipping/billing address, phone number
-
Account credentials: username and password (encrypted)
-
Payment information: credit/debit card numbers, expiration dates, CVV (processed through PCI-DSS compliant third-party payment processors — we do not store full card numbers)
-
Health-related information (when necessary for order fulfillment): prescription details, physician name/contact, medical condition (e.g., diabetes, ostomy, wound care), product preferences, allergy information
-
Communication data: messages sent via contact forms, live chat, or email
Information Collected Automatically
-
Device and browser information
-
IP address and geolocation data
-
Cookies, pixels, and similar technologies
-
Usage data: pages viewed, time spent, clickstream data, referring site
Information from Third Parties
-
Shipping carriers (address validation)
-
Payment processors
-
Analytics providers (Google Analytics, etc.)
-
Advertising partners
-
Prescription verification services (when applicable)
How We Use Your Information
We use the information we collect to:
-
Process, fulfill, and ship your orders
-
Verify prescriptions when required by law
-
Communicate with you about orders, accounts, and customer service
-
Send order confirmations, shipping notifications, and invoices
-
Provide personalized recommendations and marketing (only with your consent where required)
-
Improve our website, products, and services
-
Detect, prevent, and address fraud, abuse, and security risks
-
Comply with legal obligations (e.g., FDA regulations, HIPAA where applicable, controlled substance reporting, tax laws)
-
Legal Bases for Processing (GDPR / CCPA / International Compliance)
-
Contract: to fulfill your order and provide requested services
-
Legal obligation: prescription verification, adverse event reporting, tax reporting
-
Consent: marketing emails, non-essential cookies
-
Legitimate interests: fraud prevention, analytics, service improvement
Sharing Your Information
We share personal information only in the following limited circumstances:
Recipient | Purpose | Safeguards in Place |
|---|---|---|
Business transfers (merger, acquisition) | Continuity of service | Buyer bound by this policy |
Law enforcement / regulators | When required by law or to protect rights | Only as legally required |
Analytics & advertising partners | Improve marketing and site performance | Anonymized or aggregated data where possible |
Cloud service & hosting providers | Store and operate the website | Data processing agreements |
Prescription verification services | Confirm validity of prescriptions | HIPAA Business Associate Agreements |
Shipping carriers (UPS, FedEx, USPS) | Deliver your order | Limited data (name, address, phone) |
Payment processors (Stripe, PayPal, etc.) | Process payments | PCI-DSS compliant, tokenized data |
We do NOT sell your personal information to third parties for marketing purposes.
HIPAA Compliance (When Applicable)
Certain information you provide (e.g., prescription details, diagnosis codes, physician information) may constitute Protected Health Information (PHI) under HIPAA. In such cases:
-
We act as a HIPAA Business Associate when processing PHI on behalf of pharmacies or healthcare providers
-
We maintain appropriate Business Associate Agreements (BAAs)
-
PHI is encrypted in encrypted storage and transmission
-
Access is restricted to authorized personnel only
If you purchase only over-the-counter (OTC) products and do not submit prescription information, HIPAA generally does not apply.
Cookies & Tracking Technologies
We use:
-
Essential cookies (required for site functionality and security)
-
Analytics cookies (Google Analytics, Hotjar, etc.)
-
Marketing cookies (Facebook Pixel, Google Ads, etc.)
You can manage cookie preferences via the cookie banner or your browser settings. Rejecting non-essential cookies may affect site functionality.
Data Security
We implement industry-standard security measures including:
-
SSL/TLS encryption in transit
-
Encrypted storage (AES-256 at rest)
-
Regular security audits and penetration testing
-
Access controls and employee training
However, no method of transmission over the Internet or electronic storage is 100% secure.
Data Retention
We retain personal information only as long as necessary:
-
Order & transaction data: 7 years (tax and accounting requirements)
-
Account information: until you request deletion (or 3 years of inactivity)
-
Prescription records: as required by state and federal law (typically 2–10 years)
-
Marketing preferences: until you unsubscribe
Your Rights & Choices
Depending on your location, you may have the right to:
-
Access, correct, or delete your personal data
-
Opt out of marketing communications
-
Opt out of sale of personal information (CCPA)
-
Restrict or object to certain processing (GDPR)
-
Data portability
-
Withdraw consent
To exercise these rights, email adepamedicalsupplies@gmail.com or use the account portal. We will respond within the timeframe required by applicable law (typically 30–45 days).
California residents:CCPA Privacy Notice
CCPA Privacy Notice
-
We do not sell personal information as defined under CCPA
-
You have the right to know, delete, and opt out of sale
-
We will not discriminate against you for exercising your rights
-
Authorized agent requests must include written permission
Submit CCPA requests at adepamedicalsupplies@gmail.com with subject “CCPA Request”.
Children’s Privacy
Our Website is not intended for individuals under 13 (or 16 in certain jurisdictions). We do not knowingly collect personal information from children. If we become aware we have collected such data, we will delete it.
International Data Transfers
Your information may be transferred to — and maintained on — servers located in the United States. If you are located in the EU, UK, or other regions with stricter data protection laws, we rely on Standard Contractual Clauses and other approved mechanisms.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy and updating the "Last Updated" date. Continued use after changes constitutes acceptance.
Contact Us
For privacy questions or to exercise your rights:
Email: adepamedicalsupplies@gmail.com
Telephone: 763-412-2066
22525 Wood Lane Rogers, MN 55374
Thank you for trusting Adepa Medicals with your health and privacy.
