CareCompass · Policy Center

Privacy Policy

Effective
July 12, 2026
Last updated
July 12, 2026
Version
2026-07-12-v1

CareCompass is a software service operated by Mindful Me, LLC. These policies are the current published version. Questions? Contact andrea@andreagoundrycounseling.com.

CareCompass is a software service operated by Mindful Me, LLC. In this Privacy Policy, "Mindful Me, LLC," "CareCompass," "we," "us," and "our" refer to Mindful Me, LLC. This Privacy Policy describes what information CareCompass collects from clinicians who use the platform, why we collect it, how we use and protect it, and the choices you have. It applies to the current clinician beta and will be updated as CareCompass evolves. CareCompass is not a HIPAA-compliant service during the current beta, and no CareCompass Business Associate Agreement (BAA) is currently available; see the HIPAA & Health-Data Notice.

1. Information you provide

  • Account and profile information: legal name, email address, password (stored only as a hash), professional credentials, and role within your practice.
  • Clinician application and licensing information, professional license type, license number, licensing jurisdiction, and any documentation (such as a license image) you upload while applying for clinician access.
  • Onboarding responses: the population preferences and onboarding-status responses you provide so we can tailor the product to your practice.
  • Policy-acceptance records: a record that you accepted a specific version of the CareCompass policy bundle, together with the acceptance timestamp and limited technical metadata (such as a hashed IP-address representation) used to maintain an immutable audit trail.
  • Optional support and billing information: when you choose to make an optional support contribution, Stripe may provide us a customer identifier, contribution or subscription identifier, payment status, and limited billing metadata (such as the last four digits of your payment card and card brand). Optional support does not control CareCompass access. CareCompass never receives your full payment card number.
  • Clinician-entered content: the clinical-context content you enter into CareCompass, including check-ins, notes, roadmaps, summaries, goals, resources, and similar items. During the current beta this content must not include PHI or client-identifying information (see §5 below).
  • AI-assisted features: AI-assisted features are currently disabled in the production runtime. CareCompass does not currently transmit clinician-entered clinical content to an external AI provider.
  • Feedback and support communications: the messages, feedback, and support requests you send to us and their contents.

2. Information collected automatically

  • Authentication, MFA, and session information, sign-in events, multi-factor authentication events, trusted-device records, and session identifiers used to keep you signed in.
  • Security and audit information: security events, administrative-action audit logs, email-send records, and related integrity data used to detect and investigate abuse.
  • Technical data: approximate browser and device characteristics reported by your browser, request timestamps, and technical error logs.
  • IP-address handling: the CareCompass policy-acceptance record stores a server-generated hashed representation of the request's first-hop IP address. Mindful Me, LLC does not intentionally store the raw IP address in the policy-acceptance table. Hosting, CDN, authentication, email, security, and infrastructure providers may process or temporarily retain raw IP addresses in operational or security logs under their own terms. We do not represent that every CareCompass security or audit path hashes IP addresses.
  • Cookies and browser storage: first-party cookies and browser storage used to keep you signed in, remember trusted devices, and store lightweight interface preferences (see §11).

CareCompass does not currently integrate a third-party product- analytics, session-replay, or advertising provider in production, and does not collect information for advertising purposes.

3. AI-assisted features

AI-assisted features are currently disabled in the CareCompass production runtime. There is no active external AI provider approved to receive clinician-entered clinical content, and the current server safety boundary blocks AI requests before clinical content can be transmitted.

Before any AI-assisted feature is enabled for clinical use, Mindful Me, LLC will complete the required vendor, security, retention, and Business Associate Agreement review and will update this Policy if the processing practices described here materially change. Any future AI output must remain subject to clinician review and professional judgment.

4. Billing information

Optional support contributions are processed by Stripe, Inc.. CareCompass never receives your full payment card number. Stripe may provide us a customer identifier, payment or support-subscription status, and limited billing metadata so we can operate the optional support program. Optional support is separate from CareCompass clinical access. Stripe's handling of payment information is governed by Stripe's own privacy practices.

5. Clinical and health-related information

CareCompass is designed to support clinical-context collaboration between clinicians. During the current clinician beta:

  • You may not enter PHI or client-identifying information into CareCompass, including inside AI-assisted feature prompts.
  • You may enter only initials, non-identifying labels, demonstration information, or properly de-identified content.
  • Obtaining client or guardian consent does not authorize a clinician to enter PHI or client-identifying information during the current beta. The beta prohibition applies regardless of consent.
  • Clinical-context information may be sensitive even when it is not PHI and even when it is properly de-identified. Such information is stored in the CareCompass AWS environment, including Amazon RDS PostgreSQL where applicable. AI-assisted features are currently disabled and do not transmit this content to an external AI provider.
  • You remain responsible for data minimization and for your professional, ethical, and legal obligations regarding client information.

See the HIPAA & Health-Data Notice for details on the current beta prohibition, BAA status, and HIPAA-readiness work.

6. Why we use this information

  • Provide and maintain accounts: create, secure, and support your CareCompass account.
  • Verify clinician eligibility: review clinician applications and licensing information.
  • Authenticate users and enforce MFA: sign you in, enforce multi-factor authentication, and remember trusted devices.
  • Provide CareCompass features: operate the platform features you use, including collaboration, roadmaps, check-ins, notes, and summaries.
  • Process optional support contributions: operate optional support payments through Stripe. Optional support does not determine CareCompass access.
  • AI-assisted features: these features are currently disabled. If they are enabled in the future, this Policy will be updated as appropriate before clinical use.
  • Transactional communications: authentication and security messages may be delivered through AWS-managed identity services. Application-level transactional email is currently disabled pending an AWS-native delivery configuration.
  • Support: respond to your questions, feedback, and support requests.
  • Prevent fraud, abuse, and unauthorized access, detect and investigate misuse, abuse, and security incidents.
  • Debug and improve reliability: diagnose errors and improve platform reliability.
  • Legal and compliance obligations: comply with applicable law and respond to valid legal process.
  • Immutable acceptance and audit records: maintain policy-acceptance and audit records that must be preserved for legal, security, and accountability purposes.

We do not use clinician-entered clinical-context content to train generalized AI models for unrelated customers or purposes, and we do not use it for advertising.

7. Service providers and subprocessors

CareCompass uses third-party service providers to operate the platform. Their handling of information is governed by their applicable agreements, terms, and privacy practices. This list reflects the current production architecture and may change as the service evolves.

  • Amazon Web Services (AWS): primary production infrastructure, including application hosting on ECS/Fargate, Amazon RDS PostgreSQL, Amazon Cognito authentication and MFA, load-balancing/TLS services, logging, and secrets management. The CareCompass AWS Business Associate Addendum is active; PHI use is limited to HIPAA-eligible AWS services within the approved architecture.
  • Stripe, Inc.: optional support contribution payment processing and related customer/billing metadata. Optional support is separate from CareCompass clinical access.

Application-level transactional email and external AI processing are currently disabled in the production runtime. If additional subprocessors are enabled, CareCompass vendor records and this Policy will be updated as appropriate before clinical use.

8. Selling, advertising, and sharing

  • Mindful Me, LLC does not sell your personal information.
  • Mindful Me, LLC does not use your personal information for targeted advertising and does not share personal information with third parties for their own advertising purposes.
  • We share information with the service providers listed in §7, acting on our behalf to operate the platform, and only for the purposes described in this Policy.
  • We may share information with other CareCompass users only where you intentionally share it (for example, invited collaborators within your practice).
  • We may disclose information when required by valid legal process or when we reasonably believe disclosure is necessary to protect the rights, safety, or property of CareCompass, our users, or the public, or to investigate fraud or misuse.
  • If Mindful Me, LLC is involved in a merger, acquisition, financing, reorganization, or sale of assets, information may be transferred as part of that transaction, subject to appropriate confidentiality protections and any notification required by applicable law.

9. Data retention and deletion

Formal, category-by-category retention schedules remain part of our ongoing HIPAA-readiness work. In the meantime, we apply the following criteria-based retention approach:

  • Active account data: retained while your account is active and as needed to operate the service for you.
  • Deleted or closed accounts: active platform content is removed or de-associated within a reasonable period after deletion, subject to the exceptions in this section.
  • Clinician applications and license uploads, retained as needed to evaluate the application, document eligibility decisions, and support compliance and fraud-prevention reviews.
  • Support and billing records: retained as needed for accounting, tax, and financial-compliance purposes; some records are retained by Stripe under Stripe's own retention rules.
  • Policy-acceptance records: retained on an immutable basis so we can demonstrate which policy version each user accepted and when.
  • Security and audit logs: retained on an immutable basis for a period appropriate to their security and compliance purpose.
  • Email delivery records: retained by the transactional email provider for a period appropriate to its deliverability and abuse-prevention purpose.
  • AI inputs and outputs stored inside CareCompass, retained on the same basis as the surrounding account content that produced them.
  • Provider-side records outside CareCompass's direct control: subprocessors and the AI provider may retain records under their own terms; CareCompass does not control those retention periods.
  • Backups: infrastructure providers may maintain backups or disaster-recovery copies under their own retention schedules. Deleted information may remain in those backups until the applicable provider retention cycle ends.

Immutable legal, billing, security, and policy-acceptance records may be retained where we have a legitimate legal, fraud-prevention, accounting, or compliance purpose. We do not commit to a fixed retention period we have not yet implemented.

10. Account access, correction, export, and deletion

You may request the following by contacting us at the policy address: andrea@andreagoundrycounseling.com.

  • Access to the account information we hold about you.
  • Correction of inaccurate profile information.
  • An export of information reasonably available to us.
  • Account deletion.
  • Billing assistance.
  • General privacy questions.

We do not currently offer a fully automated self-service export or deletion feature; requests are handled by contacting the policy address above. Deleting your account may not erase records that we must retain for legal, billing, security, fraud-prevention, or audit purposes, or that our subprocessors retain under their own terms.

11. Security

Mindful Me, LLC applies administrative, technical, and physical safeguards designed to protect information, including, where applicable:

  • encryption in transit;
  • password-based authentication with hashed passwords;
  • multi-factor authentication (MFA) for clinician accounts;
  • row-level security in the CareCompass database, scoping access to the authenticated user;
  • role-based access, including a distinct administrative role;
  • server-side authorization for privileged operations, so privileged actions are gated on the server rather than trusted from the browser;
  • audit logging of administrative and sensitive actions;
  • restricted service-role operations executed only by verified server-side code;
  • payment processing delegated to Stripe, so CareCompass does not receive or store full card numbers; and
  • periodic security scanning and remediation of the CareCompass codebase and database configuration.

No system can be guaranteed absolutely secure, and we do not represent that CareCompass is HIPAA compliant or holds any certification we have not obtained. You are responsible for protecting your credentials and for promptly reporting any suspected unauthorized activity on your account.

12. Cookies and browser storage

CareCompass uses first-party cookies and browser storage only for functional and security purposes, including:

  • Authentication and session cookies: required to keep you signed in;
  • MFA and trusted-device state: supports multi-factor authentication and remembers devices you have designated as trusted. Authentication sessions and server-side assurance-level checks determine whether MFA requirements are satisfied. Browser state may support the interface but is not the authoritative security control. MFA may be required again after sign-out, session expiration, revocation, use of a new browser or device, clearing site data, or a security-sensitive event.
  • Onboarding and interface preferences: browser storage may contain temporary interface state, tour-step state, dismissed tips, and lightweight preferences. Authoritative onboarding completion, population preference, and tour-completion status are stored server-side in your database record. Clearing browser storage does not erase authoritative onboarding completion, and browser storage is not the authoritative source of authentication, authorization, subscriptions, roles, or entitlements.
  • Security-related state: used to detect and mitigate abuse.

These items are necessary for the service to function correctly. CareCompass does not currently use third-party advertising or third-party analytics cookies.

13. Children and client information

CareCompass accounts are intended for adults who are approved clinicians or authorized members of an approved clinical practice. The service is not directed to children for independent account creation, and we do not knowingly permit children to create their own CareCompass accounts. During the current beta, clinicians may not enter identifying child information or PHI into CareCompass. This Privacy Policy does not replace a clinician's independent responsibility to obtain any required guardian consent or authorization if and when CareCompass later permits authorized client data. Mindful Me, LLC does not provide therapy and has no direct therapist-client relationship with a clinician's clients.

14. Legal disclosures and business transfers

We may disclose information:

  • in response to valid legal process, such as a subpoena, court order, or other lawful request;
  • where we reasonably believe disclosure is necessary to protect the rights, safety, or property of CareCompass, its users, or the public;
  • to investigate suspected fraud, abuse, or violations of these policies;
  • in connection with a business reorganization, financing, merger, acquisition, or sale of assets, subject to appropriate confidentiality protections; and
  • where required or permitted by applicable law, including any notifications the law requires us to provide.

We do not claim unrestricted discretion to disclose information for unspecified reasons.

15. Changes to this Privacy Policy

Mindful Me, LLC may update this Privacy Policy. Updates are handled as follows:

  • Minor or non-material changes (such as clarifying edits, contact-information updates, or administrative corrections) may become effective after we post the updated policy and update the "Last updated" date.
  • Material changes to our data-handling practices will receive appropriate notice, and a new policy-bundle version must be accepted before a new paid Checkout Session can be created.
  • Existing users will not be recorded as having accepted a policy version they never actually accepted. The server-side policy-acceptance record remains the authoritative source of which version each user has accepted.

16. Contact

Questions about privacy? The policy contact address is andrea@andreagoundrycounseling.com. The contracting entity is Mindful Me, LLC.