PLEASE READ THIS PRIVACY POLICY CAREFULLY.

MyTabiCare ("MyTabiCare," "we," "us," or "our") is a U.S.-based digital caregiving management and family support platform providing tools for care coordination, analytics, well-being tracking, and secure communication ("Features"). MyTabiCare App and https://mytabicare.com and https://tabitharm.com is owned and operated by Tabitha Resource Management, LLC.

We are committed to protecting your privacy, safeguarding Personal Information, and ensuring the confidentiality, integrity, and availability of Protected Health Information ("PHI") in compliance with the Health Insurance Portability and Accountability Act ("HIPAA"), applicable Illinois laws, and other U.S. federal and state privacy requirements.

This Privacy Policy describes how MyTabiCare collects, uses, discloses, and protects information when you access or use our website, applications, or Features (collectively, the "Platform").

By creating an account, accessing the Platform, or using the Features, you acknowledge you have read and understood this Privacy Policy. If you do not consent to the provisions set forth in this Privacy Policy, do not use this Site.

1. HIPAA Compliance

MyTabiCare is structured to support compliance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA), including the Privacy Rule, Security Rule, and Breach Notification Rule.

We implement appropriate administrative, physical, and technical safeguards to protect electronic Protected Health Information ("ePHI"). Because MyTabiCare stores, transmits, and processes Electronic Protected Health Information ("ePHI"); we maintain administrative, technical, and physical safeguards consistent with the Health Insurance Portability and Accountability Act ("HIPAA") as described below.

When you use the Services in a manner that requires PHI processing, MyTabiCare may enter into a Business Associate Agreement ("BAA") where legally required.

MyTabiCare is not a covered entity itself. But is sometimes a Business Associate by providing services to a covered entity. In all our services, including consumer services where HIPAA does not apply, we still closely follow HIPAA rules to ensure the highest security and privacy to keep your data safe.

MyTabiCare follows the HIPAA:

  • Privacy Rule (45 CFR Part 160 & Subparts A and E of Part 164)
  • Security Rule (45 CFR Part 160 & Subparts A and C of Part 164)
  • Breach Notification Rule (45 CFR Part 164 Subpart D)

Our safeguards include:

Administrative Safeguards

  • Employee training
  • Access control policies
  • Risk assessments
  • Incident response procedures

Technical Safeguards

  • Encryption in transit and at rest
  • Multi-factor authentication
  • Logging and audit trails
  • Secure data centers and servers

Physical Safeguards

  • Restricted server access
  • Secure storage environments

2. Scope of This Privacy Policy

This Privacy Policy applies to:

  • Information collected through the MyTabiCare Platform (web, mobile, connected Features)
  • PHI collected, stored, processed, or transmitted in connection with care coordination
  • Non-PHI Personal Information collected from users, family members, and caregivers
  • Information submitted through communications, support, or other interactions with us

This Privacy Policy does NOT apply to:

  • Offline data collection
  • Third-party websites linked from our Platform
  • Information processed by unaffiliated providers, caregivers, or individuals not contracted by MyTabiCare
  • Actions taken by other users who receive your shared information

This Privacy Statement does not reflect the privacy practices of those sites, and you should consult the privacy policies of those sites to learn about their practices. MyTabiCare does not knowingly collect information from children under age 13, and persons under age 18 may use the Platform only with the consent of a parent/guardian.

3. Types of Information We Collect

We collect information in three primary categories:

A. Personal Information ("PI")

"Personal Information" means information that identifies, relates to, describes, or can reasonably be linked to an individual user. Examples include:

  • Name, email address, telephone number, mailing address
  • Login credentials
  • Payment details (processed via secure third-party processors)
  • Communication preferences

B. Protected Health Information ("PHI")

PHI is collected only when MyTabiCare acts as a HIPAA "Business Associate" for users, families, payers, or providers. PHI may include information related to a care recipient ("Loved One"), such as:

  • Medical conditions or diagnoses
  • Medication schedules, adherence, and health tasks
  • Well-being metrics (hydration, nutrition, vitals, notes, daily observations)
  • Appointments, assessments, and care plans
  • Uploaded documents containing PHI
  • Information shared by family and caregivers

MyTabiCare stores and transmits PHI only in encrypted, HIPAA-compliant environments.

C. Non-Personal Information ("NPI") / Analytics Data

If you contact us for customer support, we may ask you to provide information about your computer or mobile device or about the issues you are trying to resolve. This information is necessary to help us answer your questions. We may record your requests and our responses for quality control purposes.

For some of the Features, we may make chat rooms, forums, message boards, or news groups available to you. Please remember that any information disclosed in these areas is public. You should exercise caution when disclosing Personal Information in these areas, as this information is made available to other users. Do not disclose information in these public forums that might be considered confidential or proprietary or that you do not wish to be publicly available or that you are prohibited from disclosing.

This includes technical and usage information such as:

  • IP address, device type, operating system, browser type
  • Click-stream activity, pages viewed, time spent
  • Mobile device identifiers
  • Aggregate usage trends

NPI does not identify an individual unless combined with PI or PHI.

4. How We Collect Information

We collect information in the following ways:

A. Information You Provide Directly

When you create an account, create or update a Loved Ones profile, enter notes or care data, upload documents or files, complete forms, surveys, or questionnaires, communicate with support, and participate in community features.

B. Information Collected Automatically

Through cookies, web server logs, analytics tools, device identifiers, session tracking, and performance monitoring tools.

C. Information Provided by Authorized Third Parties

Such as family caregivers, professional caregivers, health care providers, payment processors, and integrations or connected apps (with your authorization).

You agree you will not provide us with information about any individual unless you are legally authorized to do so. We do not share information provided by you that is personally identifiable with others unless we say so in this Privacy Statement, where we are otherwise required by law or contract to do so or where you give us permission.

5. How We Use Information

MyTabiCare uses PI, PHI, and NPI to:

A. Provide and Improve the Features

  • Create and maintain user accounts
  • Deliver care coordination tools
  • Generate analytics and insights
  • Process payments and manage subscriptions
  • Personalize user experience
  • Respond to support requests

B. HIPAA-Permitted Uses of PHI

We may use PHI for:

  • Payment processing
  • Quality assurance, audit logs, and system integrity
  • Cloud hosting and secure storage

We do not use PHI for marketing without explicit authorization.

C. Communications

We may use PI (but not PHI without authorization) to:

  • Send service updates
  • Provide alerts or notifications
  • Inform you of new features
  • Offer relevant content or educational materials

If you do not wish to receive offers related to additional products and services that may be of interest to you, you will have an opportunity to unsubscribe from future mailings or communications.

D. Platform Security and Compliance

We use various data elements to detect:

  • Abuse or misuse
  • Unauthorized access
  • Fraud
  • Security incidents

6. How We Disclose Information

We DO NOT sell PI or PHI.

We may disclose information in the following ways:

A. To Authorized Users You Designate

You may grant access to family members, caregivers, providers and other authorized parties. MyTabiCare is not responsible for actions taken by individuals to whom you voluntarily grant access.

B. Business Associates and Subcontractors

We share PHI only with HIPAA-compliant vendors who:

  • Provide secure hosting
  • Process payments
  • Provide analytics
  • Deliver customer support tools
  • Provide secure communication or file storage

All vendors handling PHI sign Business Associate Agreements (BAAs).

C. Corporate Transactions

If MyTabiCare is involved in merger, acquisition, asset transfer, or bankruptcy, PHI will be transferred only as allowed by HIPAA and applicable law.

D. Legal and Safety Requirements

We may disclose PI or PHI when required to:

  • Comply with federal or state law
  • Respond to subpoenas or legal process
  • Prevent fraud or abuse
  • Protect the rights, safety, and property of users
  • Meet law enforcement obligations

HIPAA limits what information may be shared in these situations.

7. Cookies & Tracking Technologies

MyTabiCare uses cookies and similar technologies to:

  • Recognize users
  • Maintain session state
  • Save preferences
  • Improve functionality
  • Support analytics

We honor browser "Do Not Track" signals where technically feasible. You may decline certain cookies, but portions of the Platform may not function properly.

8. Data Security Measures

MyTabiCare uses administrative, physical, and technical safeguards meeting or exceeding HIPAA requirements, including:

  • Encryption of PHI in transit and at rest
  • Access controls and identity management
  • Secure hosting environments
  • Intrusion detection and monitoring
  • Audit logs and access tracking
  • Regular penetration testing
  • Role-based access permissions

Despite these measures, no method of electronic transmission is 100% secure.

9. Data Retention

We retain PI and PHI only for as long as necessary to:

  • Provide the Features
  • Meet contractual or legal obligations
  • Maintain accurate audit logs
  • Comply with HIPAA and applicable state laws

Users may request deletion of PI or PHI, subject to legal retention requirements.

10. Your Rights

Depending on your role and applicable law, you may have rights to:

  • Access PI or PHI
  • Correct inaccuracies
  • Request deletion (where permitted by HIPAA)
  • Request restriction of PHI
  • Receive an accounting of disclosures
  • Revoke authorizations

We will respond to all valid requests within required timeframes.

11. Marketing & Communications

We may send:

  • Service updates
  • Feature announcements
  • Educational content

We do not use PHI for marketing without a signed HIPAA authorization. Users may opt out of marketing communications at any time.

12. User Responsibilities

You agree to:

  • Maintain the confidentiality of your login credentials
  • Only upload information you are authorized to share
  • Not misuse the Platform to upload unlawful, harmful, or unpermitted content
  • Immediately notify us of unauthorized access

13. Third-Party Links

Our Platform may contain links to third-party sites. We do not control, endorse, or guarantee their privacy practices. You are encouraged to review their policies separately.

14. International Users

MyTabiCare is operated in the United States and other countries. Data may be stored on servers in the U.S. or other territories and is subject to U.S. laws, including HIPAA. Those who choose to access this site from other locations access the Site on their own initiative and are responsible for compliance with local laws.

15. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our services and policies. When changes occur, we will revise the "Effective Date" at the top of this document. We encourage you to review this Privacy Policy periodically to be informed of how we are protecting your information.

16. Contact Information

If you have questions or wish to exercise your rights, contact us at:

MyTabiCare Privacy Office

  • By email: privacy@mytabicare.com
  • By mail: 2501 Chatham Rd, Suite R, Springfield, IL 62704, USA

Download our app on App and Play store

MyTabiCare keeps you connected to the care you trust
anytime, anywhere

Download on App StoreGet it on Google Play