01

Who we are.

ClarityComply is an operational decision intelligence platform for healthcare sterile processing departments, GI labs, and medical device manufacturers. ClarityComply is operated by SurgiHealth Solutions (“we,” “our,” or “us”).

This Privacy Policy explains how we collect, use, and protect information when you visit our website (claritycomply.com), use our live demo, submit a pilot application, or engage with our platform as a facility or manufacturer customer.

By using our website or submitting any form on it, you agree to this policy.

02

What we collect.

Information you provide directly

We collect information you enter into forms on this website, including:

Name, title, and work email address submitted through the live demo, pilot application, manufacturer certification application, or contact forms
Facility name, role, and department information provided during the demo or pilot application process
Device family and SKU information submitted through manufacturer certification applications
Any information you provide in free-text fields, including responses to “what’s driving your interest” or similar questions
Information collected automatically

When you visit our website, we may collect standard technical information including your IP address, browser type, pages visited, and time spent on pages. This information is used to understand how people use our site and to improve it. We do not sell this data.

Information collected through the demo

Our live demo collects the name, position, facility, and email address you enter at the login screen. This information is used to personalize the demo experience and to follow up with you about ClarityComply. The demo does not collect any patient data, clinical records, or facility operational data.

03

How we use it.

We use the information we collect to:

Respond to pilot applications, manufacturer certification inquiries, and general contact requests
Follow up with individuals who complete the live demo or submit interest forms
Personalize your demo experience with your name and facility
Review and evaluate pilot program and manufacturer certification applications
Send relevant communications about ClarityComply, including pilot status updates and program information
Improve our website, demo experience, and application processes
We do not use your information for automated marketing sequences, third-party advertising, or list rental. Every follow-up from ClarityComply is a direct, human-initiated response based on your inquiry or application.
04

Facility data.

For facilities that engage in the ClarityComply pilot program or full platform deployment, a separate Business Associate Agreement (BAA) governs the handling of any Protected Health Information (PHI) that may be processed through the platform.

ClarityComply is a decision guidance and documentation platform. The platform does not connect to EMR systems, sterilizer equipment, or patient record systems. All data entered into ClarityComply during a pilot or deployment is entered directly by facility staff and is considered facility operational data, not PHI, unless otherwise governed by your BAA.

At the end of any pilot or contract period, all facility data is exported and returned to the facility. ClarityComply does not retain facility operational data after contract end. See Section 8 (Data Retention) for full details.
05

Demo & lead data.

Information collected through our live demo (name, position, facility, email) is used solely to follow up about ClarityComply. We do not share this information with third parties. We do not add demo participants to automated email marketing sequences.

Demo lead data is stored securely and reviewed by our team within 2 business days. If you complete the demo and do not wish to be contacted, email privacy@claritycomply.com and we will remove your information.

Pilot and manufacturer certification application data is retained for the duration of the application review process. If your application is not accepted, your data is deleted within 30 days of the decision.

06

Cookies.

Our website uses minimal cookies. We use session cookies to support basic website functionality and, if applicable, analytics cookies to understand aggregate page usage. We do not use advertising cookies or third-party tracking pixels.

You can disable cookies in your browser settings. Disabling cookies will not prevent you from using the website or the live demo.

If we add third-party analytics tools in the future, we will update this section and, where required by law, obtain your consent before setting non-essential cookies.

07

Sharing your information.

We do not sell, rent, or trade your personal information. We do not share your information with advertisers or data brokers.

We may share your information with:

Service providers who help us operate the website and platform, such as hosting providers, under confidentiality agreements that prohibit them from using your data for any other purpose
Legal authorities if required by law, court order, or to protect the rights, property, or safety of ClarityComply, our customers, or the public
A successor entity in the event of a merger, acquisition, or sale of substantially all of our assets, in which case we will notify affected individuals and the successor will be bound by this policy

No other sharing occurs without your explicit consent.

08

Data retention.

We retain personal information only as long as necessary for the purpose it was collected:

Demo lead data — retained until you request removal or until 12 months after your last interaction with ClarityComply, whichever comes first
Pilot application data (accepted) — retained for the duration of the pilot and any subsequent contract period
Pilot application data (not accepted) — deleted within 30 days of the application decision
Facility operational data (pilot) — exported and returned to the facility at pilot close; ClarityComply retains no copies after export confirmation
Facility operational data (contract) — exported and returned to the facility within 30 days of contract end; ClarityComply retains no copies after export confirmation
Manufacturer certification application data — retained for the duration of the certification and any re-certification periods; deleted within 60 days of certification lapse
09

Your rights.

Depending on your location, you may have the following rights regarding your personal information:

Access — request a copy of the personal information we hold about you
Correction — request that we correct inaccurate or incomplete information
Deletion — request that we delete your personal information, subject to any legal obligations to retain it
Opt-out — opt out of any future communications from ClarityComply at any time by emailing privacy@claritycomply.com or by replying to any email we send
Data portability — request your data in a structured, machine-readable format where technically feasible

To exercise any of these rights, email privacy@claritycomply.com. We will respond within 10 business days. We do not charge a fee for reasonable requests.

If you are located in the European Economic Area or the United Kingdom, you have additional rights under the GDPR or UK GDPR, including the right to lodge a complaint with your local supervisory authority.

If you are a California resident, you have rights under the CCPA including the right to know what personal information we collect, the right to delete it, and the right to opt out of its sale (we do not sell personal information).

10

Security.

We take reasonable technical and organizational measures to protect personal information from unauthorized access, disclosure, alteration, and destruction. These measures include encrypted data transmission (HTTPS), access controls limiting who within ClarityComply can access personal data, and secure storage practices.

No method of transmission over the internet is completely secure. We cannot guarantee absolute security, but we are committed to protecting your information using current best practices.

In the event of a data breach that affects your personal information, we will notify you and any applicable regulatory authorities as required by law.

11

HIPAA and healthcare data.

ClarityComply is designed for use in healthcare settings. Where we act as a Business Associate under HIPAA — that is, where we process Protected Health Information on behalf of a Covered Entity — we do so under a signed Business Associate Agreement (BAA) that governs the handling of that information.

This website and our live demo do not collect Protected Health Information. The demo is a simulation using fictional patient and facility data. No real patient records, clinical data, or PHI should be entered into the demo or any form on this website.

If you are a facility customer and have questions about our HIPAA compliance posture, data handling practices, or BAA requirements, contact privacy@claritycomply.com.

12

Contact us.

If you have questions about this Privacy Policy, want to exercise your rights, or have a concern about how we handle your information, contact us:

Privacy contact
ClarityComply™ · Privacy Office
General inquiries: start@claritycomply.com
We respond to all privacy inquiries within 10 business days.

We may update this Privacy Policy from time to time. When we do, we will update the effective date at the top of this page. Material changes will be communicated directly to facility and manufacturer customers via email. Continued use of our website after a policy update constitutes acceptance of the updated policy.