This notice is a placeholder draft for the V1 site. Replace with a final version reviewed by qualified legal counsel before going live. The Dorma Health legal entity, address, and HIPAA designations below are stand-ins.

Who we are

Dorma Health, Inc. (“Dorma,” “we,” “us”) is the operator of dormahealth.com and the Dorma at-home sleep apnea test service. We collect personal information and protected health information from people who interact with the site, place an order, or receive care through the Dorma physician network.

What we collect

  • Account information: name, email, phone, mailing address, password.
  • Health screening information: the responses you provide on the sleep questionnaire, used by a physician on the Dorma network to determine clinical eligibility for the at-home test.
  • Diagnostic data: the recordings produced by the Dorma sleep patch during your test nights, including airflow, blood oxygen, pulse, position, and snoring signals.
  • Order & payment information: what you ordered, when, and a token from our payment processor (we do not store your full card number).
  • Site usage: standard server logs, cookies necessary for the site to function, and analytics events (pageviews, click events).

How we use it

We use your information to provide the Dorma service: to take and fulfill your order, to enable a physician on our network to determine eligibility and interpret your study, to deliver your results, to support you, and to operate and improve the site. We do not sell your data and we do not share your health information with advertisers.

HIPAA

Your health information is “protected health information” (PHI) under the Health Insurance Portability and Accountability Act (HIPAA). Dorma operates as a HIPAA-covered entity and only uses or discloses PHI as permitted by HIPAA, including for treatment, payment, and health care operations.

Sharing

  • Clinicians: we share your information with the physician on the Dorma network who reviews your eligibility and reads your study.
  • Service providers: we use HIPAA-compliant service providers for hosting, secure data storage, payment processing, customer support, and shipping. They are bound by business associate agreements.
  • Device partner: our device partner manufactures the hardware and provides device telemetry processing under a business associate agreement. They do not use your data for any purpose other than the service we contract them for.
  • Law & safety: we may share information when required by law or to protect someone’s safety.

Your choices

You can request a copy of your medical record, ask us to correct it, request restrictions on certain uses, or withdraw consent for marketing communications at any time. Email the address on your order confirmation to start the request.

Cookies

We use a small number of cookies. Strictly necessary cookies keep the site working (e.g., remembering you’re logged in). Analytics cookies help us understand site usage in aggregate. You can disable non-essential cookies in your browser without breaking core functionality.

Children

The Dorma service is for adults 18 years or older. We do not knowingly collect information from anyone under 18.

Changes

We may update this notice. If we make material changes, we’ll let you know by email or with a notice on the site.