Privacy Policy
Last updated: April 3, 2026
MDMD (“MDMD,” “we,” “us,” or “our”) respects your privacy and is committed to protecting the personal and health information you share with us. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you use our website at mdmd.com and our related services (collectively, the “Platform”).
1. Information We Collect
We may collect the following categories of information:
- Identity information: First and last name, date of birth, government-issued photo ID.
- Contact information: Email address, phone number, mailing address.
- Health information: Height, weight, medical history, current medications, health conditions, treatment preferences, and other information you provide through our intake questionnaire or during provider consultations.
- Payment information: Credit/debit card details or other payment method information (processed by our third-party payment processor).
- Device and usage data: IP address, browser type, operating system, pages viewed, referring URL, and other standard analytics data collected through cookies and similar technologies.
2. How We Use Your Information
We use your information to:
- Facilitate your telehealth consultation with an independent licensed provider.
- Enable your Provider to review your health history and make prescribing decisions.
- Coordinate prescription fulfillment and medication delivery through our pharmacy partners.
- Communicate with you about your care, account, orders, and platform updates.
- Process payments and manage your subscription.
- Verify your identity and prevent fraud.
- Improve the Platform and develop new features.
- Comply with legal and regulatory obligations.
3. HIPAA Notice
Your protected health information (“PHI”) is handled in accordance with the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”) and applicable state privacy laws. We maintain administrative, technical, and physical safeguards designed to protect PHI from unauthorized access, use, or disclosure.
Our independent Providers and pharmacy partners are each responsible for their own HIPAA compliance with respect to the PHI they create, receive, maintain, or transmit.
4. How We Share Your Information
We share your information only as necessary for the purposes described below:
- Licensed Providers: Your health information is shared with the independent licensed Provider assigned to your case for the purpose of conducting your telehealth consultation and making prescribing decisions.
- Pharmacy partners: If your Provider issues a prescription, relevant information is shared with our licensed pharmacy partner to fulfill and deliver your medication.
- Payment processors: Payment information is shared with our third-party payment processor to process transactions. MDMD does not store full credit card numbers on our servers.
- Service providers: We may share information with trusted vendors who perform services on our behalf (e.g., hosting, analytics, customer support), subject to confidentiality obligations.
- Legal requirements: We may disclose information if required by law, regulation, legal process, or governmental request.
We do not sell your personal information or health data to third parties.
5. Cookies & Tracking Technologies
We use cookies and similar technologies to operate the Platform, analyze usage patterns, and improve your experience. These may include:
- Essential cookies: Required for the Platform to function (e.g., session management, security).
- Analytics cookies: Help us understand how visitors interact with the Platform (e.g., pages visited, time on site). We may use third-party analytics services.
You can control cookies through your browser settings. Disabling certain cookies may affect Platform functionality.
6. Your Rights
Depending on your state of residence, you may have certain rights regarding your personal information, including the right to:
- Access the personal information we hold about you.
- Correct inaccurate or incomplete personal information.
- Delete your personal information, subject to certain legal exceptions (e.g., we may be required to retain medical records for a minimum period).
To exercise any of these rights, please contact us at admin@ocean.net. We will respond to verified requests within the timeframe required by applicable law.
7. Data Retention
We retain your personal and health information for as long as necessary to provide our services, fulfill legal obligations, resolve disputes, and enforce our agreements. Medical records are retained in accordance with applicable state and federal laws, which may require retention for a minimum of 7–10 years after your last interaction with a Provider.
When information is no longer needed and not subject to a legal retention requirement, we will securely delete or de-identify it.
8. Data Security
We implement industry-standard administrative, technical, and physical safeguards to protect your information, including encryption in transit and at rest, access controls, and regular security assessments. However, no method of transmission over the Internet or method of electronic storage is 100% secure, and we cannot guarantee absolute security.
9. Children’s Privacy
The Platform is not intended for individuals under 18 years of age. We do not knowingly collect personal information from minors. If you believe we have inadvertently collected information from a minor, please contact us at admin@ocean.net and we will promptly delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated by updating the “Last updated” date and, where required by law, by providing additional notice. Your continued use of the Platform constitutes acceptance of the updated policy.
11. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at: admin@ocean.net