Privacy Policy
Last updated: June 2026
This Privacy Policy explains how IDD Guardian LLC ("IDD Guardian," "we," "us," or "our") handles information in connection with our website at iddguardian.com (the "Site") and our practice-management software for IDD service providers (the "Service"). We are committed to protecting the privacy of the people our customers serve and of everyone who visits our Site.
1. Two roles: our Site and our Service
Our Site. When you visit iddguardian.com or contact us, we act as the controller of the limited information you provide. Our Service. When an agency uses IDD Guardian to manage care, we act as a service provider (and, for protected health information, a HIPAA business associate) processing that data on the agency's behalf and under its direction. This policy primarily describes our Site. Information handled within the Service is governed by our agreement with each agency, including a Business Associate Agreement where applicable.
2. Information we collect
Through the Site we collect only what you choose to provide — for example, your name, email address, organization, and message when you email us or request a demo — along with basic technical information (such as your browser type and pages visited) that is standard to operating a website securely. We do not sell this information.
3. How we use information
We use the information you provide to respond to your inquiries, schedule and conduct demos, provide and support the Service, maintain the security and reliability of our systems, and comply with our legal obligations. We do not use information you submit through the Site for advertising, and we do not sell or rent it to third parties.
4. How we share information
We share information only as needed to operate: with service providers who process data on our behalf under contractual confidentiality and security obligations (such as hosting and email delivery), when required by law or to protect rights and safety, and in connection with a business transfer. Any handling of protected health information within the Service is limited to what is permitted by our agreements with the relevant agency and applicable law.
5. Protected health information (HIPAA)
The Service is designed for HIPAA-regulated care. Where IDD Guardian processes protected health information on behalf of a covered entity, we do so as a business associate, under a Business Associate Agreement, and only as directed by that customer. Individuals seeking access to or correction of their health information should contact the agency that provides their care, which controls that information.
6. Data security
We use administrative, technical, and physical safeguards designed to protect information, including encryption in transit and at rest, role-based access controls, audit logging, and isolation of each agency's data. No method of transmission or storage is completely secure, but we work continuously to protect the information entrusted to us.
7. Data retention
We retain Site inquiry information for as long as needed to respond to you and for our legitimate business and legal purposes. Information within the Service is retained according to our agreement with each agency and applicable recordkeeping requirements.
8. Your choices
You may contact us at any time to ask what information we hold about your Site interactions and to request that we update or delete it, subject to our legal obligations. To exercise these choices, email us at the address below.
9. Children's privacy
Our Site is intended for businesses and is not directed to children. We do not knowingly collect personal information from children through the Site.
10. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date above. Material changes will be reflected on this page.
11. Contact us
If you have questions about this Privacy Policy or our data practices, contact IDD Guardian LLC at support@iddguardian.com.