This Privacy Statement explains how KronosOps.com collects, uses, stores, discloses, and protects personal information in connection use of the service.
KronosOps is a cloud-based software-as-a-service application offered by HealthTech Advisors, Inc. In this Privacy Statement, “HealthTech Advisors,” “HTA,” “KronosOps,” “we,” “us,” and “our” refer to HealthTech Advisors, Inc. “Service” means the KronosOps website, application, software, features, artificial-intelligence-enabled functions, support services, and related services.
This Privacy Statement applies to information collected through the KronosOps website and Service, including information provided by subscriber companies, Company Administrators, authorized users, Founder subscribers, prospective customers, and visitors to KronosOps websites.
This Privacy Statement should be read together with the KronosOps Terms of Service. If a separate written agreement, data processing agreement, or order form applies to a particular customer, that agreement may contain additional privacy and data-protection terms.
1. Our Role When Processing Information
KronosOps handles different types of information in different capacities.
When HTA collects information for account administration, billing, security, support, website operation, sales, compliance, or its own business operations, HTA determines the purposes for which that information is processed.
When a customer company places information about its employees, contractors, teams, managers, projects, activities, check-ins, performance-related observations, uploaded files, or other business records into KronosOps (“Customer Content”), the customer generally determines why that information is collected and used. HTA processes that Customer Content on the customer’s behalf to provide and support the Service.
If you are an employee, contractor, or other individual whose information has been entered into KronosOps by a customer company, questions about that company’s reasons for collecting or using your information should generally be directed first to that company.
2. Information We Collect
We collect information needed to provide, secure, support, and improve KronosOps.
2.1 Account and Identity Information
- Name, business email address, business telephone number, job title, company name, department, and similar business contact information.
- Username, account identifiers, role, permissions, Company Administrator status, authentication information, and account preferences.
- Information used to create, administer, authenticate, and secure user accounts.
2.2 Subscription and Billing Information
- Subscription type, number of subscribed user accounts, billing status, transaction history, renewal date, and related account information.
- Billing contact information and payment-related metadata provided by our payment processor.
- Payment card numbers and similar payment credentials may be collected and processed directly by our payment processor rather than stored by KronosOps.
2.3 Customer Content
- Information entered by a subscriber or authorized user into KronosOps, including team, employee, manager, project, task, check-in, operational, and other business information.
- Comments, responses, notes, summaries, communications, configurations, and other records created through use of the Service.
- Files, documents, spreadsheets, images, or other materials uploaded to KronosOps.
2.4 Support and Communications Information
- Support requests, troubleshooting information, questions, feedback, and communications with HTA.
- Information submitted when requesting cancellation, technical support, account assistance, or other services.
- Records of communications reasonably necessary to resolve requests, document account actions, and protect the Service.
2.5 Technical and Usage Information
- IP address, browser type, device type, operating system, timestamps, session information, log data, and similar technical information.
- Pages, screens, features, and functions accessed within the Service; actions taken; error logs; and performance information.
- Security-related signals used to authenticate users, detect suspicious activity, prevent abuse, and maintain Service integrity.
2.6 Cookies and Similar Technologies
KronosOps may use cookies, local storage, session technologies, and similar tools that are necessary to authenticate users, maintain sessions, remember preferences, protect account security, analyze Service performance, and understand website usage. We may also use privacy-conscious analytics technologies to measure website and application performance.
Browser settings may allow you to block or delete certain cookies. Blocking cookies that are necessary for authentication or session management may prevent portions of KronosOps from functioning properly.
3. How We Use Information
We use information for legitimate business and service-delivery purposes.
- Provide, operate, maintain, configure, and support KronosOps.
- Create and administer subscriber and user accounts.
- Authenticate users and enforce account permissions.
- Process subscriptions, renewals, billing, cancellations, and account changes.
- Provide customer support and respond to questions and support requests.
- Generate user-requested reports, summaries, analyses, recommendations, and other Service functionality.
- Maintain, troubleshoot, secure, monitor, and improve Service performance and reliability.
- Detect, investigate, and prevent fraud, misuse, security threats, unauthorized access, and prohibited activity.
- Communicate operational, billing, security, legal, product, and support information.
- Develop and improve KronosOps using usage information, de-identified information, aggregated information, and feedback.
- Comply with applicable law, court orders, lawful government requests, and contractual obligations.
- Establish, exercise, or defend legal rights and enforce the KronosOps Terms of Service.
4. Data Security and Encryption
KronosOps uses safeguards designed to protect Customer Content and personal information.
HTA uses commercially reasonable administrative, technical, and organizational safeguards designed to protect information processed through KronosOps against unauthorized access, acquisition, alteration, disclosure, loss, misuse, or destruction.
Encryption in Transit. Customer Content and other information transmitted between a user and KronosOps is encrypted in transit using industry-standard transport encryption.
Encryption at Rest. Customer Content is encrypted at rest within the systems and infrastructure used to provide the Service.
Access Controls. Access to production systems and Customer Content is limited according to job responsibilities, system permissions, support requirements, and other legitimate business needs. HTA uses authentication, access-control, monitoring, and related security measures appropriate to the nature of the Service.
No method of electronic transmission or storage can be guaranteed to be completely secure. Accordingly, while HTA maintains safeguards designed to protect information, we cannot guarantee absolute security.
5. Amazon Web Services File Storage
Uploaded files are stored in AWS infrastructure and are not provided to the AI LLM.
Files uploaded to KronosOps are stored using Amazon Web Services (“AWS”) data-storage infrastructure. AWS may process or store those files only as necessary to provide infrastructure, storage, security, backup, availability, maintenance, or related cloud services for KronosOps, subject to applicable contractual and security controls.
Uploaded files are not provided to, transmitted to, or processed by any artificial-intelligence (“AI”) large language model (“LLM”) used by KronosOps.
6. Artificial Intelligence and Large Language Models
KronosOps does not use user-provided information to train LLMs, and the AI platform does not retain user-provided information.
KronosOps may include artificial-intelligence-enabled features that assist users with analysis, summaries, recommendations, drafting, or other user-requested functions. These features may use a third-party AI platform or LLM to process a user-requested interaction when necessary to produce the requested response.
HTA does not use Customer Content or other information provided by a user to train any LLM. Information provided by a user for an AI-enabled interaction is not retained or stored by the AI platform used to provide the AI feature.
Uploaded files are never provided to, transmitted to, or processed by the AI LLM. If an AI-enabled feature operates on information derived from the KronosOps application, the feature is designed so that uploaded file contents themselves are not sent to the LLM.
AI-generated or AI-assisted outputs may be inaccurate, incomplete, non-unique, or inappropriate for a particular purpose. Users should review AI outputs before relying on them, particularly for employment, performance, disciplinary, compensation, legal, financial, safety, or other material decisions.
7. How We Disclose Information
We disclose information only as needed to operate the Service, follow customer instructions, protect rights, or comply with law.
HTA may disclose information in the following circumstances:
- Service Providers. To cloud-hosting, infrastructure, payment-processing, authentication, email, communications, security, analytics, support, and other vendors that perform services for HTA under appropriate contractual restrictions.
- Customer-Directed Disclosures. To users, administrators, integrations, or third-party services when a customer or authorized user directs KronosOps to make the information available.
- Legal and Compliance. When reasonably necessary to comply with applicable law, a subpoena, court order, governmental request, or legal process.
- Protection of Rights and Security. When reasonably necessary to detect or prevent fraud, security incidents, abuse, unlawful activity, or threats to the rights, property, or safety of HTA, KronosOps, subscribers, users, or others.
- Business Transactions. In connection with a merger, acquisition, financing, reorganization, sale of assets, change of control, bankruptcy, or similar corporate transaction, subject to appropriate confidentiality and privacy protections.
- With Consent. When the person or customer whose information is involved has provided authorization or consent.
HTA does not disclose Customer Content to unrelated third parties for their independent use except as directed by the customer, described in this Privacy Statement, required by law, or otherwise authorized by the applicable agreement.
8. Sale, Sharing, and Targeted Advertising
KronosOps is designed as a business SaaS service, not as a data-broker or consumer-advertising platform.
HTA does not sell Customer Content. HTA does not use Customer Content to build advertising profiles for unrelated third parties.
KronosOps is not intended to use Customer Content for cross-context behavioral advertising. If HTA later introduces website advertising, marketing technologies, or data practices that create additional opt-out rights under applicable privacy law, this Privacy Statement and the relevant website controls will be updated as required.
9. Data Retention and Deletion
We retain information only for as long as reasonably necessary for the purposes described in this Statement.
HTA retains personal information and Customer Content for periods reasonably necessary to provide the Service, maintain business and security records, comply with legal and contractual obligations, resolve disputes, enforce agreements, and support legitimate operational needs.
Retention periods vary depending on the type of information, the status of the subscriber account, legal requirements, backup cycles, security needs, and contractual commitments. Customer companies should export information they need before subscription access ends.
After account termination or cancellation, Customer Content may be deleted or retained for a limited period in backups, security records, billing records, or other systems where continued retention is reasonably necessary or legally required. Information retained solely in backup systems may remain until those backups are overwritten or expire in the ordinary course.
Information submitted to the AI platform for a user-requested AI interaction is not retained or stored by that AI platform, as described in Section 6.
10. Customer Responsibilities for Personal Information
Customer companies control what employee and business information they place into KronosOps.
Each customer company is responsible for determining whether it has a lawful basis and appropriate authority to collect, use, upload, disclose, and otherwise process personal information through KronosOps. Customers are responsible for providing any notices and obtaining any consents required by applicable law.
Customers and users should avoid uploading information that is not necessary for the intended business purpose. Unless expressly authorized by HTA for a specific use case, KronosOps should not be used as the primary repository for Social Security numbers, government identification numbers, financial-account credentials, payment-card data, biometric identifiers, medical records, protected health information, or other highly sensitive information.
11. Privacy Rights and Requests
Depending on where you live and the law that applies, you may have rights regarding personal information.
Subject to applicable law and relevant exceptions, individuals may have rights to request access to personal information, obtain a copy, correct inaccurate information, request deletion, restrict or object to certain processing, opt out of certain uses or disclosures, or appeal a decision concerning a privacy request.
If your information was provided to KronosOps by your employer, customer company, or another organization, that organization may be responsible for responding to your request. In those circumstances, HTA may direct you to the relevant customer or assist the customer as required by contract or law.
For information HTA controls directly, privacy requests may be submitted through the KronosOps support function or by written request to the contact address in Section 18. HTA may need to verify identity and authority before fulfilling a request. Authorized agents may be required to provide proof of authorization.
HTA will not unlawfully discriminate against an individual for exercising rights provided by applicable privacy law.
12. California and Other U.S. State Privacy Laws
Additional rights may apply to residents of states with comprehensive privacy laws.
Residents of California and certain other U.S. states may have additional privacy rights under laws that apply to a particular business, individual, or processing activity. These rights may include rights to know or access personal information, correct information, request deletion, obtain a portable copy, opt out of certain sales, sharing, targeted advertising, or profiling, limit certain uses of sensitive personal information, and appeal certain privacy-request decisions.
Whether a particular state privacy law applies depends on statutory thresholds, exemptions, the relationship between the individual and the customer company, and the nature of the processing. Nothing in this Privacy Statement is intended to reduce rights that cannot be waived under applicable law.
KronosOps does not currently sell Customer Content or use Customer Content for cross-context behavioral advertising. Where applicable law provides a right that is relevant to HTA’s actual data practices, HTA will honor valid requests as required by law.
13. Security Incidents
HTA maintains processes designed to identify and respond to security incidents.
If HTA becomes aware of unauthorized access to personal information or Customer Content that requires notification under applicable law or contract, HTA will provide legally required notices and take reasonable steps to investigate, contain, mitigate, and remediate the incident.
Subscribers and users should promptly report suspected unauthorized access, compromised credentials, or other security concerns through the KronosOps support function.
14. Children's Privacy
KronosOps is a business service and is not intended for children.
KronosOps is intended for business use by adults and is not directed to children under 13. HTA does not knowingly collect personal information directly from children under 13 through KronosOps. If we learn that personal information was collected directly from a child under 13 in a manner not permitted by law, we will take appropriate steps to delete it.
15. International Use
KronosOps is operated by a U.S. company.
HTA is based in the United States, and KronosOps is primarily offered for U.S. business use. If the Service is accessed from outside the United States, information may be transferred to, stored in, or processed in the United States or other locations where HTA or its service providers operate.
If HTA offers KronosOps in a jurisdiction requiring additional international-transfer mechanisms or privacy terms, HTA may provide supplemental notices, data processing terms, or contractual safeguards.
16. Third-Party Websites and Services
External services have their own privacy practices.
KronosOps may contain links to third-party websites or may integrate with third-party services selected or enabled by a customer. This Privacy Statement does not govern the independent privacy practices of those third parties. Users should review the privacy notices and terms of third-party services before using them.
17. Changes to This Privacy Statement
We may update this Statement as KronosOps, our practices, or legal requirements change.
HTA may update this Privacy Statement from time to time. When we make changes, we will post the revised Statement on the KronosOps website or within the Service and update the effective date. If a change is material, we may provide additional notice through the Service, by email, or by another reasonable method.
18. Contact Us
Questions and privacy requests may be submitted through KronosOps support or by mail.
HealthTech Advisors, Inc. KronosOps Privacy P.O. Box 880252 Port St. Lucie, FL 34988 Website: KronosOps.com
For privacy questions concerning information controlled by a customer company, you may also need to contact that company’s Company Administrator, privacy office, human-resources department, or other appropriate representative.
Relationship to the KronosOps Terms of Service
This Privacy Statement describes HTA’s privacy practices for KronosOps. The KronosOps Terms of Service govern subscription rights, user obligations, billing, acceptable use, service limitations, dispute resolution, and other contractual matters. If a separate written data processing agreement or customer agreement applies, it may provide additional privacy and security commitments.