Privacy Policy

Who we are

Our website address is: https://whiterock.health


General Privacy Policy

White Rock Health respects your privacy. This website does not collect, store, or process Protected Health Information (PHI).

If you choose to contact White Rock Health through this website, any information you voluntarily provide (such as your name or email address) is used solely to respond to your inquiry.

All scheduling, intake forms, coaching communications, and any information related to coaching services are handled exclusively through a HIPAA-compliant third-party platform and are not processed or stored on this website.

White Rock Health does not sell, rent, or share your personal information with third parties for marketing purposes.

This website may use basic analytics tools to understand general site usage (such as page visits). This data does not personally identify you.

If you have questions about this policy, you may contact White Rock Health directly.


Blog & Public Interaction Policy (Important)

This website includes a blog that allows public interaction, such as comments or replies.

Any content you post on the blog — including comments, replies, usernames, or uploaded media — is public and viewable by others.
Blog interactions are not private, not confidential, and not covered by HIPAA.

Please do not share:

  • Medical information
  • Mental health details
  • Diagnoses
  • Medications
  • Personal health histories
  • Any information you wish to keep private

White Rock Health does not solicit health information through blog comments.

Best practice:
If you choose to comment, consider posting as a guest and avoid sharing any personal or health-related information.


Media Uploads

If you upload images to the website, please avoid uploading images with embedded location data (EXIF GPS). Visitors may be able to download and extract location data from images posted publicly.

Any media uploaded to the blog is considered public.


Cookies

If you leave a comment, you may opt in to saving your name, email address, and website in cookies for convenience. These cookies last for one year.

If you visit the login page, a temporary cookie may be set to determine whether your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.

If you log in, cookies may be set to save your login information and screen display preferences. Login cookies last two days; screen options cookies last one year. Selecting “Remember Me” extends login persistence to two weeks.

If you edit or publish an article, an additional cookie may be saved indicating the post ID. This cookie expires after one day and contains no personal data.


Embedded Content from Other Websites

Articles on this site may include embedded content (e.g., videos, images, articles). Embedded content behaves as if you visited the originating website.

These third-party websites may collect data about you, use cookies, or track interactions according to their own privacy policies.


Who We Share Your Data With

For blog users only: if you request a password reset, your IP address will be included in the reset email.

Visitor comments may be checked through an automated spam detection service.


How Long We Retain Your Data

Comments and related metadata are retained indefinitely to allow moderation and follow-up comment approval.

For registered blog users (if applicable), personal profile information is stored. Users may view, edit, or delete their personal information at any time (except usernames). Website administrators can also view and edit this information.


Your Data Rights

If you have an account on this site or have left comments, you may request an exported file of the personal data we hold about you, or request deletion of that data. This does not include data we are required to retain for administrative, legal, or security purposes. To have personal information deleted, please Contact Me!