Privacy Policy
Solutions 2 Wellness, LLC — Effective Date: March 31, 2026 — Last Updated: March 31, 2026
This Privacy Policy explains how Solutions 2 Wellness, LLC ("we," "us," or "our") collects, uses, stores, and protects information when you use the EvidentMeds website and service (the "Service"). By using the Service, you agree to the practices described in this Policy. If you do not agree, please discontinue use immediately.
1. Information We Collect
1.1 Account Information
When you create an account or log in using Replit Authentication (our identity provider), we receive your Replit user ID, username, and associated profile information (such as display name and profile image) directly from Replit, Inc. We do not receive or store your Replit password. We store only the information necessary to maintain your account and personalize your experience on our Service.
1.2 Usage Data
We may automatically collect information about how you interact with the Service, including: pages viewed, medications searched, time spent on pages, browser type and version, device type, operating system, internet service provider, approximate geographic location (country or region level, derived from IP address), and referring URLs. This data is used to improve the Service and is not associated with identifiable individuals unless you are logged in.
1.3 "My Meds" Saved Data
If you use the "My Meds" feature to save medications to your profile, we store the list of medication identifiers you have saved in association with your account. We do not store any clinical, diagnostic, or health information about you. The list of medications you save is treated as account preference data, not health data.
1.4 Payment Information
If you make a purchase through our Service, payment processing is handled entirely by Stripe, Inc. We do not receive, process, or store your credit card number, banking information, or any other full payment credentials. We receive limited transaction metadata from Stripe (such as transaction ID, amount, and status) necessary to confirm access entitlement. Stripe's collection and use of your payment information is governed by Stripe's own Privacy Policy, available at stripe.com/privacy.
1.5 Communications
If you contact us via email at info@solutions2wellness.org, we retain your email address and the content of your communications solely to respond to your inquiry and maintain a record of our correspondence. We do not add you to any mailing list without your explicit consent.
1.6 Information We Do Not Collect
We do not collect, store, process, or transmit: diagnoses, medical conditions, prescription details, lab results, or any other protected health information (PHI) as defined by HIPAA. EvidentMeds is an educational reference tool — it does not function as a healthcare provider and does not create a patient record.
2. How We Use Your Information
We use the information we collect for the following purposes only:
- Service operation: To authenticate your account, maintain your session, and deliver the features of the Service (including your saved medications list and access entitlements).
- Service improvement: To analyze usage patterns, identify popular content, and diagnose technical issues — in aggregate, anonymized form where possible.
- Legal compliance: To fulfill our obligations under applicable law, respond to lawful legal processes, and enforce our Terms of Service.
- Security: To detect and prevent fraud, abuse, and unauthorized access to the Service.
- Communications: To respond to your direct inquiries.
We do not sell, rent, license, or trade your personal information to any third party for their marketing or commercial purposes. We do not use your information for targeted advertising.
3. Third-Party Services
The Service integrates with the following third-party services. Each operates under its own privacy policy, which governs that service's data practices:
Replit, Inc. (Authentication)
Provides user identity and authentication services. When you log in via Replit, Replit processes your authentication credentials. We receive only a user identifier and basic profile information. See: replit.com/privacy
Stripe, Inc. (Payment Processing)
Processes payments when applicable. We do not receive or store full payment card details. See: stripe.com/privacy
CMS Open Payments Database (External Reference)
Publicly available government transparency database. When you use the "Is your doctor receiving payments?" feature, you are directed to data published by the Centers for Medicare & Medicaid Services. We do not transmit any personal data to CMS when you use this feature.
Hosting Infrastructure
The Service is hosted on Replit infrastructure. Server-level access logs are subject to Replit's own privacy and data retention policies.
4. Data Retention
We retain your account data for as long as your account remains active. If you request account deletion, we will delete or anonymize your personal information within 30 days, except where we are required to retain it by law (for example, payment transaction records required for tax purposes, which may be retained for up to 7 years).
Aggregate, anonymized usage analytics that cannot be linked to an individual are not subject to deletion requests and may be retained indefinitely.
5. Your Rights
Depending on your location, you may have certain rights regarding your personal information:
California Residents (CCPA / CPRA)
You have the right to: know what personal information we collect about you; access that information; request deletion; opt out of the sale of your information (we do not sell information); and not be discriminated against for exercising these rights. To submit a request, email info@solutions2wellness.org with "CCPA Request" in the subject line.
European Economic Area / UK Residents (GDPR / UK GDPR)
You have the right to: access, correct, delete, restrict, or object to processing of your personal data; data portability; and lodge a complaint with your local supervisory authority. Our legal basis for processing your data is (a) performance of a contract (providing the Service) and (b) our legitimate interests in operating and improving the Service. To exercise your rights, email info@solutions2wellness.org with "GDPR Request" in the subject line.
All Users
You may request access to or deletion of your account data at any time by contacting info@solutions2wellness.org. We will respond within 30 days.
6. Children's Privacy (COPPA)
The Service is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will delete that information promptly. If you believe we have inadvertently collected information from a child under 13, please contact us immediately at info@solutions2wellness.org.
7. Security
We implement reasonable administrative, technical, and physical safeguards to protect your information against unauthorized access, alteration, disclosure, or destruction. Authentication is handled by Replit's secure identity infrastructure. All data is transmitted over encrypted connections (HTTPS/TLS). However, no method of transmission over the internet or method of electronic storage is 100% secure, and we cannot guarantee absolute security. In the event of a data breach affecting your rights and freedoms, we will notify you as required by applicable law.
8. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date at the top of this page and, where appropriate, notify logged-in users via a notice on the Service. Your continued use of the Service after changes become effective constitutes your acceptance of the updated Policy. We encourage you to review this Policy periodically.
9. Contact Us
For any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact:
Solutions 2 Wellness, LLC
Privacy Inquiries: info@solutions2wellness.org
Please include "Privacy Policy" in the subject line of your email. We will respond within 30 days.
