1. Who We Are
Website: https://www.onenewheart.org
Email: admin@onenewheart.org
2. Information We Collect
We may collect:
-
Contact details (name, email address, phone number, mailing address)
-
Donation information (amount, payment details processed securely by trusted payment processors; we do not store credit card numbers)
-
Medical information (for patient care, collected with explicit consent)
-
Technical information (IP address, browser type, device data, cookies)
-
Account information (if you register on our site)
3. How We Collect Your Data
-
Directly from you (forms, donations, newsletter sign-ups, event registration)
-
Automatically via cookies and analytics tools
-
Through communication and partnerships
-
For patients, via medical intake and consent forms
4. How We Use Your Information
We use your information to:
-
Process donations and issue receipts
-
Communicate updates, newsletters, and appeals (with your consent)
-
Provide and coordinate medical services (with consent)
-
Comply with U.S. and international legal obligations
-
Improve our website and user experience
5. Legal Basis for Processing (Global Compliance)
-
Consent (e.g., for newsletters or patient care)
-
Contractual necessity (e.g., processing your donation)
-
Legal obligation (e.g., tax records)
-
Legitimate interest (e.g., supporter engagement)
6. Sharing Your Information
We do not sell or rent your personal data. We may share it with:
-
Service providers (payment processors, email services, analytics tools) bound by confidentiality agreements
-
Legal authorities when required
-
Medical professionals and partner hospitals (only with your consent)
7. Cookies and Tracking
We use cookies and similar technologies to improve site functionality, analyze traffic, and remember preferences. You can disable cookies in your browser settings.
8. Data Retention
-
Donor records: Kept for at least 7 years to comply with U.S. tax law
-
Patient records: Retained in accordance with medical and legal standards (e.g., HIPAA principles if applicable)
-
Accounts and newsletters: Retained until you request deletion
9. Your Rights
If you are in the U.S.:
-
You may request to access, update, or delete your data.
-
If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA) and CPRA, including the right to know, delete, and opt-out of the sale or sharing of your personal information.
If you are in the EU/UK (GDPR):
-
Right to access, correct, delete, and restrict processing of your data
-
Right to data portability
-
Right to withdraw consent
To exercise your rights, email us at: admin@onenewheart.org
10. Data Security
We implement administrative, technical, and physical safeguards to protect your data from unauthorized access, loss, or misuse.
11. International Data Transfers
If you are outside the U.S., your data may be transferred to and stored in the U.S. We ensure appropriate safeguards (such as Standard Contractual Clauses) are in place for these transfers.
12. Children’s Privacy
Our services are not directed to children under 13, and we do not knowingly collect their personal information without parental consent, in accordance with the Children’s Online Privacy Protection Act (COPPA).
13. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted with an updated effective date.
Contact Us
For questions or to exercise your privacy rights:
One New Heart Foundation
Website: https://www.onenewheart.org
Email: admin@onenewheart.org