Physician-led careLicensed US pharmacyOne all-in priceFree shippingCancel anytime

Legal

Privacy Policy

Effective date: 2026-06-18

New Tides Health LLC (“New Tides,” “we,” “us”) operates www.newtides.com and provides physician-supervised telehealth services. This Privacy Policy explains what information we collect, how we use and share it, and the choices and rights you have. By using our website or services, you agree to this Policy. We are a cash-pay service and this policy is written to a strict, nationwide standard so it works in every state we serve.

1. Who we are and scope

This Policy applies to information we collect through our website, patient portal, and services. New Tides provides clinical care; medication, when prescribed, is dispensed and billed by a licensed pharmacy (see our Terms of Service).

2. HIPAA and your protected health information (PHI)

The health information you share with us — your medical history, the care your provider documents, your prescriptions, and related records — is “protected health information” (PHI) under the U.S. Health Insurance Portability and Accountability Act of 1996 and its implementing regulations (together, “HIPAA”). The licensed clinicians who treat you through New Tides are HIPAA covered entities, and New Tides operates the platform that supports your care and handles PHI on their behalf as a business associate. We handle your PHI in accordance with HIPAA and other applicable federal and state health-privacy laws.

  • Uses and disclosures: we use and disclose your PHI to provide and coordinate your treatment, to obtain payment for services, and for limited health care operations — for example, transmitting your prescription to the dispensing pharmacy or your orders to a laboratory. We will not use or disclose your PHI for any other purpose without your written authorization, except where HIPAA permits or requires it (such as disclosures required by law or to prevent a serious threat to health or safety).
  • No sale, no health advertising: we do not sell your PHI, and we do not use or disclose it for marketing or cross-context behavioral advertising.
  • Business associate agreements: before any service provider handles PHI on our behalf (for example, our hosting, e-prescribing, laboratory, video-visit, or communications vendors), we require a HIPAA-compliant business associate agreement obligating them to safeguard your PHI.
  • Safeguards: we maintain the administrative, physical, and technical safeguards required by the HIPAA Security Rule, including encryption of PHI in transit and at rest, role-based access controls, and audit logging (see “Data security” below).
  • Your HIPAA rights: you have the right to access and receive a copy of your PHI, to request corrections (amendments), to request an accounting of certain disclosures, to request restrictions on or confidential channels for communications, and to receive a Notice of Privacy Practices.
  • Notice of Privacy Practices: our Notice of Privacy Practices describes in detail how your PHI may be used and disclosed and your rights regarding it. It is published on this site (see “Notice of Privacy Practices”), provided during intake, and available at any time on request.
  • Breach notification: if a breach of your unsecured PHI occurs, we will notify you and, where applicable, regulators, as required by HIPAA.

To exercise your HIPAA rights or ask a question about how we handle your PHI, contact us at privacy@newtides.com.

3. Information we collect

  • Information you provide: name, contact details, date of birth, state of residence, and account credentials.
  • Health information you provide during intake and care: medical history, medications, allergies, symptoms, height/weight, goals, and related details.
  • Clinical information we generate: visit notes, prescriptions, lab orders/results, and provider communications.
  • Payment information: processed by our payment processor; we do not store full card numbers.
  • Technical information: device, browser, and limited usage data, collected in a privacy-protective manner (see “Cookies and analytics”).

4. How we use your information

We use your information to: provide and coordinate your care; verify eligibility and your state of residence; transmit prescriptions to the pharmacy and orders to the lab; process payments and subscriptions; communicate with you; maintain security; comply with legal obligations; and operate and improve our services.

5. How we share your information

  • With your treating providers, the dispensing pharmacy, and the laboratory, as needed to provide your care (with your consent).
  • With service providers that operate our platform under written data-protection agreements, including HIPAA business associate agreements where PHI is involved (e.g., hosting, e-prescribing, labs, communications).
  • When required by law, to protect rights and safety, or in connection with a business transfer.

We do not sell your personal or health information, and we do not share your health information for cross-context behavioral advertising.

6. We do not use advertising trackers on health data

We do not allow third-party advertising or analytics tools (such as advertising pixels) to collect health-related information about you from our site. Any analytics we use are configured to avoid collecting information that reveals your health conditions, treatments, or interests.

7. Cookies and analytics

We use essential cookies to run the site and keep you signed in. When you arrive through one of our ads or marketing links, we also set one first-party cookie that records only the name of that campaign, so we can tell which of our advertising works. It never contains health information, is never shared with any advertising platform, and expires after 90 days. We do not use advertising pixels or third-party analytics. We honor recognized browser opt-out signals: if your browser sends Global Privacy Control, we do not set the campaign cookie.

8. Data security

We maintain administrative, physical, and technical safeguards designed to protect your information, including encryption in transit and at rest, access controls, and audit logging. No method of transmission or storage is completely secure.

9. Data retention

We retain medical records for the period required by applicable state law, and other information only as long as needed for the purposes described here or as required by law.

10. Your privacy rights

Depending on your state, you may have the right to access, correct, delete, or obtain a copy of your information, to opt out of certain processing, and to withdraw consent. These state-law rights are in addition to your HIPAA rights described above. To exercise any of these rights, email privacy@newtides.com. We will verify your identity and respond within the time required by law (generally 45 days). We will not discriminate against you for exercising your rights.

11. State-specific disclosures

Residents of California, Colorado, Connecticut, Virginia, and other states with comprehensive privacy laws have additional rights, including the right to opt out of targeted advertising, sale, and certain profiling. Residents of Washington and Nevada are also covered by our separate Consumer Health Data Privacy Policy.

12. Children

Our services are for adults 18 and older. We do not knowingly collect information from children.

13. Changes and contact

We may update this Policy; we will post the new effective date and, where required, notify you. Contact: New Tides Health LLC, (877) 89-TIDES, privacy@newtides.com.

See also: Notice of Privacy Practices (HIPAA) · Consumer Health Data Privacy Policy · Terms of Service