Data Use Addendum for Epic App Orchard Program
This document sets forth how Rx Studio Inc. (hereinafter, “Company”, “us” or “we”) collects, stores, uses and under what circumstances may disclose information obtained from our Epic App Orchard Customers (hereinafter, “Customer”) and their Epic Software (hereinafter, “Customer’s EHR”) via SMART on FHIR integration. The terms in these addendum, when applicable, supersede those in Company’s Privacy Policy exclusively in the context of the use of Company’s platform by the Customer through the Customer’s EHR.
PRIVACY POLICY
Please consult our Privacy Policy at https://rx.studio/legal/privacy-policy on the general terms for our Services, including the list of cookies set and stored, where and how we store Customer data, third-parties we share information with and our data retention practices.
DATA OBTAINED FROM CUSTOMER
We collect the below information from the Customer’s EHR:
- First and last name, email address, FHIR id of the Service user.
- Name, date of birth (to calculate age), sex of patient.
- Weight and height measurements.
- Lab results on creatinine levels.
- Administered drug doses of interest.
- Lab results on measured blood concentrations.
- Allergy or intolerance.
PRIMARY USE OF DATA
Data read from Customer’s EHR is used as inputs of PK/PD models for drug dosing simulations and calculations.
SECONDARY USE OF DATA
Any secondary use of collected data by Company is expressly with Customer’s consent.
Secondary use may include indirect use of PHI. Any indirect use of PHI is after complete de-identified – for example by not using and storing the actual dates of drug doses and lab measurements, but processing the time interval between the events.
The secondary uses of data might include but are not limited to:
- Validate and improve existing PK/PD models.
- Train new drug PK/PD models.
- Calculate aggregate statistics for reporting on application usage and potential impact.
- Regulatory, compliance, audit or law enforcement.
DATA WRITTEN TO CUSTOMER’S SYSTEM
We do not write any data to Customer’s EHR.