Skip to main content

Legal

Privacy Policy

We build homecare EVV platforms, caregiver and client mobile apps, business websites and custom software. That work puts us near sensitive information, so this page sets out plainly what we collect, why, how long we keep it, and what you can ask us to do with it.

Last updated: August 2, 2026 Effective across businessnovatech.com and every product we deliver.

Who this policy covers

This policy applies to Business Nova Technologies — trading as Business Nova Tech — and to everyone who visits our website, enquires about our services, or becomes a client. It covers the information we hold as a business about our own visitors and clients.

It is separate from the information we process inside a system we have built for a client. Where we host or maintain a homecare platform, the agency that owns that platform is the controller of the records inside it and we act on their written instructions. Their own privacy notice governs those records.

Information we collect

We collect only what a working relationship actually requires:

  • Contact and enquiry details — your name, business email, phone number, company name and the description of what you need, given when you contact us, request a demo, ask for a quote, or start a live chat.
  • Onboarding details — business address, billing contact and the company information needed to open an account, raise a proposal and issue invoices.
  • Project material — the content, branding assets, credentials and configuration you provide so that we can build, deploy and support your website, app or software.
  • Account and support records — messages, tickets, meeting notes and the history of work carried out for you.
  • Website usage data — pages viewed, approximate location by IP, device and browser type, and referring source, collected to keep the site secure and to understand which pages are useful.

We do not ask for and do not want payment card numbers, medical records, passwords or government identifiers through our website forms or live chat. If any reach us that way, we delete them and tell you a safer route.

How we use your information

Everything we hold is used for one of a short list of purposes:

  • Answering enquiries and preparing proposals, quotes and scopes of work.
  • Delivering the services you engage us for — software development, EVV platform implementation, mobile applications, websites, design, integrations, automation and training.
  • Providing technical support, remote assistance, maintenance and onboarding.
  • Administering the relationship: invoicing, payment records, contracts and statutory accounting.
  • Keeping our systems secure, diagnosing faults and preventing abuse.
  • Sending service updates about work in progress, and — only if you ask for them — occasional updates about what we do.

We do not sell your personal information, and we do not share it for anyone else’s advertising.

Healthcare information and HIPAA

Homecare software touches information about real patients, so it deserves its own paragraph. Where we build, host or support an electronic visit verification platform, a caregiver application or a client application, the agency remains responsible for the protected health information inside it and we act only as their service provider.

Where an engagement puts us in contact with protected health information, we will sign a Business Associate Agreement before that work begins, restrict access to the named people who need it, keep data encrypted in transit and at rest, and log administrative access. We never use client health information for our own purposes, and never for training any model.

How we protect information

Our safeguards are practical rather than decorative:

  • Encryption in transit (HTTPS/TLS) across our website, portals and client systems, and encryption at rest for stored credentials and sensitive fields.
  • Role-based access, so staff reach only what their work requires, with an audit trail of administrative actions.
  • Credentials stored in an encrypted vault and never in email, chat or a document.
  • Backups, patching and monitoring on the systems we host, with recovery tested rather than assumed.
  • Confidentiality obligations for every member of our team and for any subcontractor we bring in.

No system is perfectly secure, and we will not claim otherwise. If a breach affects your information we will investigate immediately, contain it, and notify you and any regulator required, within the timeframes the law sets.

Service providers we rely on

Running a modern software business means using other reputable providers, each given only the data their function needs and each bound to protect it. Depending on your engagement these may include cloud hosting and domain providers, email delivery and mailbox services, video-meeting tools for scheduled calls, error monitoring and analytics, payment processors for invoicing, and the Apple App Store and Google Play Console where we assist with account setup and app publishing.

We do not permit these providers to use your information for their own purposes.

International transfers

We work with clients in the United States — Florida especially — and elsewhere, and our team and providers may be located in other countries. Where information moves across a border we rely on appropriate safeguards, including contractual protections with each provider, and hold the information to the standards described in this policy wherever it is processed.

How long we keep information

We keep enquiry and proposal records only as long as needed to follow up or while a live opportunity remains open. Client and project records are kept for the life of the engagement and afterwards for as long as contracts, tax and accounting rules require. Website analytics are kept in aggregate.

When information is no longer needed, we delete it or anonymise it. Where we host a client system, deletion and retention follow that client’s written instructions and their own obligations.

Your rights and choices

Depending on where you live, you may have the right to:

  • Ask what personal information we hold about you and receive a copy.
  • Have inaccurate information corrected.
  • Ask us to delete information we no longer need to keep.
  • Object to or restrict certain processing.
  • Withdraw consent to marketing at any time, without affecting the services you have engaged us for.

Contact us and we will respond within the period the applicable law requires. We may need to confirm your identity first — a precaution that protects you rather than us. If your request concerns records held inside a client’s platform, we will direct you to that agency, who controls them.

Cookies and website analytics

Our website uses cookies that are necessary for it to function — keeping a session active, remembering a live-chat conversation and protecting forms from abuse — along with analytics that tell us which pages are read. Analytics data is aggregated and is not used to identify individual visitors.

Your browser can block or delete cookies at any time. Blocking the necessary ones may stop parts of the site, including live chat, working properly.

Children’s privacy

Our website and services are intended for businesses and the people who run them. We do not knowingly collect information from children. If you believe a child has provided us with personal information, contact us and we will delete it.

Changes to this policy

As our services grow this policy will be updated, and the date at the top of the page always shows when it last changed. Where a change materially affects how we handle your information, we will tell active clients directly rather than relying on you to notice.

Questions about this page?

We would rather answer a question than have you guess at the answer.