Privacy & Data Protection - Calmshell

Privacy & Data Protection

At Calmshell, we believe your mental health journey should be safe, secure, and private. We're committed to protecting your personal information with the highest standards of data security and privacy practices.

Last Updated: January 15, 2024

Our Privacy Commitment

End-to-End Encryption

All therapy sessions and personal messages are encrypted in transit and at rest.

Minimal Data Collection

We only collect information necessary to provide and improve our services.

You Control Your Data

Access, download, or delete your personal information at any time.

Legal Compliance

We adhere to PIPEDA, PHIPA, and other Canadian privacy regulations.

Our Compliance & Security Standards

PIPEDA Compliant
PHIPA Certified
HIPAA Ready
Data Encrypted

Information We Collect

We are transparent about what data we collect and why

Personal Information

Basic details needed to create and manage your account.

Examples:

  • Name and contact information
  • Date of birth
  • Payment information
  • Emergency contact details

Health Information

Sensitive data related to your mental health and therapy.

Examples:

  • Therapy session notes (therapist created)
  • Daily check-in responses
  • Wellness journal entries
  • Treatment preferences

Usage Information

Data about how you interact with our platform.

Examples:

  • App feature usage
  • Session attendance
  • Device information
  • Platform preferences

How We Use Your Information

1

Provide Personalized Care

Match you with appropriate therapists and tailor your therapy experience.

2

Ensure Platform Security

Protect your account and detect unauthorized access attempts.

3

Improve Our Services

Anonymized data helps us enhance features and user experience.

4

Communicate With You

Send important updates about your care and platform changes.

Data Flow & Protection

You Provide Data
Through app interactions
Encrypted Transmission
SSL/TLS encryption
Secure Storage
Encrypted Canadian servers
Protected Access
Strict access controls

Your Privacy Rights

You have control over your personal information

Right to Access

Request a copy of all personal data we have about you.

How to exercise:

Submit a data access request through your account settings or contact our Privacy Officer.

Right to Correction

Update or correct inaccurate personal information.

How to exercise:

Edit your profile information directly in the app or request changes from our support team.

Right to Deletion

Request deletion of your personal data, with certain exceptions for legal requirements.

How to exercise:

Use the "Delete Account" feature in settings or contact us. Note: clinical records may be retained as required by law.

Data Portability

Receive your data in a structured, commonly used format.

How to exercise:

Export your data directly from the app or request a comprehensive data package.

Our Security Measures

Advanced Encryption

All data is encrypted using AES-256 encryption, both in transit and at rest.

Secure Infrastructure

Our servers are located in Canada and comply with Canadian data sovereignty laws.

Access Controls

Strict role-based access ensures only authorized personnel can view sensitive data.

Regular Audits

We conduct regular security assessments and penetration testing.

End-to-End Encryption

Your therapy sessions and personal messages are protected with military-grade encryption that even we cannot access.

AES-256 Encryption

Questions About Your Privacy?

We're here to help you understand how we protect your information and respect your privacy rights.

Scroll to Top