XPro Health
XPro Health (“XPro Health,” “we,” “our,” or “us”) is committed to protecting the confidentiality, integrity, and security of personal, health-related, and genetic information entrusted to us by our users.
This policy explains how we safeguard sensitive information and how it is handled throughout our systems.
Scope of This Policy
This policy applies to:
Personal information
Health assessment data
Lifestyle and performance data
Genetic testing data
Communication records
collected through xprohealth.com, online forms, assessments, and services.
Types of Data Covered
XPro Health may handle the following categories of sensitive information:
Personally identifiable information (name, email, phone number)
Health assessment responses
Lifestyle and wellness information
Genetic testing data and reports
Communication history (email and SMS)
Data Collection & Storage Platforms
Data is collected and managed using secure third-party platforms, including:
Typeform (data collection and assessments)
GoHighLevel (GHL) (internal data management and communications)
These platforms maintain their own security protocols and infrastructure.
Access Controls
Access to sensitive data is strictly limited to authorized personnel
Internal access is role-based and need-to-know only
Staff members are trained on confidentiality and responsible data handling
Unauthorized access, disclosure, or misuse of data is strictly prohibited.
Security Measures
XPro Health implements reasonable administrative and technical safeguards, including:
Controlled access to systems
Secure login credentials
Platform-level protections provided by third-party vendors
Monitoring of access and activity
While not all data is encrypted at rest across every system, XPro Health takes appropriate steps to reduce risk and prevent unauthorized access.
Genetic Data Confidentiality
Genetic data is treated as highly sensitive information.
XPro Health:
Does not sell genetic data
Does not use genetic data for advertising
Shares genetic data only with authorized third-party laboratories for processing
Uses genetic data solely for service delivery and internal analysis
Data Retention
Personal and genetic data is retained:
Until the user submits a request for deletion
Or as required by applicable laws or contractual obligations
Users may request deletion at any time by contacting support@xprohealth.com.
Third-Party Service Providers
XPro Health may engage third-party service providers for:
Laboratory processing
Technology platforms
Communications infrastructure
These providers are required to handle data in a manner consistent with applicable privacy and security standards.
User Responsibilities
Users are responsible for:
Maintaining the confidentiality of their login credentials
Providing accurate information
Not sharing access to their accounts
Data Breach Response
In the event of a data security incident, XPro Health will:
Investigate the issue promptly
Take reasonable steps to mitigate risk
Notify affected users when required by law
Policy Updates
This policy may be updated periodically. Continued use of services constitutes acceptance of any changes.
Contact Information
For security or confidentiality concerns, contact:
support@xprohealth.com