Consumer Health Data
Privacy Policy
Supplemental disclosures governing consumer health data, medical evidence processing, and HIPAA compliance across Agentpunkt.
Health Data Protection Mandate
Agentpunkt Marketplace ("Agentpunkt", "we", "us", or "our") enforces stringent health privacy protections across all our product platforms, including Legalpunkt aOS and Datapunkt aOS. We NEVER sell consumer health data, do not monetize medical records embedded in legal files, and do not use personal health information to train public AI foundation models.
This Consumer Health Data Privacy Policy ("Health Policy") supplements our main Privacy Policy. It describes how Agentpunkt collects, processes, protects, and discloses consumer health data in compliance with applicable health data privacy statutes, including the Washington My Health My Data Act (MHMDA), Nevada SB 220 / MHMDA-equivalent statutes, the Health Insurance Portability and Accountability Act (HIPAA), and the EU General Data Protection Regulation (GDPR).
1. Health Data Processing in Legalpunkt aOS
In Legalpunkt aOS, law firms, corporate legal departments, and legal professionals regularly process case files, contract exhibits, and discovery documents containing sensitive health information—such as medical malpractice claim files, personal injury damages calculations, disability insurance claim records, workers' compensation filings, and HIPAA compliance contract audits:
- 1.1 Encrypted Vault Storage & Technical IsolationMedical evidence and medical record exhibits uploaded into Legalpunkt aOS project environments are encrypted at rest using AES-256 and restricted strictly to authorized legal team seats via granular role-based access control (RBAC).
- 1.2 Zero-Data-Retention Inference for Medical EvidenceWhen Legalpunkt aOS analyzes medical records or synthesizes legal summaries of health exhibits, AI processing occurs over Zero-Data-Retention (ZDR) model endpoints that process data ephemerally in RAM without retaining persistent logs.
2. Health Data Processing in Datapunkt aOS & Data Engineering
In Datapunkt aOS, data engineering tools operate across healthcare enterprise data environments under strict de-identification rules:
- Metadata Extraction without PHI Ingestion: Datapunkt aOS ingests table schemas, column data types, and data dictionary metadata, intentionally excluding raw patient Protected Health Information (PHI).
- HIPAA-Compliant Synthetic Dataset Generation: Synthetic data modeling tools synthesize artificial health statistics and testing sets that contain no real individual identifiers or re-identifiable medical records.
3. Marketplace AI Agents & Medical Disclaimers
Healthcare-related AI agents available on the Agentpunkt Marketplace provide administrative, research, or wellness workflow assistance. Such agents do NOT provide medical diagnosis, clinical treatment advice, or substitute for licensed medical practitioner care.
4. Consumer Rights & HIPAA Business Associate Agreements (BAAs)
Under state consumer health laws, individuals have the right to request access to or permanent deletion of their health data records.
Law firms, corporate legal departments, and healthcare enterprise entities requiring a formal HIPAA Business Associate Agreement (BAA) for Legalpunkt aOS or Datapunkt aOS may request our executed BAA by contacting our compliance office:
Agentpunkt Health Privacy & HIPAA Office
Official Contact Email: info@agentpunkt.com