Skip to content
Enterprise Health
Product

The platform

Platform overviewThe connected occupational-health system of record.FeaturesEverything in the workforce-health stack, in one place.ProgramsMedical surveillance, OSHA recordkeeping, case management and more.Ozwell AIDrummond-certified AI built for occupational health.IntegrationsConnect HRIS, labs, devices and partners over HL7 & FHIR.
Explore the platform →Request a demo

Featured

Ozwell AI

The first occupational-health AI to earn Drummond PDSI Risk certification.

Meet Ozwell →
Who we serve

Who we serve

Energy & Resources
  • Energy & Utilities
  • Mining
  • Chemicals
  • Waste & Environmental
  • Nuclear
Industrial & Manufacturing
  • Manufacturing
  • Construction
  • Aerospace & Defense
  • Food & Beverage
Transportation & Logistics
  • Maritime
  • Transportation
  • Aviation
  • Retail & Warehousing
Public Sector & Education
  • Federal Government
  • Higher Education
  • State & Local Gov
  • K-12 Education
Healthcare & Life Sciences
  • Health systems
  • Life Sciences
Enterprise & Partners
  • Corporations
  • Third-party occ med
  • Partnerships
Browse all industries →Request a demo

Benchmark report

State of University Workforce Health 2027

How universities run occupational & employee health — and what fragmentation costs.

Get the report →
Resources

Resources & insight

Resource libraryGuides, briefs and tools for workforce-health teams.BlogField notes on occupational health, compliance and AI.WhitepapersInteractive assessments and the full Enterprise Health e-book library.Video libraryDemos, customer stories and webinars from the EH team.Printable resourcesFree one-page checklists and safety posters to print and post.Immunization requirementsState-by-state student & clinical vaccine rules.GlossaryPlain-language definitions for occupational & employee health.Style guideLogo usage, the living-systems palette, tokens & components.
Browse all resources →Request a demo

Whitepaper

The Fragmentation Index

Score your workforce-health stack and see what consolidation is worth.

Read the whitepaper →
CompanyRequest a demoCreate My Free Workspace
Privacy

Privacy Policy

How we collect, use, share and protect your information.

We believe in transparency. This policy explains what Enterprise Health collects, how we use and protect it, and the rights you have over your personal information.

Contact usTerms of UseAccessibility
Last updated: February 18, 2026~9 min read

On this page

  1. 01Plain-English summary
  2. 02Scope and applicability
  3. 03Information we collect
  4. 04How we use information
  5. 05HIPAA and protected health information
  6. 06How we share information
  7. 07Data retention
  8. 08Data security
  9. 09Your privacy rights
  10. 10California privacy rights (CCPA/CPRA)
  11. 11Other U.S. state privacy rights
  12. 12Artificial intelligence
  13. 13Children's privacy
  14. 14Changes to this policy
  15. 15Contact us

01Plain-English summary

Here is the short version. The full policy below controls if there is any conflict.

  • We collect the information you and your organization give us, plus standard technical information about how you use the site and platform.
  • We use it to deliver, secure and improve Enterprise Health, to support workforce-health and compliance programs, and to meet our legal obligations.
  • We do not sell your personal information, and we do not share it for cross-context behavioral advertising.
  • We do not train AI on protected health information (PHI) or on identifiable customer data.
  • You have rights to access, correct, delete and limit how your information is used, subject to applicable law and our agreements.

02Scope and applicability

This Privacy Policy describes how Enterprise Health, a product of Medical Informatics Engineering (“MIE,” “we,” “us” or “our”), collects, uses, shares and protects information when you visit www.enterprisehealth.com, use the Enterprise Health platform, or interact with our email and other electronic communications (collectively, the “Platform”).

It supplements any signed Order Form, Master Services Agreement or Business Associate Agreement (BAA) between your organization and MIE. If you do not agree with this Policy, please do not use the Platform.

HIPAA status

When Enterprise Health processes protected health information (PHI) on behalf of a HIPAA-regulated customer — such as an employer-sponsored health program, a health system, a university or a government agency — MIE acts as a Business Associate. In those cases a separate BAA governs that PHI and controls over this Policy to the extent of any conflict.

03Information we collect

Information you or your organization provide

  • Identifiers and contact details (name, work email, telephone, employer, role).
  • Account credentials (username, hashed password and multi-factor authentication settings).
  • Occupational and employee-health information entered into the record — such as surveillance, immunization, clearance and case data — which may include PHI and is generally governed by a BAA.
  • Records of correspondence, support requests and demo or sales inquiries.

Information we collect automatically

  • Device and connection information (IP address, browser type, operating system, device identifiers, language settings).
  • Usage information (pages and features accessed, referring URLs, timestamps, session duration and error logs).
  • Authentication tokens and session cookies needed to keep you signed in securely.

Cookies and similar technologies

On our marketing website we use only strictly necessary cookies — authentication, session management and security tokens. We do not use cookies for advertising or cross-site tracking, and we honor Global Privacy Control (GPC) signals as a valid opt-out of any “sale” or “sharing” under applicable state law.

04How we use information

  • To deliver, operate, secure and maintain the Platform.
  • To respond to demo, sales, support and partnership requests.
  • To send product, compliance and resource updates you opt in to receive.
  • To authenticate users and to prevent, detect and respond to fraud or abuse.
  • To meet legal, regulatory and contractual obligations.
  • To analyze usage and improve the quality, performance and accessibility of the Platform.

We do not sell personal information, we do not share it for cross-context behavioral advertising, and we do not train artificial-intelligence or machine-learning models on PHI or on identifiable customer data. We may use de-identified or aggregated data to improve the Platform.

05HIPAA and protected health information

Enterprise Health is an ONC-ACB certified health record built for workforce, occupational and employee health. When we receive, maintain or transmit PHI on behalf of a HIPAA-regulated customer, MIE acts as a Business Associate as defined under 45 C.F.R. § 160.103. A separate BAA executed between MIE and the customer governs that PHI, including permitted uses and disclosures, safeguards, breach notification and termination.

In the event of a conflict between this Policy and an executed BAA, the BAA controls with respect to PHI. Individuals who believe their PHI has been used or disclosed improperly may contact the customer organization that controls the record, and may file a complaint with the U.S. Department of Health and Human Services, Office for Civil Rights.

06How we share information

We share information only as described in this Policy, as you direct, or as required by law. Categories of recipients include:

  • Your organization and the administrators it authorizes to manage the record.
  • Service providers and subprocessors that help us operate the Platform — for example cloud hosting, transactional messaging and infrastructure security — under contracts that limit their use of information to providing services to us.
  • Integration partners (such as EHR, HRIS and laboratory systems) that you or your organization have authorized to exchange data with Enterprise Health.
  • Successors in interest in connection with a merger, acquisition, financing, reorganization or sale of assets.
  • Government, regulatory or law-enforcement authorities when required by valid legal process or to protect rights, property or safety.
  • Aggregated or de-identified information that does not reasonably identify any individual, without restriction.

07Data retention

We retain personal information only as long as necessary to provide the Platform, comply with our legal obligations, resolve disputes and enforce our agreements. PHI and occupational-health records are retained as required by the applicable BAA and by federal and state law — for example, certain OSHA exposure records must be kept for the duration of employment plus thirty years under 29 C.F.R. § 1910.1020.

Marketing and prospect data is retained for a limited period after your last engagement and is then deleted or de-identified. Server, security and audit logs are retained for a limited period to support security and reliability.

08Data security

MIE maintains administrative, physical and technical safeguards designed to protect personal information and PHI consistent with the HIPAA Security Rule and industry standards. Our program includes:

  • Encryption of data in transit and at rest.
  • Multi-factor authentication and least-privilege access controls.
  • Continuous monitoring, vulnerability management and security event logging.
  • Security and privacy training for personnel with access to personal information.
  • A documented incident-response and breach-notification program.

No system is perfectly secure. You are responsible for keeping your credentials confidential, enabling multi-factor authentication where offered, and notifying us promptly if you suspect unauthorized access to your account.

09Your privacy rights

Subject to verification and applicable law, you may request to:

  • Access the personal information we hold about you.
  • Correct inaccurate or incomplete information.
  • Delete information we hold, subject to legal and contractual retention obligations.
  • Receive a portable copy of information you provided to us.
  • Restrict or object to certain uses, or withdraw consent where processing relies on it.
  • Opt out of marketing communications at any time.

Information entered by your employer or organization into the health record must generally be corrected through them, since they control that source data. To exercise any of these rights, contact us using the details in the final section.

10California privacy rights (CCPA/CPRA)

If you are a California resident, the California Consumer Privacy Act, as amended by the California Privacy Rights Act (“CCPA”), gives you rights to know, access, correct, delete and limit the use of sensitive personal information, and a right to non-discrimination for exercising them. Information governed by HIPAA or the California Confidentiality of Medical Information Act is exempt to the extent provided by law.

We do not “sell” personal information and do not “share” it for cross-context behavioral advertising as those terms are defined under the CCPA, and we have not done so in the preceding 12 months. We honor Global Privacy Control (GPC) signals as a valid opt-out request.

11Other U.S. state privacy rights

Residents of states with comprehensive consumer-privacy laws — including Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Indiana and others — have rights similar to those described above, including the right to access, correct, delete and port their information and to opt out of targeted advertising, sale and certain profiling. To exercise these rights, use the channels in the final section. If we deny a request, you may appeal by replying to our response.

12Artificial intelligence

Certain features of the Platform — including Ozwell AI — use artificial intelligence to assist, not replace, human judgment. A qualified person reviews any output that materially affects an individual’s access to services or employment. As stated above, we do not train AI or machine-learning models on PHI or on identifiable customer data.

13Children's privacy

The Platform is intended for workforce use by adults and is not directed to children. We do not knowingly collect personal information from children. If you believe a child has provided personal information to us, please contact us and we will delete it promptly.

14Changes to this policy

We will post any changes to this Policy on this page and update the “Last updated” date above. If we make a material change, we will provide a more prominent notice. Your continued use of the Platform after the effective date of a change constitutes acceptance of the updated Policy.

15Contact us

For questions, requests or complaints regarding this Policy or our privacy practices, contact us:

Medical Informatics Engineering
1690 Broadway, Suite 550
Fort Wayne, IN 46802

Or reach us through our contact page. You may also file a complaint with your state Attorney General or, for HIPAA matters, with the U.S. Department of Health and Human Services, Office for Civil Rights — though we ask that you contact us first so we can try to resolve your concern directly.

See alsoTerms of UseAccessibilityContact

Questions about our policies?

Our team is here to help with privacy requests, questions about these terms, or accessibility feedback.

Contact us
Enterprise Health

The workforce-health intelligence platform for complex organizations — measurable, governable and strategic.

Create My Free Workspace
Request a demo

Who we serve

Energy & ResourcesIndustrial & ManufacturingTransportation & LogisticsPublic Sector & EducationHealthcare & Life SciencesEnterprise & PartnersView all industries →

Product

FeaturesProgramsOzwell AIIntegrationsPlatform

Resources

Resource libraryBlogWhitepapersVideo libraryPrintable resourcesImmunization requirementsGlossaryStyle guide

Company

CompanyCustomersCareersContact

Stay ahead of workforce-health change

Compliance shifts, medical-surveillance updates and AI in occupational health — a few times a quarter. No spam.

Concept form — not wired to a backend.

Certified & compliant
ONC-ACB CertifiedMeets ACOEM 10HIPAA-alignedDrummond PDSI9 languages
© Enterprise Health · Medical Informatics Engineering. Concept mock — not for distribution.
PrivacyTermsAccessibility