Boost Outcomes LLC - Privacy and Terms of Use Policy

Effective Date: January 1, 2026

Boost Outcomes LLC ("we," "us," or "our") provides broad and comprehensive consulting services, including AI-powered multidimensional data analytics and management, operational, and business consulting services, covering diverse industries. By using our website or services, you agree to this Privacy and Terms of Use policy.


1. Data Collection and Use

We collect non-personally identifiable data across various business lines, including workforce data, operational data, and other aggregated insights, for the purpose of optimizing client operations. Our services may involve using a variety of AI, advanced proprietary algorithms, and other advanced tools to comprehensively analyze data provided by client companies.

We do not collect personally identifiable information (PII) unless explicitly requested by a client company and authorized under the applicable agreement (e.g., Business Associate Agreement). For clients in regulated industries such as healthcare and financial services, we adhere strictly to the relevant legal frameworks, including but not limited to:

  • Health Insurance Portability and Accountability Act (HIPAA)
  • Gramm-Leach-Bliley Act (GLBA)
  • Payment Card Industry Data Security Standard (PCI DSS)
  • Fair Credit Reporting Act (FCRA)
  • California Consumer Privacy Act (CCPA)
  • General Data Protection Regulation (GDPR) (where applicable)

Data collected through our website may be used for improving customer experiences, analyzing traffic, and offering Boost Outcomes LLC services. Cookies or tracking technologies may be used to enhance user experience, but we do not store personally identifiable data unless permitted by the user or client.


2. Client Data and Confidentiality

We process client data solely to provide agreed-upon services and insights. All data provided by clients remains their property. We use it only as permitted under the specific client agreement and applicable laws, including HIPAA and GLBA. We do not share, sell, or disclose any client data to third parties without explicit client authorization unless required by law.

For healthcare clients, any processing of Protected Health Information (PHI) will comply with all relevant privacy and security standards under HIPAA and HITECH Act regulations. Similarly, for financial services clients, sensitive data such as personally identifiable financial data will be handled in accordance with PCI DSS, GLBA, and other relevant standards.


3. Vendors and Third-Party Data Sharing

We may at some point engage third-party vendors to help deliver or augment specific activities that may or may not be related to the consulting services or support we provide and may be related to the marketing of such activities to include printing services. These third parties may have access to specific non-identifying anonymized data only as necessary to fulfill their contracted duties and must comply with our privacy and security protocols, as well as all applicable legal and industry-specific standards (e.g., HIPAA for healthcare, GLBA for financial services). We require all third-party partners to execute appropriate data protection agreements ensuring compliance with U.S. federal and state regulations and international data protection laws where applicable.


4. Data Retention and Destruction

Data is retained only for the duration necessary to provide the services requested by our clients. Upon termination of services, all client data will either be securely destroyed or returned, depending on client preferences and legal obligations. Any retained data will continue to be safeguarded in compliance with applicable standards, including encryption and access controls, and will not be disclosed unless legally required.


5. Security Measures

Boost Outcomes LLC is a U.S.-based company and only uses U.S.-based servers and data centers to store and process client data, ensuring full compliance with U.S. laws and regulations to include industry-standard security practices, including encryption, secure data storage, multi-factor authentication, and regular security audits, to protect data against unauthorized access or breaches. We implement administrative, physical, and technical safeguards as required by:

  • HIPAA for electronic PHI
  • PCI DSS for financial data
  • GLBA for financial institutions
  • Other relevant industry standards

6. Data Breach Notification

In the event of a data breach or unauthorized access to any client or user data, Boost Outcomes LLC will notify affected parties in compliance with applicable laws, such as HIPAA, GLBA, and state data breach notification laws. Notifications will include details about the nature of the breach, the data impacted, and steps being taken to mitigate the issue.


7. Tracking and Cookies Policy

We may use cookies and other tracking technologies to enhance website functionality and improve the user experience. However, no personal data is tracked or stored without explicit consent. Users can manage cookie preferences through their browser settings, and clients may request detailed information about our data tracking practices at any time.


8. Rights of Data Subjects

Depending on the jurisdiction, data subjects may have the following rights regarding their data:

  • Access: You may request access to any personal data we hold about you.
  • Correction: You may request corrections to inaccurate or incomplete data.
  • Deletion: You may request that your data be deleted, provided this does not conflict with legal obligations.
  • Data Portability: You may request a copy of your data in a machine-readable format where applicable.
  • Opt-out of Data Collection: You may withdraw consent for data collection at any time, though this may affect the services provided.

Clients can contact us at GLacey@BoostOutcomes.com to exercise any of these rights.


9. Compliance with Industry Regulations

Boost Outcomes LLC is committed to complying with the following regulations, as applicable to our services and the industries we serve:

  • HIPAA (Health Insurance Portability and Accountability Act)
  • HITECH Act (Health Information Technology for Economic and Clinical Health Act)
  • GLBA (Gramm-Leach-Bliley Act)
  • FCRA (Fair Credit Reporting Act)
  • PCI DSS (Payment Card Industry Data Security Standard)
  • CCPA (California Consumer Privacy Act)
  • GDPR (General Data Protection Regulation) – for international clients

We regularly update our security and privacy practices to ensure compliance with all relevant laws and industry standards.


10. Limitation of Liability

Boost Outcomes LLC shall not be liable for any indirect, incidental, or consequential damages arising from the use of our services or from any data breach unless such breach is due to gross negligence or intentional misconduct. Our total liability in any matter related to this policy or our services will be limited to the fees paid by the client for the services in question.


11. Governing Law and Jurisdiction

This policy and any disputes arising from it are governed by the laws of the United States and the state of Georgia. Any legal actions must be brought in the courts of Georgia.


12. Changes to this Policy

Boost Outcomes LLC reserves the right to update or modify this Privacy and Terms of Use policy at any time. Changes will be posted on our website with the updated effective date.


For more information or to exercise your data rights, please contact us at:

Boost Outcomes LLC
2022 Sugar Maple Lane, Suite A, Woodstock GA 30189
GLacey@BoostOutcomes.com
Privacy Officer: Gary Lacey