Uno Health Website Privacy Policy

The privacy of your information is important to Uno Health, Co. (“Uno Health” “us,” “our,” or “we”). Through the
operation of our website, we may collect information about you. We want you to understand what information
is being collected and why. We developed this privacy policy in order for you to understand how we collect, disclose,
and make use of Personal Information. This Privacy Policy is effective as of October 3, 2025. Any questions
regarding this policy should be directed by email to compliance@hiuno.com. You may also
contact Uno Health at 169 Madison Ave, STE 15164, New York, NY, 10016.

In visiting the website, you acknowledge this policy and the collection, use and sharing of your personal information
and data as described herein, and in accordance with the applicable agreements with Uno Health, including but not
limited to any applicable terms of service and/or End-User License Agreement.

1. Personal Information

Personal Information means information provided by you to Uno Health and that may contain identifiable information such
as your name, email, physical address, or other identifying information. When you submit Personal Information to us, you
are agreeing to allow us to collect, store, use, and/or disclose your Personal Information for the purposes identified
in this privacy policy, or as otherwise specified at the time of collection.

Uno Health collects and maintains oral, written and electronic information to administer our business and to provide
products, services and information of importance to our customers. We use security safeguards and techniques designed to
protect your information. We train our employees about our privacy policies and practices, and we limit access to your
information to employees who need it in order to perform their business responsibilities.

While Uno Health does not sell Personal Information to third parties, we may share this information with third parties,
but only our partners and those parties we trust to help us run our website and business, and who agree to keep your
information confidential. We may also disclose this information if required by law.

If use or disclosure of information is prohibited or materially limited by other laws that apply to us, it is our intent
to meet the requirements of the more stringent law. This means we may restrict others’ access to your health information
as required by state and federal law.

- We are required by law to maintain the privacy and security of your protected health information.
- We will let you know promptly if a breach occurs that may have compromised the privacy or security of your
information.
- We must follow the duties and privacy practices described in this notice and give you a copy of it.
- We will not use or share your information other than as described here unless you tell us we can in writing. If you
tell us we can, you may change your mind at any time. Let us know in writing if you change your mind.
- For more information see: HHS website on HIPAA protection.

2. Anonymous Information

When you visit our website, we collect certain information that is automatically submitted to us by your browser and
does not personally identify you. This information may include information like your browser type, your IP address, the
date and time you visited this website and your use of the website, including pages visited and the time spent on each
page. The purpose of collecting this information is to provide you with the best possible service, to measure use of our
website, and to improve its content and performance. If we share such anonymous information with third parties, it is
not traceable to any particular user and will not be used to contact you.

3. Your Rights

You have the right to access, review, update and correct, or remove your Personal Information maintained by Uno Health.
You can do so at no cost to you by contacting us at our email address compliance@hiuno.com,
or Uno Health at 169 Madison Ave, STE 15164, New York, NY, 10016.

We will be in touch with you about your request within 30 days. Exceptions to this include responding to inquiries that
fall outside the rights outlined in this policy.

4. Cookies

This website uses cookies. Cookies are small data files that assign you a unique identifier. The collection of this
information permits us to administer our website more efficiently and to provide a more tailored and user-friendly
service to you. You may set your browser to prevent cookies from being sent; if you do so, this may limit the
functionality of our website.

5. Analytics

Uno Health uses web analytics services that track and report website traffic. Google uses the data collected to track
and monitor the use of our Service. These analytics services may use the collected data to contextualize and personalize
the ads of its own advertising network, which you can opt-out of having made your activity on the Service available via
browser add-ons.

6. Third Party Links

Uno Health may provide links to third party websites (“Linked Sites”). Linked Sites may use cookies or collect other
information when you go to the Linked Sites. We do not control the collection or use of your information by these
companies. You should contact these companies directly if you have any questions about their collection or use of
information about you.

7. Data Retention

We retain information in line with applicable laws and regulations, as long as necessary to carry out the purposes
listed in this Privacy Policy, and/or as otherwise specified at the time of collection.

8. Security

We take reasonable measures to maintain the security of the Personal Information you have provided to us. Although no
system is completely secure from unauthorized access, we maintain administrative, technical and physical controls to
reasonably safeguard your information from unauthorized access, use or disclosure.

9. Communication Privacy

You should be aware that you may be notified via e-mail or text message when there is new information to be viewed on
this website. This means that any person with access to the e-mail or mobile phone number listed on your account will
be able to see this notification. This could include your spouse, employer or anyone else that can access your e-mail
account or mobile device. Although no personal information will be sent, the notification that new personal information
is available by accessing the website may be information that you would not want others to know. Thus, you should take
this into account when providing an e-mail address or mobile phone number in the website. You are responsible for
verifying and updating your contact information to ensure that you receive notifications of newly released information
and general notices in a timely manner. Uno is not responsible for any damage resulting from your failure to verify and
update your contact and account information. Please know that if you send us an electronic communication, it may be
shared with the Uno staff to assist in providing services to you.

10. Opt-Out Policy

If at any time you do not wish to receive offers and e-mails from us, we ask that you tell us. There will be
instructions to opt-out of our mailing list on the emails and SMS you receive from us.

11. Geographical Limitations and Applicability

This website, its services, and features are intended for access and use by residents of the United States of America
(“U.S.”) only. By using this website, you affirmatively acknowledge and represent that you are accessing and using the
website from within the U.S. The terms, conditions, and privacy practices set forth in this privacy policy and terms of
use have been formulated in compliance with the laws and regulations of the U.S. We expressly exclude the applicability
of any non-U.S. laws or regulations, including but not limited to the General Data Protection Regulation (GDPR) of the
European Union, to this website and our services. By accessing or using this website, you expressly agree and
acknowledge that we are not liable for any violations or claims arising out of the non-compliance of non-U.S. laws or
regulations, including but not limited to GDPR. If you choose to access or use our services from outside the U.S., you
do so at your own risk and you are solely responsible for compliance with any and all applicable local laws.

12. California Privacy Rights

If you are a California resident, California Civil Code Section 1798.83 permits you to request certain information
regarding our disclosure of personal information to third parties for the third parties’ direct marketing purposes. To
make such a request, please contact us by one of the
methods available below.

Our website and/or application are not intended to appeal to minors. However, if you are a California resident under
the age of 18, and a registered user of our website and/or application, California Business and Professions Code
Section 22581 permits you to request and obtain removal of content or information you have publicly posted. To make
such a request, please send an e-mail with a detailed description of the specific content or information to the contact
information below. Please be aware that such a request does not ensure complete or comprehensive removal of the content
or information you have posted and that there may be circumstances in which the law does not require or allow removal
even if requested.

Under California law, California residents who have an established business relationship with us may opt-out of our
disclosing personal information about them to third parties for their marketing purposes. If you wish to receive
disclosures or rights provided for in the California Consumer Privacy Act, as amended, please contact us via the
contact information provided below.

13. Children’s Privacy

We do not knowingly collect any information from anyone who we know to be under the age of 13. If you are under the
age of 13, you should use this website only with the involvement of a parent or guardian and should not submit any
personal information to us. If we discover that a person under the age of 13 has provided us with any personal
information, we will use commercially reasonable efforts to delete such person's personal information from all Uno
Health systems.

14. Disclaimer

The information provided in this privacy policy should not be construed as giving business, legal, or other advice or warranting as fail proof, the security of information provided through this website.

Contact

Should you have questions about this privacy policy or use of this website, please contact compliance@hiuno.com or Uno Health at 169 Madison Ave, STE 15164, New York, NY, 10016.

Uno Health Enrollment Services Privacy Policy

The privacy of your information is important to Uno Health, Co. (“Uno Health” “us,” “our,” or “we”). Through the course
of your interactions with Uno Services, we may collect information about you. We want you to understand what information is being collected and why. We developed this privacy policy in order for you to understand how we collect, disclose, and make use of Personal Information. This Privacy Policy is effective as of October 3, 2025. Any questions regarding this policy should be directed by email to compliance@hiuno.com. You may also contact Uno Health at 169 Madison Ave, STE 15164, New York, NY, 10016.

If you use the Services, you acknowledge this policy and the collection, use and sharing of your personal information and data as described herein, and in accordance with the applicable agreements with Uno Health, including but not limited to any applicable terms of service and/or End-User License Agreement.

Some Uno Health customers may choose to engage Uno Health for certain services in part as a processor and/or a “service provider” under US privacy laws, and in such case the collection, use and sharing of personal information for the engagement may be governed by the agreement between Uno Health and the customer, and the customer’s privacy policy, in addition to or independent of, this Privacy Policy.

1. Personal Information

Personal Information means information provided by you to Uno Health and that may contain identifiable information such as your name, email, physical address, or other identifying information. When you submit Personal Information to us, you are agreeing to allow us to collect, store, use, and/or disclose your Personal Information for the purposes identified in this privacy policy, or as otherwise specified at the time of collection.

Uno Health collects and maintains oral, written and electronic information to administer our business and to provide
products, services and information of importance to our customers. We use security safeguards and techniques designed to protect your information. We train our employees about our privacy policies and practices, and we limit access to your information to employees who need it in order to perform their business responsibilities.

While Uno Health does not sell Personal Information to third parties, we may share this information with third parties, but only our partners and those parties we trust to help us run our website and business, and who agree to keep your information confidential. We may also disclose this information if required by law.

If use or disclosure of information is prohibited or materially limited by other laws that apply to us, it is our intent to meet the requirements of the more stringent law. This means we may restrict others’ access to your health information as required by state and federal law.

  • We are required by law to maintain the privacy and security of your protected health information.
  • We will let you know promptly if a breach occurs that may have compromised the privacy or security of your information.
  • We must follow the duties and privacy practices described in this notice and give you a copy of it.
  • We will not use or share your information other than as described here unless you tell us we can in writing. If you tell us we can, you may change your mind at any time. Let us know in writing if you change your mind.
  • For more information see: HHS website on HIPAA protection.

2. Anonymous Information

When you visit our website, we collect certain information that is automatically submitted to us by your browser and does not personally identify you. This information may include information like your browser type, your IP address, the date and time you visited this website and your use of the website, including pages visited and the time spent on each page. The purpose of collecting this information is to provide you with the best possible service, to measure use of our website, and to improve its content and performance. If we share such anonymous information with third parties, it is not traceable to any particular user and will not be used to contact you.

3. Your Rights

You have the right to access, review, update and correct, or remove your Personal Information maintained by Uno Health. You can do so at no cost to you by contacting us at our email address compliance@hiuno.com, or Uno Health at 169 Madison Ave, STE 15164, New York, NY, 10016.

We will be in touch with you about your request within 30 days. Exceptions to this include responding to inquiries that fall outside the rights outlined in this policy.

4. Cookies

This website uses cookies. Cookies are small data files that assign you a unique identifier. The collection of this information permits us to administer our website more efficiently and to provide a more tailored and user-friendly service to you. You may set your browser to prevent cookies from being sent; if you do so, this may limit the functionality of our website.

5. Data Retention

We retain information in linlisted in this Privacy Policy, and/or as otherwise specified at the time of collection. e with applicable laws and regulations, as long as necessary to carry out the purposes

6. Security

We take reasonable measures to maintain the security of the Personal Information you have provided to us. Although no system is completely secure from unauthorized access, we maintain administrative, technical and physical controls to reasonably safeguard your information from unauthorized access, use or disclosure.

7. Communication Privacy

You should be aware that you may be notified via e-mail or text message when there is new information to be viewed on this website. This means that any person with access to the e-mail or mobile phone number listed on your account will be able to see this notification. This could include your spouse, employer or anyone else that can access your e-mail account or mobile device. Although no personal information will be sent, the notification that new personal information is available by accessing the website may be information that you would not want others to know. Thus, you should take this into account when providing an e-mail address or mobile phone number in the website. You are responsible for verifying and updating your contact information to ensure that you receive notifications of newly released information and general notices in a timely manner. Uno is not responsible for any damage resulting from your failure to verify and update your contact and account information. Please know that if you send us an electronic communication, it may be shared with the Uno staff to assist in providing services to you.

8. Opt-Out Policy

If at any time you do not wish to receive offers and e-mails from us, we ask that you tell us. There will be instructions to opt-out of our mailing list on the emails and SMS you receive from us.

9. Subprocessor

Use and Definition of Subprocessor: We utilize Subprocessors (as defined below) to assist us in providing certain services and functions relating to the operation of this website and certain services offered by us. A Subprocessor is any third-party data processor engaged by us who has, or potentially will have, access to our data ("Subprocessor"), including Personal Data, that you provide or that is collected as part of the use of this website (“Service Data"). Service Data may include, but is not limited to, user account details, transaction information, browsing history, and other data related to your interaction with our services or this website. The Subprocessor may process certain Personal Data on our behalf, but they are bound by the agreements that require them to provide the same level of data protection that we commit to you in this privacy policy.

List of Subprocessors: We may use the following Subprocessors to host Service Data or provide other infrastructure that help with delivery of our services:

AWS
Cloud Storage and Web Services
Northern Virginia
Salesforce
Member Relationship Management
Northern Virginia
Snowflake
Data Warehouse
Northern Virginia
Five9
Telephony, SMS Communication
United States
Docusign
Appointment of Representation Signatures
United States

Transfers to Subprocessors: Any transfer of Service Data to Subprocessors will be compliant with legal requirements
and will be safeguarded by contractual agreements that protect the confidentiality and security of such data.

Notification of Subprocessor Change: We commit to notifying our users of any changes concerning the addition or
replacement of Subprocessors. Such notifications will be made available to you via updating the list of
Subprocessors above.

Subprocessor Obligations: Our Subprocessors are contractually obligated to:

  • Process Service Data in line with our instructions and for the specific purposes instructed by us;
  • Use appropriate measures to protect the confidentiality and security of Service Data;
  • Comply with the applicable data protection laws; and
  • Provide us with all information necessary to demonstrate compliance with these obligations.

10. Geographical Limitations and Availability

This website, its services, and features are intended for access and use by residents of the United States of America (“U.S.”) only. By using this website, you affirmatively acknowledge and represent that you are accessing and using the website from within the U.S. The terms, conditions, and privacy practices set forth in this privacy policy and terms of use have been formulated in compliance with the laws and regulations of the U.S. We expressly exclude the applicability of any non-U.S. laws or regulations, including but not limited to the General Data Protection Regulation (GDPR) of the European Union, to this website and our services. By accessing or using this website, you expressly agree and acknowledge that we are not liable for any violations or claims arising out of the non-compliance of non-U.S. laws or regulations, including but not limited to GDPR. If you choose to access or use our services from outside the U.S., you do so at your own risk and you are solely responsible for compliance with any and all applicable local laws.

11. California Privacy Rights

If you are a California resident, California Civil Code Section 1798.83 permits you to request certain information regarding our disclosure of personal information to third parties for the third parties’ direct marketing purposes. To make such a request, please contact us by one of the methods available below.

Our website and/or application are not intended to appeal to minors. However, if you are a California resident under the age of 18, and a registered user of our website and/or application, California Business and Professions Code Section 22581 permits you to request and obtain removal of content or information you have publicly posted. To make such a request, please send an e-mail with a detailed description of the specific content or information to the contact information below. Please be aware that such a request does not ensure complete or comprehensive removal of the content or information you have posted and that there may be circumstances in which the law does not require or allow removal even if requested.

Under California law, California residents who have an established business relationship with us may opt-out of our disclosing personal information about them to third parties for their marketing purposes. If you wish to receive disclosures or rights provided for in the California Consumer Privacy Act, as amended, please contact us via the contact information provided below.

12. Children's Privacy

We do not knowingly collect any information from anyone who we know to be under the age of 13. If you are under the age of 13, you should use this website only with the involvement of a parent or guardian and should not submit any personal information to us. If we discover that a person under the age of 13 has provided us with any personal information, we will use commercially reasonable efforts to delete such person's personal information from all Uno Health systems.

13. Disclaimer

The information provided in this privacy policy should not be construed as giving business, legal, or other advice or warranting as fail proof, the security of information provided through this website.

14. Contact

Should you have questions about this privacy policy or use of this website, please contact compliance@hiuno.com or Uno Health at 169 Madison Ave, STE 15164, New York, NY, 10016.