How Bloom by OncoCare collects, uses, protects, and shares your information — and the choices you have.
Empowering patients. Supporting caregivers. Partnering with providers.
www.oncocare.io | privacy@oncocare.io | Last updated: July 31, 2026HIPAA-aware · You control your data
OncoCare.io (“OncoCare,” “we,” “us,” or “our”) provides digital tools, education, and support for people affected by cancer and chronic illness, including patients, survivors, caregivers, and their care teams. Our patient-facing application is called Bloom. This Privacy Policy explains how OncoCare collects, uses, discloses, retains, and protects information through its websites, web and mobile applications (including Bloom), content, communications, and related services (collectively, the “Services”).
By accessing or using the Services, you agree to this Privacy Policy. If you do not agree, please do not use the Services.
We never sell your information. We do not sell your personal or health information — including any Medicare data you connect — for money or other valuable consideration, and we do not use it for third-party advertising.
Bloom is not a monitoring or emergency service. We do not review your entries in real time and no one is automatically alerted when you record how you are feeling. If you are in crisis or danger, call or text 988 (Suicide & Crisis Lifeline) or call 911.
Scope
The OncoCare.io website and related domains and subdomains.
The Bloom application and other OncoCare-branded digital products, portals, and applications.
Email, SMS, in-app messages, events, webinars, surveys, and other interactions that reference this policy.
This policy does not govern how healthcare providers, health plans, employers, or other third parties handle information under their own notices and privacy policies.
Our Privacy Roles
OncoCare may operate in more than one privacy role depending on how the Services are offered:
Directly to consumers. When you use Bloom on your own, the information you provide is generally personal information (and, in some cases, sensitive personal information under state law) governed by this policy. In this direct-to-consumer role, OncoCare is generally not a HIPAA covered entity, but we apply HIPAA-aligned safeguards to health information by design.
As a business associate. When OncoCare provides the Services to or on behalf of a healthcare provider, health system, health plan, or other HIPAA-covered organization, we may handle protected health information (“PHI”) only as permitted by the applicable Business Associate Agreement and law, and not for independent purposes beyond what is authorized.
Information We Collect
Information you provide
Account, identity, and contact details — name, email, phone, address, credentials, and profile details.
Demographic details you choose to add — such as date of birth, ZIP code, and language preference.
Health and wellness information — condition, symptoms, side effects, medications, appointments, biomarkers, treatments, self-reported outcomes, mood, energy, sleep, journaling, and care-planning data.
People you add — caregivers, family, “village” members, care coordinators, and providers you choose to invite or share with.
Billing, subscription, support, survey, feedback, and uploaded documents.
Information collected automatically
Device, browser, operating system, IP address, app version, pages viewed, and approximate location.
Usage, performance, and diagnostic information — session length, navigation patterns, and feature engagement.
Cookies, pixels, SDKs, and similar technologies used for authentication, preferences, security, and improvement.
Information from providers, partners, benefit programs, and integrations you choose to connect.
Medicare Data & Blue Button
If you choose to connect your Medicare claims information to Bloom through Medicare’s Blue Button service, the following applies. Connecting Medicare data is entirely optional — Bloom works without it, and we only receive Medicare data if you authorize it.
How you authorize. You authorize access through Medicare’s own secure sign-in and consent process at Medicare.gov. Before and during that process, we explain what data Bloom is requesting and how it will be used. Bloom never sees your Medicare.gov username or password.
What we receive. With your authorization, we receive your Medicare claims and coverage information (for example, past visits, procedures, and prescriptions) in the standard health-data format (FHIR R4).
How we use it. We use your Medicare data only within Bloom to help you understand and organize your care — for example, to give you a clearer picture of your history and to help you prepare for appointments. We do not use it for advertising.
How it is protected. Your Medicare data and the authorization token that permits access are encrypted at rest and in transit, access is restricted, and the token is never written to logs.
We never sell it. We do not sell, rent, or share your Medicare data with third parties for their own purposes.
You stay in control. You can disconnect Medicare access at any time from within Bloom, and you can request that we delete the Medicare data we have stored. Disconnecting stops future access; deletion removes the data we hold, subject to any legal retention obligation.
How We Use Information
Operate, maintain, secure, and improve the Services.
Support care coordination, symptom tracking, reminders, reporting, and the sharing you direct with caregivers, coordinators, or providers.
Provide Bloom’s AI navigator (“Samson”), which is grounded in your own information to help you organize and understand it. Samson does not read your private journal, and its outputs are informational, not medical advice.
Personalize educational content, recommendations, and app experiences.
Respond to questions, support requests, operational notices, and service communications.
Produce aggregated, de-identified insights for product development and research. De-identified information cannot reasonably be used to identify you.
Comply with legal obligations, investigate misuse, and protect the rights, safety, and property of users and OncoCare.
We Do Not Sell Your Information
OncoCare does not sell your personal or health information for monetary or other valuable consideration, and does not disclose it to third parties for their own advertising or marketing. We do not use your health information, Medicare data, journal entries, or check-ins to target advertising to you. Our business model is subscription- and partnership-based — not data sales.
Bloom Is Not a Monitoring or Emergency Service
Bloom is a self-directed organizational and wellness tool. We do not continuously monitor your entries, symptoms, or messages, and we do not guarantee that anyone will review them in real time. Recording distress in Bloom does not automatically notify a clinician, caregiver, or emergency responder unless you have set up and consented to a specific sharing feature, and even then delivery is best-effort and not a substitute for emergency services.
If you are experiencing a medical or mental-health emergency, are in danger, or are thinking about harming yourself, call or text 988 (Suicide & Crisis Lifeline), text 741741 (Crisis Text Line), or call 911. Bloom will always surface these resources when you indicate you are in distress.
How We Share Information
With your consent or at your direction — including sharing you choose with caregivers, family, care coordinators, and providers.
With healthcare providers, health systems, or program sponsors when Bloom is deployed as part of a clinical, care-management, or benefits program (under the applicable agreement).
With service providers that support hosting, infrastructure, messaging, analytics, billing, and security under contractual controls, including cloud infrastructure covered by a Business Associate Agreement.
For legal, compliance, safety, anti-fraud, incident-response, or enforcement purposes when required or permitted by law.
As part of a merger, acquisition, financing, or asset sale, subject to lawful handling and continuity of these protections.
In aggregated or de-identified form that does not identify you.
How We Protect Your Information
OncoCare uses administrative, technical, and physical safeguards designed to protect your information, including:
Encryption in transit (industry-standard TLS) and encryption at rest using managed encryption keys.
Authentication and access controls, activity logging, and secure development practices.
Cloud infrastructure operated under a Business Associate Agreement for health data.
Data minimization in communications — we keep clinical detail out of email and text messages; sensitive details live inside the secured application.
No method of storage or transmission is completely secure, but we work to maintain appropriate safeguards and to improve them over time.
Your Rights & Choices
You have meaningful control over your information:
Access & correction. You can view and update your profile and much of your information inside Bloom, and you may request a copy of the personal information we hold about you.
Export. You may request an export of your information in a portable format.
Delete your account & data. You may permanently delete your account and associated information from within Bloom or by contacting us. Deletion is scheduled rather than immediate: we sign you out straight away and permanently erase your information 30 days later. If you sign back in during those 30 days, the deletion is cancelled automatically and nothing is lost — this grace period exists so that an accidental deletion is not irreversible. After it ends, we remove your profile and health information from our active systems, delete connected Medicare data, and revoke related access, subject to any limited legal or contractual retention obligation.
Communication choices. You can opt out of non-essential and marketing communications at any time using in-app notification settings or an unsubscribe link, while still receiving essential account and security notices.
Revoke connections. You can disconnect integrations, including Medicare/Blue Button access, at any time.
Cookies & permissions. You can manage cookie settings and mobile-app permissions through your browser or device.
We may need to verify your identity before acting on a request, and we may decline or limit a request where a lawful exception applies.
Data Retention & Deletion
We retain information for as long as reasonably necessary to provide the Services, meet contractual and legal obligations, resolve disputes, and enforce agreements. When information is no longer needed — or when you delete your account — we securely delete it or de-identify it where feasible, subject to limited legal retention requirements.
California Privacy Rights
California residents may have rights under the California Consumer Privacy Act, as amended, including the right to know what personal information is collected, used, disclosed, or shared; the right to request deletion or correction; the right to opt out of the sale or sharing of personal information; the right to limit the use of sensitive personal information in certain circumstances; and the right not to be discriminated against for exercising these rights.
OncoCare does not sell personal information for monetary consideration. Where required, we honor recognized opt-out preference signals such as Global Privacy Control. Requests may be submitted using the contact information below and may be subject to identity verification.
Other State Privacy Rights
Residents of certain other U.S. states may also have rights to access, correct, delete, or obtain a copy of personal information, and to opt out of targeted advertising, sales, or certain profiling. OncoCare processes such requests in accordance with applicable state law and may require verification.
Children
Bloom is not directed to children under 13 without appropriate consent where required by law. In some cases, a parent, guardian, or provider may use the Services on behalf of a minor patient, and that adult is responsible for ensuring lawful authority and consent.
Third-Party Services & Links
The Services may link to or integrate with third-party websites, tools, or applications. Their privacy practices are governed by their own notices and policies, not this one.
International Use & Changes
Unless otherwise specified, the Services are intended primarily for users in the United States, and information may be processed in the United States. We may update this Privacy Policy from time to time; if we make material changes, we will revise the “Last updated” date and provide additional notice where required by law.