Privacy Policy
Last updated: May 2026. This summary is for transparency on labapps.co and the LabApps service. It is not legal advice; your organization may have additional obligations under HIPAA, state law, or contract.
1. Who we are
LabApps provides a cloud-based operating platform for laboratories and related organizations. When we say “LabApps,” “we,” or “us,” we mean the operator of the LabApps service and this website. Contact: support@labapps.io.
2. Scope
This Privacy Policy describes information we collect when you visit our marketing site, create an account, use the LabApps application, or communicate with us. If you are an employee or contractor of a customer organization, your employer's policies and agreements (including any Business Associate Agreement) may also apply to data processed in the platform on their behalf.
3. Information we collect
- Website and analytics: pages viewed, referral source, device/browser type, and similar technical data when you use labapps.co (for example via cookies or analytics tools when enabled).
- Account and identity: name, email, authentication identifiers, organization membership, and role assignments when you sign in (including via SSO providers such as Google or Microsoft when configured).
- Customer content: operational and clinical data your organization enters or uploads into LabApps— which may include protected health information (PHI) depending on how your organization uses the product.
- Support and sales: information you submit through contact or demo forms, email, or support channels.
4. How we use information
We use information to:
- Provide, secure, and improve the LabApps platform and website;
- Authenticate users and enforce organization, location, and role-based access;
- Process subscriptions, billing, and account administration;
- Respond to inquiries and provide customer support;
- Comply with law and enforce our agreements;
- Generate de-identified or aggregated insights where permitted.
We do not sell personal information. We do not use customer PHI for unrelated advertising.
5. Where data is stored (Microsoft Azure)
LabApps is built to run on Microsoft Azure. Depending on your deployment and enabled features, data may be processed or stored using Azure services such as:
- Azure Database for PostgreSQL (or equivalent managed database) for application and operational records;
- Azure App Service or comparable compute for the API and web application;
- Azure Blob Storage, Azure Files, or Azure File Share for documents, uploads, and file artifacts (for example requisitions, insurance routing PDFs, or compliance documents where configured);
- Azure AI services (such as Azure OpenAI and Azure AI Document Intelligence) when your organization uses AI-assisted or document-extraction features—subject to configuration and subscription;
- Other Azure security and monitoring services supporting availability and integrity.
Primary region and subprocessors should be confirmed in your order, Data Processing Agreement, or BAA. We apply access controls and encryption in transit; encryption at rest is supported through Azure platform capabilities and deployment choices.
6. Sharing and disclosure
We may share information with:
- Service providers that help us operate the platform (hosting, email, authentication, payment processing), under contractual confidentiality and security obligations;
- Your organization's administrators according to roles and subscriptions they assign;
- Integrations you or your organization enable (for example directory sync, mail, or LIS interfaces);
- Legal and safety recipients when required by law or to protect rights, safety, and security.
7. Retention
We retain information for as long as needed to provide the service, meet legal and contractual obligations, and resolve disputes. Customer organizations may export or request deletion subject to their agreement and applicable law.
8. Security
We implement administrative, technical, and organizational measures appropriate to a B2B laboratory platform, including role-based access, audit logging in product areas, and secure authentication. See our Security page for a high-level overview.
9. Your choices and rights
Depending on your location and role, you may have rights to access, correct, delete, or restrict certain personal information. Account holders should contact their organization administrator for data within a tenant. You may contact us at support@labapps.io for requests relating to information we control directly (for example marketing or account data).
For rights regarding PHI processed on behalf of a covered entity, contact that organization or refer to our Notice of Privacy Practices.
10. Changes
We may update this Privacy Policy from time to time. We will post the revised version on this page and update the “Last updated” date.
Privacy Policy · Notice of Privacy Practices · Security · Contact