HIPAA and your health information
Effective 2026-07-24
The short version
GLP-1 Healthcare is not a HIPAA covered entity or a business associate. HIPAA does not apply to us — not because we have opted out of it, but because it governs healthcare providers, health plans, and clearinghouses, and we are none of those. We are an independent publisher. We hold no medical records, and we never ask you for health information.
“HIPAA compliant” is one of the most misused phrases in digital health marketing. This page explains what HIPAA actually covers, why it does not cover us, and what protects you here instead.
1. What HIPAA actually governs
The Health Insurance Portability and Accountability Act regulates three kinds of covered entities — healthcare providers who transmit health information electronically, health plans, and healthcare clearinghouses — plus the business associates that handle protected health information on their behalf. It attaches to that relationship, not to health topics generally.
A website that explains how a medication works is not a covered entity, in the same way a medical textbook or a newspaper health section is not. Reading about semaglutide does not create a treatment relationship, and nothing you read here becomes a medical record.
2. Why we are stating this rather than staying quiet
Health sites often imply HIPAA protection they do not provide, either by displaying a “HIPAA compliant” badge that refers only to a vendor, or by saying nothing and letting readers assume. Both are misleading. The honest position is the one that is verifiable: HIPAA does not apply to us, so you should not rely on it when using this site.
What protects you here is simpler and easier to check than a compliance claim — we do not collect the information in the first place. No accounts, no forms, no cookies, no analytics. See our Privacy Policy and Cookie Policy.
3. Please do not send us health information
Because we are not a covered entity and hold no clinical infrastructure, email to us is not a protected or secure channel for medical details. If you contact hello@glp1.healthcare or corrections@glp1.healthcare, please keep it to the site itself — a factual correction, a broken link, a question about our sourcing.
We cannot answer questions about your personal medical situation, your dose, or whether a medication is right for you. That is not modesty about liability; it is that answering safely would require a clinician who knows your history, which is exactly what we are not. See our Medical Disclaimer.
4. Where HIPAA does apply to you
The moment you register with a telehealth provider, complete a medical intake, or receive a prescription, you enter a relationship that HIPAA generally does cover. That is a meaningful difference from reading this site, and it is worth understanding before you hand over your history.
- The provider’s own Notice of Privacy Practices governs what they may do with your information — read it, not ours.
- Marketing and advertising activity by a telehealth company is frequently outside the clinical relationship. Intake quizzes completed before you become a patient may sit outside HIPAA entirely, and tracking technologies on their marketing pages commonly do.
- A company saying it is “HIPAA compliant” tells you it handles protected health information under the rules. It does not tell you what it does with data collected before you became a patient.
Our provider directory reports each provider’s own published terms so you can compare them, and our match tool runs entirely in your browser — your answers are never sent to us.
5. Our commitments instead
- We will never ask you for health information through this site.
- We will never build a profile of what you read.
- We will never sell or share personal information — see Your Privacy Choices.
- If we ever add a feature that collects anything, we will say so on these pages before it ships, and we will say plainly whether HIPAA applies to it.
6. Contact
Questions about this notice: privacy@glp1.healthcare.