Privacy Policy

Last updated: July 27, 2026

This policy covers two apps published by Adrisco LLC:

Both apps are workplace tools. They are provisioned by a care community for its own staff on community-owned devices. There are no consumer accounts, no sign-up, and no advertising.

How the system works

Understanding the architecture explains most of this policy.

Each community runs its own on-premise Artemis server. A device is provisioned by scanning a QR code generated from the community's admin console; from then on, the app communicates with the on-site server over the community's own local network using QUIC with encrypted transport. Many communities operate air-gapped networks with no internet connectivity at all, and in that configuration data never leaves the building.

Alarm information flows from the on-site server to staff devices on the community's network. Adrisco does not route resident data through consumer cloud services, and the apps do not communicate with Adrisco, Apple, or any third party to deliver alarm content.

Information processed

Resident health information

To deliver alarms, the app processes:

This information originates from the community's own on-site server and is displayed to authorized staff so they can respond to residents. We treat it as protected health information (see the HIPAA section below).

Staff and user information

Device and diagnostic information

Where data is stored and processed

HIPAA and the business-associate relationship

Resident data handled by these apps is treated as protected health information (PHI) under the U.S. Health Insurance Portability and Accountability Act (HIPAA), and under applicable Canadian provincial health privacy law for Canadian communities.

The care community is the covered entity (in Canadian terms, the custodian or data controller) and remains the owner of its residents' data. Adrisco acts as a business associate to the community and processes resident data only to provide the nurse-call service to that community.

What we do not do

Push notifications

When a staff device has no live connection to the community's local network, the on-site server can send an Apple Push Notification as a fallback so the device can alert staff.

That push payload deliberately carries no protected health information: no resident name, no room, no alarm details. It contains only an opaque alarm identifier. When the device receives the notification, it looks up the alarm details from its own local store. As a result, resident information is never exposed to Apple's push infrastructure or to any party outside the community's system.

Data retention and deletion

The community controls its own data. Retention periods for alarm history and related records are determined by each community according to its own policies and legal obligations; Adrisco does not impose or override them.

Data stored locally on a device is removed when the device is de-provisioned or the app is deleted. Requests concerning a specific resident's records should be directed to the care community, which is the covered entity and controller of that data.

Security

Demo mode

Artemis Care includes a demonstration mode used solely for App Store review. Demo mode contacts no server and uses only simulated, fictitious data. No real resident or community information is involved.

Children's privacy

Artemis Care and Artemis Setup are workplace tools for care-community staff and installers. They are not directed at children, and we do not knowingly collect personal information from children.

Changes to this policy

We may update this policy from time to time. The "Last updated" date at the top reflects the most recent revision. Material changes will be reflected on this page before they take effect.

Contact

For questions about this policy or our privacy practices, contact Adrisco LLC at [email protected].

For questions about a specific resident's data, contact the care community where the system is deployed. The community is the covered entity responsible for that data.