Health Enrollment Group (HEG) Privacy Policy
Effective Date: January 3, 2024
Protecting your privacy is very important to us. This privacy policy explains what information we collect, why we collect it, and how we use it. This notice applies to HealthCare.gov and its subdomains. Throughout this notice, the website is referred to as the Health Enrollment Group (HEG) or simply HEG. Please note that HEG is not maintained, operated, or affiliated with the Centers for Medicare & Medicaid Services (CMS). However, this privacy policy aligns with CMS’s privacy policies.
Information Collection and Use
HEG does not collect your name, contact information, Social Security Number, or similar personal data unless you choose to provide it. However, we collect limited information automatically to understand how visitors use the site and improve the user experience.
Personally Identifiable Information (PII) refers to any data that can be used to identify an individual, such as a Social Security Number, in accordance with the Office of Management and Budget (OMB) definition. PII also includes indirect data, such as a combination of birthdate and location, that can be linked to a person.
We collect PII when you:
- Create a user account.
- Complete a health insurance application.
- Use tools on HealthCare.gov (such as identity verification services).
This information allows HEG to:
- Compare health insurance plans based on costs, benefits, and other features.
- Determine eligibility for coverage and cost-sharing reductions.
- Facilitate plan selection and enrollment.
HEG does not sell your information.
Types of Information We Collect
- Automatically Collected Information
When you browse HEG, we collect:
- Domain from which you accessed the internet (e.g., comcast.com).
- IP Address (used to approximate geographic location).
- Operating system and browser type.
- Date, time, and duration of your visit.
- Pages visited and referring websites (e.g., google.com).
- Device type (desktop, tablet, or mobile).
- Screen resolution and browser language.
- Time spent on pages and scroll depth (amount of page viewed).
- User events (e.g., button clicks).
This information helps us measure the number of visitors, analyze behavior, and improve outreach through digital advertising. It may also be used to personalize content on third-party websites.
- Information You Provide
- Subscription Requests:
When you request alerts or newsletters, we collect your email address or phone number to provide the requested service. You can opt out of communications anytime by updating your preferences.
- Insurance Applications:
We collect personal details such as your name, email address, and other information when you apply for health insurance through HEG. If you enable Multi-Factor Authentication (MFA), we collect your phone number or email to send a verification code via text, call, or email. Learn more at granicus.com/wireless/healthcare.
Additionally, we partner with Experian and Symantec to verify your identity during the application process.
- Optional Data on Sexual Orientation or Gender Identity:
You may provide optional data to assist the U.S. Department of Health and Human Services (HHS) in improving access to healthcare. Your responses will not affect eligibility, plan options, or coverage costs.
Data Sharing with Federal Agencies
After you apply for coverage, we may share your data with the following agencies to verify eligibility:
- Social Security Administration (SSA)
- Internal Revenue Service (IRS)
- Department of Homeland Security (DHS)
- Department of Defense (DoD)/TRICARE
- Veterans Health Administration (VHA)
- Medicaid and CHIP agencies
- Office of Personnel Management (OPM) and Peace Corps
- Equifax Workforce Solutions (for employment verification)
We may also share data with employers listed on your application to verify eligibility for employer-sponsored coverage or premium tax credits.
Opt-In for SMS Communications
- Specific Opt-In for SMS Only:
- Consent for SMS messages must be separate from email and phone call consent.
- New SMS Privacy Policy Language:
- All the above categories exclude SMS opt-in data and consent, which will not be shared with any third parties unrelated to the messaging service.
- We will not share your SMS opt-in data with any third parties unless necessary to deliver the messaging service. However, we may share your SMS opt-in or consent status with platform providers, phone companies, or vendors essential for delivering the text messages.
Terms of Service Update for SMS Programs
All SMS programs offered by HEG will include the following disclosures in the terms and conditions:
Program name: Health Insurance Agency
Message Frequency disclosure: Messages are sent out based on plan enrollments and updates
Product description: Enrolling clients in health insurance
Customer care contact description: 888-382-1825
Opt out instructions: Messages will be sent with a disclosure for clients to reply “STOP” if services are unwanted
Cookies and Tracking Technologies
HEG uses cookies and tracking tools to measure site performance, improve user experience, and personalize content. You can manage your cookie preferences via your browser settings.
How We Protect Your Information
We use industry-standard security practices to safeguard your personal data from unauthorized access. HEG does not sell your information.
Data Retention and Access
HEG retains data only as long as necessary to provide services or comply with legal requirements.
Children’s Privacy
HEG does not knowingly collect information from children under 13 without parental consent.
Third-Party Websites and Links
HEG may link to external websites. We are not responsible for the privacy practices of those sites.
Your Choices and Rights
- You can opt out of newsletters or alerts by updating your preferences.
This policy reflects our commitment to protecting your privacy. For more details, visit www.healthenrollmentgroup.com/privacy.