Legal — effective August 1, 2026

Privacy Policy

NV Care Solutions Inc. (“Swoosh,” “we,” “us”) operates the Swoosh marketplace at swoosh.care. This policy explains, in plain terms, what data we collect, what we don't, how long we keep it, and how to ask us to delete it.

Data we collect

  • Account / identity: name, email, phone, role (client / responsible party / caregiver), profile photo, home address (clients) or service area (caregivers).
  • Vetting: government-ID metadata via Stripe Identity, fingerprint clearance card status, professional license numbers, insurance carrier and policy expiration. We retain only what is needed to prove the check happened — we do not store raw ID images on Swoosh systems.
  • Payment metadata: Stripe customer / Connect account IDs, last-4 of cards, payout history. Card numbers are tokenized by Stripe and never reach our servers.
  • Visit data: bookings, EVV (electronic visit verification) timestamps and approximate geolocation pins, caregiver visit notes, ratings and reviews, support tickets.
  • Care coordination and portal data: the care need you describe, dependent or household details you choose to add, appointments, referrals, transportation, forms, and records or results you ask Swoosh to retrieve, route, or deliver through a provider, payer, health-information network, or patient portal.
  • Communications and AI interactions: messages to Johnny, in-app messages, support conversations, confirmations, uploaded forms and credential evidence, and external intake messages that you or an authorized organization send to Swoosh.
  • Device / diagnostic: app version, OS, IP address, and crash logs sufficient to keep the service stable.

Data we do NOT collect

  • We do not read the body of your phone messages or scan your contacts. The Trust & Safety opt-in only checks for messages between matched parties to detect off-platform side deals — and only after you grant the permission inside the app.
  • We do not sell, rent, or trade your personal information to advertisers or data brokers (see Nevada SB-220 below).
  • We do not record audio or video of care visits. EVV is location and timestamp only.

How we use it

  • Run the marketplace: matching, scheduling, EVV, payouts.
  • Comply with state caregiver-vetting and tax-reporting obligations.
  • Detect fraud, abuse, and unsafe behavior.
  • Send transactional notifications (booking, payment, schedule reminders, dispute updates).
  • Improve the product (aggregated, de-identified analytics).
  • Interpret requests, prepare drafts, extract information from documents you submit, and suggest next steps with human or user confirmation before sensitive real-world actions.

Service providers and authorized sharing

We use service providers to operate Swoosh, including Google Cloud (hosting, storage, Vertex AI and Gemini), Firebase (app messaging and configuration), Google Maps, Stripe (payments and identity), Sentry (crash diagnostics), and transactional email providers. They process information for us under their applicable terms and safeguards. When you ask Swoosh to work with a doctor, payer, caregiver, health-information network, or patient portal, we share only the information needed for that authorized workflow. We do not sell personal information or provide care records to advertisers.

Website cookies, analytics, and advertising

The public Swoosh website uses essential browser storage to remember settings such as your cookie choice. Google Analytics, Meta Pixel, and AdRoll advertising technology load only after you choose “Accept all.” If you choose “Essential only,” those analytics and advertising scripts are not loaded. When enabled, these providers may receive device, browser, IP-address, page-view, and campaign information under their applicable terms. This website consent does not authorize advertising use of care records, portal data, or Johnny conversations, and Swoosh does not provide that information to advertisers.

Retention

Account, vetting, visit, and payment records are retained for as long as your account is active and for up to 7 years after closure to satisfy tax, audit, and dispute-defense obligations. Diagnostic logs roll off within 90 days. Stripe and other payment processors keep their own records under their own policies.

Deletion

You can request closure and deletion in the app under Settings and setup > Delete my account, or by emailing support@swoosh.care or visiting swoosh.care/help. An accepted in-app request immediately suspends account access and revokes active sessions while the deletion review is pending. We target completion within 30 days. Records we must retain for tax, payment, safety, licensing, dispute, or legal obligations are restricted from ordinary use and deleted or de-identified when the applicable retention period ends.

Nevada SB-220 — “Do Not Sell” opt-out

Nevada residents have the right under Nevada Revised Statutes Chapter 603A (SB-220)to tell us not to sell their covered personal information. We do not sell your personal information today. To make your “do not sell” election a matter of record, send a message to support@swoosh.care with the subject line “Nevada SB-220 opt-out”. We will confirm within 60 days.

California — CCPA notice

California residents may request the categories of personal information we have collected, request deletion, and opt out of any future “sale” of personal information under the California Consumer Privacy Act (Civ. Code § 1798.100 et seq.). The same email address above is the verified-request channel. We will not retaliate for exercising these rights.

Children

Swoosh is not directed at children under 13. An adult responsible party may add limited information about a minor or dependent when it is needed to coordinate that person's care. The adult controls the profile and must have authority to provide the information.

Security

Data in transit is encrypted with TLS and cloud storage is encrypted at rest. Direct in-app secure messages use app-layer encryption where that feature is available. Ordinary external email is not end-to-end encrypted, so email is treated as an intake doorway rather than Swoosh's internal transport: after receipt, supported workflows use access-controlled internal routing and encrypted storage. Sensitive identity-document processing is delegated to Stripe Identity. Access to production data is role-limited and audited.

Contact

Privacy Officer
NV Care Solutions Inc.
NV Care Solutions Inc., Attn: Privacy Officer, Las Vegas, Nevada (registered-agent address on file with the Nevada Secretary of State).
support@swoosh.care

For the binding dispute-resolution and arbitration provisions, see the Terms & Conditions.