Privacy Policy
Effective Date: 12/24/25
Last Updated: 12/24/25
National Reach Marketing Center LLC helps individuals and families explore health plan options designed to better fit their coverage needs, budget, and lifestyle. In providing these services, we may collect and use personal information and, in limited circumstances, health information. We recognize the trust placed in us and take our responsibility to protect this information seriously.
This Privacy Policy applies to National Reach Marketing Center LLC and all of its current and future affiliates, including Detego, Iron Health, Population Science Management, GigCare, WellGuard Assurance, and any related entities we may form in the future. When we refer to “Reach,” “we,” “us,” or “our,” we mean these organizations, as applicable. Our website is available at https://detegohealth.com.
This policy explains what information we collect, how it is used and shared, and the choices available to you.
Mobile Messaging & SMS Privacy Policy
National Reach Marketing Center LLC (DBA REACH) is committed to protecting your privacy. We collect mobile phone numbers only from users who explicitly opt-in via our web forms to receive text messages.
No mobile information will be shared with third parties or affiliates for marketing or promotional purposes. All the above categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.
Mobile data sharing to subcontractors in strictly operational support services, such as customer service or technical text delivery, is permitted but limited to fulfilling those specific business functions.
Scope and Geographic Applicability
Our services and website are intended for individuals and organizations located in the United States. We do not knowingly market or offer services outside the United States, and this Privacy Policy is governed by U.S. federal and state law. If you access our website from outside the United States, you do so at your own discretion.
Information We Collect
We collect information in ways that are typical and necessary for organizations operating in the insurance, benefits administration, and third-party administrator (TPA) industry.
Information You Provide
You may provide information directly when you contact us, request information, submit a form, apply for services, or otherwise communicate with us. This may include your name, contact details, employer or business information, and the content of your communications.
When benefits or healthcare-related services are involved, we may receive health, eligibility, or enrollment information needed to administer benefit plans, coordinate coverage, process claims, provide support services, or meet legal and contractual requirements.
Website and Analytics Data
When you visit our website, we automatically collect certain information to understand how the site is used and to maintain security and performance. This may include:
- Pages viewed, clicks, scrolling activity, and site search interactions
- Referrer information and campaign parameters (such as UTM tags)
- Device type, browser details, operating system, and approximate location
- Cookie-based identifiers such as client and session IDs
We use tools such as Google Analytics 4 (GA4) and Google Tag Manager (GTM) for these purposes. Protected Health Information (PHI) is not placed in analytics tags, URLs, or tracking parameters.
Advertising and Marketing Data
Digital Advertising
When we run digital advertising campaigns on platforms such as Google, Meta, or LinkedIn, we may receive information such as ad impressions, clicks, conversions (including view-through conversions), campaign metadata, and audience segments based on website interactions. These platforms use their own cookies or pixels to provide reporting.
If email lists are used for advertising purposes, email addresses are hashed before upload. We do not share unencrypted email addresses with advertising platforms.
Television and Connected TV (CTV)
For television and connected-TV advertising, we receive aggregated reporting from media partners, such as estimated reach and frequency and traffic lift measured through QR codes, URLs, or post-exposure website visits. Reporting is aggregated and does not include PHI.
Organic Social Media
When you interact with our organic social media pages, we may receive aggregated information from the platform, such as follower counts, engagement metrics, referral traffic, and general audience demographics. We do not receive PHI from social media platforms.
Email Campaigns
For email communications, we may collect delivery status, open rates, click-through rates, device type, approximate location, and unsubscribe activity. Email addresses are stored securely in our customer relationship management systems, including Salesforce Marketing
Cloud, and are used only with appropriate consent. We do not include PHI in email subject lines or URLs.
SMS Campaigns
For SMS text messaging, we may collect delivery status, link clicks, and opt-in or opt-out timestamps. Phone numbers are stored securely and used only with appropriate consent. We do not include PHI in SMS message content.
No mobile opt-in or SMS consent will be shared with third parties or affiliates.
Comments, Forms, and Submissions
If you leave a comment or submit information through our website, we collect the information you provide along with limited technical details such as IP address and browser type. This information is used for site administration, security, and spam prevention.
An anonymized version of your email address may be shared with the Gravatar service if you use that service. Gravatar’s privacy policy is available at https://automattic.com/privacy/.
Media Uploads
If you upload images or documents to the website, please avoid including embedded location data or sensitive metadata. Uploaded files may be accessible depending on how content is shared or displayed.
Cookies and Website Technologies
We use cookies and similar technologies to support essential website functionality, remember preferences, analyze site usage, and protect against misuse or fraud. Some cookies are required for the website to function properly, while others help us understand how the site is used and improve performance.
You can manage cookie settings through your browser and, where available, through on-site cookie controls. Disabling cookies may affect certain features of the website.
Content from Other Websites
Our website may include embedded content such as videos, images, or articles hosted by third parties. When you interact with embedded content, it is governed by the privacy practices of the third-party website.
How We Use Information
We use information to operate and support our insurance and TPA services. This includes administering benefits, supporting members and employers, responding to inquiries, maintaining systems, improving services, fulfilling contractual obligations, complying with
legal and regulatory requirements, and managing security and fraud risks. We may share information with Auditors, and regulators, as permitted by law. We may share information when required by law, such as responding to subpoenas and/or other court ordered requirements
We do not sell personal information.
Health Information and HIPAA
As part of our benefits administration and healthcare-related services, Detego Health may receive or process Protected Health Information. When we handle PHI, we comply with the Health Insurance Portability and Accountability Act (HIPAA) and applicable state laws.
PHI is used and disclosed only as permitted by law, including for treatment, payment, healthcare operations, and plan administration. Access to PHI is limited to individuals authorized to perform their job responsibilities.
Children’s Privacy
Our website and services are not intended for children under the age of 13. We do not knowingly collect personal information from children without verified parental consent. If such information is identified, it will be handled in accordance with applicable law.
State Privacy Rights
Residents of certain states may have additional rights under state privacy laws, including the California Consumer Privacy Act and similar laws. These rights may include requesting access to personal information, requesting correction or deletion where permitted, and opting out of certain data-sharing practices.
We may need to verify your identity before responding to a request. Verified requests are generally handled within 30 to 45 days, as required by applicable law, subject to permitted extensions. Health information regulated by HIPAA is generally excluded from state consumer privacy laws.
How We Share Information
We share information only as reasonably necessary to operate our business. This may include sharing information with affiliated entities, employers or plan sponsors, healthcare providers, insurance carriers, service vendors, auditors, and regulators, as permitted by law.
Service providers are required by contract to safeguard information and use it only for authorized purposes. Vendors that handle health information must meet applicable HIPAA and contractual requirements.
Data Retention and Disposal
We retain information for periods consistent with legal, regulatory, contractual, and operational requirements. When information is no longer needed, it is disposed of using reasonable and appropriate methods.
How We Protect Information
We maintain administrative, technical, and physical safeguards designed to protect information, including access controls, encryption where appropriate, monitoring, security testing, and workforce training. No system can be guaranteed to be completely secure.
Data Breaches
If a data breach involving personal information or PHI occurs, we will provide notifications as required by applicable law and regulation.
Your Choices
Subject to applicable law, you may request access to your personal information, request correction or deletion where permitted, or opt out of marketing communications. Requests are handled in accordance with legal and contractual requirements.
Updates to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted with a revised effective date.
Contact Us
If you have questions about this Privacy Policy or would like to submit a privacy request, you may contact us at:
Email: Contact@reachplans.com
Mailing Address: National Reach Marketing Center 759 N. 114th St., #300 Omaha, NE 68154 USA