Privacy Policy
Effective date: March 2026
1. Introduction
NilesAI ("we," "our," or "us") is operated by Avesso LLC. This Privacy Policy describes how we collect, use, and protect your personal information when you use our medical bill analysis platform at nilesai.com and related services (the "Service").
2. Information We Collect
We collect the following categories of information:
- Account information: Name, email address, company name, and communication preferences provided when you join our waitlist or create an account.
- Medical billing documents: Medical bills, Explanations of Benefits (EOBs), and itemized statements you upload for analysis. These may contain Protected Health Information (PHI).
- Usage data: Pages visited, features used, and interaction patterns to improve our Service.
- Device information: Browser type, operating system, and IP address for security and analytics.
3. HIPAA and Protected Health Information
We take the protection of health information seriously. When you upload medical billing documents:
- Documents are encrypted in transit (TLS 1.2+) and at rest (AES-256).
- Access to uploaded documents is restricted to your account only.
- We do not sell, share, or use your medical data for advertising or marketing purposes.
- Documents are processed by our automated compliance engine. Human review occurs only when necessary for support requests you initiate.
- For enterprise and professional plan customers, we offer Business Associate Agreements (BAAs) upon request.
4. AI Data Processing
NilesAI uses a combination of deterministic rules engines and AI-assisted processing:
- Compliance checks (NCCI edits, MUE limits, fee schedules) are performed by a deterministic rules engine against federal databases.
- Document extraction (OCR, line-item parsing) may use AI models to accurately read your uploaded documents.
- Your documents are not used to train AI models.
- AI-generated explanations are clearly labeled and accompanied by rule citations you can verify independently.
5. How We Use Your Information
- To analyze medical bills and generate compliance reports.
- To communicate with you about your account, reports, and service updates.
- To improve the accuracy and reliability of our analysis engine.
- To comply with legal obligations.
6. Data Retention
- Uploaded documents: Retained for 90 days after analysis, then automatically deleted. You may delete your documents at any time from your dashboard.
- Analysis reports: Retained for as long as your account is active, or until you request deletion.
- Account information: Retained until you close your account or request removal.
7. Data Sharing
We do not sell your personal information. We may share data with:
- Service providers: Cloud hosting (encrypted), payment processors, and email delivery services that operate under strict data processing agreements.
- Legal requirements: When required by law, subpoena, or court order.
8. Your Rights
You have the right to:
- Access and download your personal data.
- Request correction of inaccurate information.
- Request deletion of your account and associated data.
- Opt out of non-essential communications.
To exercise these rights, contact us at zach@nilesai.com.
9. Security
We implement industry-standard security measures including encryption in transit and at rest, access controls, audit logging, and regular security reviews. No system is 100% secure, and we encourage you to protect your account credentials.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or a prominent notice on our website. Continued use of the Service after changes constitutes acceptance of the updated policy.
11. Contact
For privacy-related questions or requests, contact us at:
Avesso LLC
Email: zach@nilesai.com