1. General Statement
Natera appreciates your interest in its products and services, and your visit to this website. We take the protection of your data seriously and we want you to feel comfortable whenever you interact with Natera, whether offline or when visiting our site.
When we say “personal information” (often referred to as “PI”) we mean this to include the various terms used to define or describe this information under various domestic and international privacy laws and regulations, such as the terms “Personal Data” and “personally identifiable information” (often referred to as “PII”).
This Policy does not apply to PI that we process from employees, job applicants, and other individuals that we interact with in the employment context.
2. Information We Collect From You
When you visit our Sites, you may choose to submit PI to Natera through our webforms, e-mail, surveys and other promotions, when you request information about our tests or services, when you register to attend a webinar, when you pay a bill through one of our Sites or Portals, when you report a problem with one of our Sites or services, and/or by some other means.
When you interact with Natera offline, such as at a conference sponsored-booth or in a provider or clinic office, you may choose to provide PI as part of that engagement.
If you contact us, we may keep a record of that correspondence. When you refer a friend or family member for any of our products or services, we may collect the information you provide about that person such as name, mailing address, e-mail address, and/or phone number.
When you interact with Natera through any of the above means, we may obtain the following PI about you:
- contact information (including your name, email address, address (including country), and phone number), who you are (e.g., patient/caregiver, physician, other), why you’re contacting Natera, and/or the context in which you interacted with Natera;
- username and password for participating third-party devices, apps, features, or services;
- your device (e.g., your browser, hardware and operating system, device settings and identifiers), your connection (e.g., date and time, IP address, page link and referring link), log-in information (if applicable), web browser characteristics and associated cookie IDs, and app usage information, such as Personalized Service ID (or PSID), and advertising IDs (e.g., Google Ad ID);
- text messages, emails, and other communications when you communicate with us using these methods;
- information about products and services you consider, or for which you review information, the content viewed, as well as any additional information you may choose to disclose;
- the services you’ve had performed, or are considering having performed, treatment options and test results, as well as other medical information you choose to disclose;
- your experience with our products and services, to include what you did and did not like, recommendations for changes, future content, and overall ratings, as well as your role, title and/or job responsibilities; and
- Information relating to your use of the services, both offline as well as through our Sites, including clickstream data, your interactions with the services (such as the web pages you visit, search terms, and the apps, services and features you use, download, or purchase), the pages that lead or refer you to the services, how you use the services, dates and times of use of the services, and information from third party integrated services which you have enabled (e.g., connected address book).
3. How We Use Your Information
Natera may store and use information collected from you:
- to communicate with you;
- to provide and/or enhance any services you request (which may include by improving and customizing your experience within the services);
- benefit verification, program enrollment, and benefit/product fulfillment in connection with our services;
- to process your online payment made through our Sites;
- to respond and address your submission(s), for customer service or quality control purposes;
- for sales and marketing, to include providing you with information on health-related products and services that we think you may find of interest, and to keep you updated on our latest announcements;
- to serve you ads and/or provide targeted ads (subject to exercise of state-specific opt-out rights);
- for internal purposes to help us develop, deliver and improve our products, services, content, and communications;
- to protect against identify theft and prevent fraud and other criminal activity;
- for performing data analytics;
- for accounting, auditing, and other internal functions;
- to defend against claims; and
From time to time, we may use your PI to send important notices, such as communications about your account and the services we are providing to you. Because this information is important to your interaction with us, you cannot opt out of receiving those communications.
4. How We Disclose Your Information
We will keep your information private. We will only disclose your PI to service providers, contractors and third parties as outlined in this policy, and in our state-specific Privacy Policies, as applicable, our Notice of Privacy Practices and as otherwise required by law.
Natera does not and will not sell PI without consent.
We may disclose your PI to trusted service providers or contractors who assist us with:
- operating and maintaining our websites;
- benefit verification, program enrollment, and product fulfillment in connection with our services;
- connectivity, hosting, application and/or security services;
- administering and maintaining the security of our facilities and our information technology resources;
- marketing, sales, customer engagement, and analytics services (to include sales analytics and website analytics);
- processing payments made using our Sites;
- our licensing, certification and quality management requirements;
- conducting our business, or otherwise servicing you; and
- providing video content on our Sites for purposes of allowing visitors to learn about our Products and services, hear how they have helped others, and to enable you to research a variety of related topics. Because these videos are hosted and streamed by Natera’s service providers, Natera must disclose your video content requests to those providers in order to deliver the requested content. Disclosing this information to these providers is pursuant to written contracts that restrict use of this information solely to the services provided on Natera’s behalf.
We may also permit third party advertisers and third-party advertising networks to collect your PI for marketing and advertising purposes, unless you have opted-out of such collection, where permitted by law.
We may disclose your PI when we believe disclosure is appropriate and necessary to comply with the law, enforce our Site’s policies, or protect ours or other’s rights, property, or safety.
We may also disclose your PI if all or part of Natera is sold, merged, dissolved, acquired, or involved in a similar transaction.
A. Cookies, Tags, Web Beacons, Pixels, etc.
Cookies are small pieces of data (text files) that are sent to your computer when you visit a website, that your browser stores on your device in order to allow us to remember information about you, such as your language preference or login information. Those cookies are set by us and called first-party cookies. In addition to first-party cookies, we also use third-party cookies – which are cookies that come from a domain different than our Sites – as well as other tracking technologies, such as web beacons and pixels from third-party partners (e.g., Facebook, Google Analytics, or reCAPTCHA), all of which may be used for the following purposes:
- to gain useful knowledge about how our Sites are used so that we can keep improving them for users like you;
- to enhance your experience while on our Sites, allowing you to navigate between pages efficiently, store your preferences and generally improve your experience on our Sites;
- to identify that you are a human being, and not a bot or other piece of automated software, in order to protect our Sites from spam and abuse;
- for measurement and analytics services to understand how visitors use our Sites;
- for advertising and marketing purposes, to include targeted advertisements; and
- If you use one of our Portals, which require registration to access most content, we require the use of certain cookies, as set forth in more detail below in Section C, “Natera Portals”.
B. Global Privacy Control (GPC)/Do Not Track (DNT) Signals
Our Sites honor Global Privacy Control (GPC)/Do Not Track (DNT) Signals set by users in their browsers. However, because the use of GPC/DNT signals can vary by browser, as well as browser extension, and given the lack of consistent industry standards on the use of GPC/DNT signals, we cannot guarantee that our Sites will identify the GPC/DNT signal in every case, for all browsers and all browser extensions. Nonetheless, we have tested and confirmed our Sites’ recognition of GPC/DNT signals from the most common/top browsers, as well as the most common GPC-signaling extensions.
In order to ensure that you are not tracked for marketing and advertising purposes, even if our Sites are not able to recognize your GPC/DNT signals, we suggest that you decline “Targeting Cookies” when given the option at our Cookie Preferences Center.
C. Natera Portals
Natera currently offers a number of Portals. In order to maximize your experience within those Portals, they all require the use of “Performance cookies” and “Functional” cookies (in addition to “Strictly Necessary” Cookies). As a result, none of your cookie choices made through the Cookie Preference Center (“Do Not Share Preference Center” in California) on www.natera.com apply when you log in to any of our Portals. Likewise, our Portals do not recognize browser-based GPC/DNT signals. However, our Portals do not use advertising cookies, nor do they sell or otherwise disclose any information for sales, marketing or advertising purposes.
6. Data Processing and Transfers
We may process information related to individuals from countries outside of the United States, when they visit our Sites or otherwise interact with, or use our services. Please note that by engaging with our Sites or services you understand that we are transferring your PI from your country of origin to the U.S., using various compliance mechanisms, including, where applicable, consent and/or data transfer mechanisms based on country or region-specific approved language, contractual clauses or other legal bases. By using our Sites and services, you consent to us transferring information about you as needed.
7. How We Protect Your Information
Natera takes appropriate security measures to protect your PI against unauthorized access, alteration, disclosure, or misuse. All of our Sites use secure certificates and TLS (Transport Layer Security), so that users’ data is encrypted and protected during transmission. Likewise, access to PI maintained on our servers is protected through the use of both physical and logical security measures, to include restricting access to PI to only when there is a business need for such access. Natera’s security program meets the SOC 2 Type II and Payment Card Industry Data Security Standard (PCI-DSS) and is certified by an independent public accounting firm. We use industry-standard controls and NIST compliant encryption technologies to maintain the security of sensitive information during transfer and storage of such information in our systems.
Please note that while Natera takes reasonable measures to protect the security of your PI, Natera cannot guarantee the complete avoidance of security incidents. To learn more about current practices and policies regarding security and how we protect confidentiality when providing the services, please contact us at email@example.com.
8. Compromise of Personal Information (PI)
9. Data Access, Correction, Deletion, and Opting Out
(b). Updating your PI: You have the right to ask us to correct your information in our records if you believe it is inaccurate. If we determine that your information is inaccurate, we will correct it as permitted by law, after we verify your identity. If a different health care facility or professional created the information that you want to change, we will inform you of such, and direct you to ask them to amend the information. If you have created a Portal account, whether as a patient or a provider, you can review, correct, update or delete inaccuracies to the information about you by logging into your account. You may also request this by sending your request to firstname.lastname@example.org.
(c). Right to Dispose of your Samples: You have the right to request us to dispose of the biologic material collected by us, unless it is required by law to be retained. You can do so by emailing us at email@example.com. We will confirm having disposed of your sample when complete.
(d) Right to Opt-out of Research and Development: In accordance with applicable law, Natera is permitted to use de-identified samples collected from patients (although some states require affirmative consent for such use). Natera is also permitted to use de-identified data derived from those samples for research and development (R&D) purposes. While these requirements may vary by state, Natera permits all of its patients to choose to opt-out of the use of their samples for R&D. In order to exercise this option, you can submit a request by emailing us at firstname.lastname@example.org.
(e). Updating Consent: You may wish to withdraw an authorization you gave us before (Opt-out). Opting out should be submitted to email@example.com. The withdrawal of consent will apply to future use and disclosures of your PI unless required by law. It will not affect previous processing, while your authorization was still in effect.
(f). Non-U.S. resident patients inquiring about tests should direct all such queries to the clinic or provider that ordered the test. Non-U.S. resident providers, clinics and other health-related organizations should direct all queries to the Natera Data Protection Officer (DPO), who can be reached by emailing firstname.lastname@example.org.
We may retain needed information for as long as your account is active with us or as needed to provide you the services. We may retain and use your information as necessary to comply with our legal obligations, resolve disputes and enforce our agreements.
10. Children’s Privacy
11. Additional Personal Information Privacy Rights for California Residents
The California Consumer Privacy Act or CCPA and the California Privacy Rights Act (CPRA) provide for specific rights for all California residents. We have listed these rights and how you can exercise them on our web site under the title “Notice of Data Collection for California Residents”.
In addition, Natera has a toll-free phone number available for your use: 877-NAT-PRIV (877-628-7748). You may also send your request to our physical address specified below.
Natera does not and will not sell PI without consent.
12. Notification Procedures
13. Links to and from Other Web Sites
14. Social Media Sharing
16. Actions You May Take
If you have questions or wish to exercise your privacy rights, believe that we may have violated these rights, or disagree with a decision that we made about access to your information, you may contact us at the following address or telephone number:
Our Address and Contact Information is:
If you are from US or other countries excluding EU countries, our Representative is:
Chief Privacy Officer
201 Industrial Road, Suite 410
San Carlos, CA 94070
United States of America
Tel: +1 (650) 249-9091
If you are from the EU, our Representative is:
Data Protection Officer (DPO)
201 Industrial Road, Suite 410
San Carlos, CA 94070
United States of America
Tel: +1 (650) 249-9091