Effective Date: February 28, 2026
1. Who We Are
Contract X-Ray is a service of Nautilus Health Institute, a 501(c)(3) nonprofit dedicated to improving transparency, accountability, and fiduciary standards in employer-sponsored health plans. This Privacy Policy explains how we collect, use, and protect your information when you use our contract analysis service.
2. Information We Collect
When you submit a contract for analysis, we collect: contact information (email, company name), contract details (PBM name), uploaded documents (PDF), and for Premium, payment processed securely through Stripe. We do not store your credit card details.
3. How We Use Engagement Details
Solely to generate your analysis report, deliver it to your email, respond to questions, and improve our scoring methodology using anonymized aggregated data.
4. Who Has Access to Your Contract
Access is strictly limited to Nautilus analysts and secure AI systems used in the analysis process. We do not sell, share, or disclose your contract to third parties, PBMs, competitors, or any external organizations.
5. Data Security
Encrypted transmission of all data, access controls limiting who can view contracts, and secure cloud storage with encryption at rest.
6. Data Retention
Contracts and analysis are retained for 12 months to support follow-up questions. After this period, contracts are securely deleted unless you request otherwise.
7. Your Rights
You may request a copy of your data, request deletion, or ask questions. Contact info@nautilushealth.org.
8. Changes to This Policy
Material changes will be communicated via email to active users. The effective date indicates when it was last revised.
9. Contact Us
Nautilus Health Institute — info@nautilushealth.org