Privacy

As part of the day to day business operations of BlueCare Tennessee, including operation of the BlueCare Tennessee web site, we receive and maintain certain information regarding our subscribers and members. Information received from the BlueCare Tennessee web site depends in part on what you do when you visit or transact business on the BlueCare Tennessee web site. BlueCare Tennessee respects the privacy of every individual who visits our web site. Therefore, we would like to define the types of information we receive and describe how it is maintained in this privacy policy ("Privacy Policy"). This policy refers only to the information collected and maintained from this Web site.

USING THIS WEB SITE CONFIRMS YOUR CONSENT AND AGREEMENT TO OUR PRIVACY POLICY, INCLUDING COLLECTION, USE AND DISCLOSURE OF INFORMATION BY BLUECARE TENNESSEE AS DESCRIBED HEREIN. YOUR USAGE ALSO SIGNIFIES YOUR COMPLIANCE WITH OUR USER AGREEMENT.

Disclosure of Non-Public Personal Information:

We restrict access to nonpublic personal information unless it is needed to complete a transaction that our member has authorized (i.e. claims administration, adjustment and management; detection, investigation or reporting of actual or potential fraud; misrepresentation or criminal activity; underwriting; policy placement or issuance; loss control; ratemaking and guaranty fund functions; reinsurance and excess loss insurance; risk management; case management; disease management; quality assurance and improvements; utilization review, actuarial, scientific, medical or public policy research; grievance procedures, audits, etc). Information is shared with entities (i.e. providers and vendors) that assist BlueCare Tennessee in supplying products and services to our members or that promote products and services on behalf of BlueCare Tennessee. Information is provided to nonaffiliated third parties as required or allowed by federal and state law. BlueCare Tennessee maintains physical, electronic, and procedural safeguards that comply with federal regulations to guard your nonpublic personal information.

We reserve the right to disclose personal information to entities that perform marketing services (i.e. brokers) on our behalf or to other institutions with which we have joint marketing agreements. BlueCare Tennessee requires each entity to execute a Confidentiality Agreement prior to disclosure. The following information may be shared:

  1. name, address and telephone number;
  2. social security number and date of birth;
  3. policy coverage, benefits, premiums and payment history; and policy coverage, benefits, premiums and payment history; and
  4. limited medical information (i.e. provider name, date of service, referral and authorization information, primary care physician).

Retention of Information Collected:

Any non-public personal information collected and maintained from this Web site will be retained for a minimum of six years from the date the information is received unless you perform a function on our Web site that requires the use of this information at a later date. In that case, the information will be retained for a minimum of six years from the date the information was last used in a function on the Web site. When required by federal or state law, there may be some instances in which your information will be retained longer than six years.

Use of Cookies:

A "cookie" is a mechanism that permits a Web server to send small pieces of information or text through your browser to be stored on your hard drive. This information or text allows the server to identify frequent visitors and enhance the user's experience on the Web site.

BlueCare Tennessee may collect information through the use of cookies in order to enhance navigation of the site, to direct you to appropriate pages, and for session security and timeout purposes. In general, cookies used on this site are active only during your site session and are not persistent, i.e, they are not stored on your computer. Persistent cookies used on this site—ones that are active beyond the session and are stored on the system—are only used for gathering information about our users' computers, such as operating system, browser type, and software versions in order to enable proper performance of the site. Our cookies are not used to track your activity on any site other than BlueCare.bcbst.com nor will they be utilized to send unsolicited e-mail or provide us with the user's personally identifiable information. The information collected in these cookies is not linked to your personal health information, and we do not use clear GIFs or third party cookies, nor do we share information collected through cookies with third parties.

Your browser software can be set to disallow all cookies. Instructions on setting your browser to reject cookies are usually located in the "Help" section of the toolbar, depending on your browser type. If you choose not to accept our cookies, you should still be able to access most of the public areas of our site, although some of the features of interactive sections may be limited, and we will not be able to authenticate you for the non-public secure sections where a logon is required.

Spyware:

Spyware refers to types of software programs, downloaded to a consumer's personal computer either as a stand-alone application or as part of a software bundle, that collect (i) information about a consumer's internet activities or (ii) other personal information, without providing meaningful notice to the consumer or obtaining the consumer's consent. Spyware may gather personally identifiable information, such as e-mail addresses and credit card information, and may even alter personal computer settings. Spyware is often extremely difficult to remove once installed. BlueCross BlueShield of Tennessee believes that Spyware is a threat to consumer privacy and forbids any employee, agent, partner, affiliate or contractor to deploy or use Spyware.

Direct Access to Other Sites:

BlueCare Tennessee offers direct links to other separate and individual web sites that offer information, which could be beneficial to our members. Since these direct links are separate web sites independent of BlueCare.bcbst.com, they may not follow the same privacy guidelines set forth here. BlueCare Tennessee assumes no responsibility or control over the acts or privacy policies of the third party web sites to which BlueCare Tennessee provides direct links. We suggest that you contact the appropriate controlling authorities of these sites or review their privacy policy.

Opt-Out

BlueCare Tennessee provides its members and users the opportunity to ''opt-out'' of having their information used for purposes not related to the BlueCare Tennessee Web site when BlueCare Tennessee requests such information. Users who wish to opt-out can do so by contacting us via our Member Contact Page. This opt-out only applies to information collected during the web site registration process and does not affect information obtained by BlueCare Tennessee by any other means. BlueCare Tennessee will not use your information collected by the BlueCare Tennessee Web site for marketing purposes unless allowed by State and Federal Law.

Correction/Updating Personal Information

If the personally identifiable information of a user of our services changes or a group's information changes, or if the user or group no longer desires to use the services on this web site, BlueCare Tennessee will endeavor to provide a way to correct, update or remove that user's personal data. Personal data that is removed from our systems cannot be removed from backup files stored prior to your request. To correct or update personal information, contact BlueCare Tennessee via our Member Contact Page.

Security

BlueCare Tennessee takes precautions to protect its users' personal non-public information. When users submit sensitive information to BlueCare Tennessee, the information is protected both online and off-line.

When the registration/login form asks users to enter sensitive information, that information is encrypted and is protected with the encryption software, specifically SSL 3.0, RC4 with 128 bit encryption (High) which may be updated from time to time. While on a secure page, such as the login page, the lock icon on the bottom of web browsers such as Netscape Navigator and Microsoft Internet Explorer becomes locked, as opposed to unlocked, or open, when you are just ''surfing''.

While BlueCare Tennessee uses SSL encryption to protect sensitive information online, BlueCare Tennessee protects user-information off-line. Only employees who need the information to perform their jobs are granted access to personally identifiable information. BlueCare Tennessee employees must use password-protected screen-savers when they leave their desk. When they return, they must re-enter their password to re-gain access to your information. Furthermore, all employees are kept up-to-date on BlueCare Tennessee security and privacy practices. Finally, the servers that store personally identifiable information are kept in a secure environment.

BlueCare Tennessee Reserves The Right To Modify Its Privacy Policy

BlueCare Tennessee reserves the right to change or update this Privacy Policy at any time. Any changes made to our privacy policy will be posted on this site in a manner that is easily identifiable. Please review our privacy policy on a regular basis to review any changes.

For information on The Health Insurance Portability and Accountability Act of 1996 (HIPAA), please refer to the BlueCross BlueShield of Tennessee, Inc. HIPAA information.