Privacy Policy

Last updated: March 19, 2026 | Effective: March 19, 2026

Pelandri ("we," "us," or "our") is a product of Smart Technology Investments LLC. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit pelandri.com (the "Site") or use our health insurance plan optimization services. Please read this carefully. If you do not agree with its terms, please do not access the Site.

1. Information We Collect

Information you provide directly:

  • Email address (if you create an account)
  • Health profile data you enter for plan optimization (age, ZIP code, medications, providers, conditions, income, filing status)
  • Payment information (processed by Stripe; we do not store card numbers)
  • Communications you send us

Information collected automatically:

  • IP address and approximate geolocation (country/region level)
  • Browser type, operating system, device type
  • Pages visited, time on page, referring URL

2. How We Use Your Information

  • To run health plan optimization calculations based on your profile
  • To generate and deliver optimization reports
  • To process payments and manage your account and credit balance
  • To send transactional emails (receipts, reports, account notices)
  • To send product updates and marketing communications (with your consent; you may opt out at any time)
  • To analyze usage patterns and improve the product
  • To detect and prevent fraud or abuse
  • To comply with legal obligations

3. Health Data Handling

The health profile data you provide (medications, conditions, provider preferences) is used solely for computing plan optimization results. We do not sell health data to third parties. Health profile data entered without an account is processed in your browser and is not stored on our servers. Health profile data associated with an account is stored encrypted and can be deleted at any time by deleting your account.

4. Data Sources We Use

Our optimization models are built on federal and publicly available datasets including CMS Plan Finder data, AHRQ MEPS health expenditure distributions, and FDA NDC drug databases. We do not collect personal data about individual patients or policyholders from these sources. All optimization is performed against aggregate statistical distributions.

5. Cookies and Tracking Technologies

We use essential cookies necessary for the Site to function (session management, CSRF protection). With your consent, we also use analytics cookies to understand how visitors use the Site. You may reject non-essential cookies via our cookie banner.

6. Third-Party Services

  • Cloudflare -- CDN, DDoS protection, Workers API hosting, and D1 database
  • Stripe -- Payment processing (PCI-DSS compliant)
  • Vercel -- Hosts and delivers our web application

These services have their own privacy policies. We have data processing agreements in place where required.

7. Data Retention

  • Account data: retained for the life of your account plus 2 years
  • Optimization reports: retained for the life of your account
  • Payment records: retained as required by law (typically 7 years)
  • Marketing consent records: retained until opt-out or account deletion
  • Anonymous health profile data (no account): not stored beyond the browser session

8. Your Rights

Depending on your location, you may have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate data
  • Request deletion of your data ("right to be forgotten")
  • Object to processing or withdraw consent
  • Data portability
  • Lodge a complaint with a supervisory authority (EU/UK users)

To exercise any of these rights, email us at privacy@smarttechinvest.com. We will respond within 30 days.

9. California Privacy Rights (CCPA / CPRA)

California residents have specific rights under the California Consumer Privacy Act. We do not sell or share personal information with third parties for their direct marketing purposes. To submit a CCPA request, email privacy@smarttechinvest.com with "CCPA Request" in the subject line.

10. Data Security

We implement industry-standard technical and organizational measures to protect your data, including TLS encryption in transit, encrypted storage at rest, access controls, and regular security reviews. No system is perfectly secure; we will notify you of any breach as required by applicable law.

11. Children's Privacy

The Site is not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us personal information, contact us and we will promptly delete it.

12. International Transfers

Our services are operated from the United States. If you access the Site from outside the U.S., your information may be transferred to and processed in the U.S. We rely on Standard Contractual Clauses for transfers from the EEA/UK.

13. Changes to This Policy

We may update this policy periodically. We will post the revised policy with an updated "Last updated" date. For material changes, we will provide additional notice (e.g., email or prominent Site notice). Continued use after changes constitutes acceptance.

14. Contact Us

Smart Technology Investments LLC
Email: privacy@smarttechinvest.com
Website: pelandri.com

See also our Terms of Service.