1. Introduction
R3ta Peptide LLC ("R3TA," "Company," "we," "us," or "our") is a limited liability company committed to protecting your privacy and safeguarding your personal, health-related, and financial information. This Privacy Policy explains how we collect, use, disclose, and protect your information when you visit our website located at https://r3ta.com (the "Website"), create an account, make a purchase, complete health intake forms, schedule or participate in telehealth consultations, communicate with our team or affiliated healthcare providers, or otherwise use our services (collectively, the "Services"). This Privacy Policy applies only to information collected through our Website and Services and does not apply to information collected offline or via channels other than the Website unless otherwise stated.
By accessing or using our Website or Services, you acknowledge that you have read, understood, and agree to the collection, use, and disclosure of your information in accordance with this Privacy Policy. This Privacy Policy should be read in conjunction with our Terms of Service, available at https://r3ta.com/terms-of-service. If you do not agree with the practices described herein, please do not access or use the Website or Services. We may update this Privacy Policy periodically to reflect changes in our practices or for operational, legal, or regulatory reasons. The revised Privacy Policy will be posted on the Website with an updated "Last Updated" date.
2. Information We Collect
We collect information in several ways depending on how you interact with us. The categories of information we collect include the following:
2.1. Personal Information
Information you voluntarily provide when you create an account, place an order, contact customer support, sign up for newsletters, or otherwise interact with us. This may include:
- Full legal name
- Date of birth
- Email address
- Mailing, billing, and shipping addresses
- Phone number
- Account login credentials (username and password)
- Identity verification details
2.2. Payment and Transaction Information
When you make a purchase, we collect:
- Billing name and address
- Payment card details (processed and transmitted directly to our PCI-DSS-compliant third-party payment processors via encrypted SSL connection; we do not collect, store, or have access to your full credit card numbers, expiration dates, or CVV codes)
- Order history and transaction records
- Subscription and membership billing data
- Purchase amounts and dates
2.3. Automatically Collected Information (Usage Data)
When you visit the Website, we automatically collect certain technical and usage information, including:
- Internet Protocol (IP) address
- Browser type and version
- Operating system and device information
- Device identifiers
- Referring URLs and pages visited
- Date and time of visits
- Time spent on pages and clickstream data
- Navigation patterns and interactions with the Website
2.4. Communication Data
We may collect information from your communications with us, including:
- SMS and text message interactions
- Email correspondence
- Customer support inquiries and chat logs
- Appointment and order-related notifications
2.5. Information from Third Parties
We may receive information about you from third-party sources, including:
- Healthcare Providers affiliated with our Services
- Pharmacy Partners fulfilling your prescriptions
- Payment processors and fraud-prevention services
- Analytics providers
3. How We Use Your Information
We use the information we collect for the following purposes:
3.1. Providing Products and Services
- Processing and fulfilling orders
- Facilitating telehealth consultations with licensed Healthcare Providers
- Coordinating prescription review, approval, and fulfillment with Pharmacy Partners
- Managing your account and membership
- Providing customer support
3.2. Health and Safety
- Allowing Healthcare Providers to evaluate your eligibility for Products
- Maintaining records related to your care
- Verifying your identity and eligibility
- Processing prescription orders
3.3. Operations and Improvement
- Enhancing and personalizing your experience on the Website
- Analyzing site traffic, usage patterns, and trends
- Developing new products, services, and features
- Conducting internal research and analytics
- Monitoring system performance and security
3.4. Communication and Notifications
- Sending order confirmations, shipping notifications, and delivery updates
- Providing appointment reminders and prescription refill notifications
- Responding to your inquiries and support requests
- Sending account security alerts
- With your consent, sending promotional materials, newsletters, and marketing communications about products and services that may interest you
3.5. Legal and Compliance
- Fraud detection and prevention
- Complying with applicable laws, regulations, and legal processes
- Enforcing our Terms of Service
- Protecting our rights, property, and safety, and the rights, property, and safety of our users and the public
4. SMS and Text Message Policy
If you provide your phone number and opt in to receive text messages from R3TA, you consent to receive SMS communications related to:
- Order confirmations and shipping updates
- Appointment and consultation reminders
- Prescription and refill notifications
- Account security alerts
- Promotional offers (if separately opted in)
Opt-Out: You may opt out at any time by replying "STOP" to any message you receive. Reply "HELP" for assistance.
Message Frequency: Message frequency varies based on your account activity and communication preferences.
Rates: Standard message and data rates may apply depending on your carrier plan.
Consent: Consent to receive SMS messages is not a condition of purchase.
No Sharing: No mobile information — including phone numbers and SMS opt-in data — will be shared with third parties or affiliates for marketing or promotional purposes. We store opt-in timestamps and consent records for compliance and audit purposes.
5. How We Share Your Information
We may share your information with the following categories of recipients for the purposes described below. We do not sell your personal information for monetary consideration. We do not rent or trade your personal information with third parties for their own marketing purposes.
5.1. Licensed Healthcare Providers
To facilitate telehealth consultations, clinical review, and prescription authorization in connection with the Services.
5.2. Pharmacy Partners
To fulfill prescriptions approved by a licensed Healthcare Provider. Pharmacy Partners are independent, licensed 503A and/or 503B compounding pharmacies responsible for compounding and dispensing Products in accordance with their own policies and applicable laws. All peptide Products are sourced exclusively from FDA-registered 503B outsourcing facilities operating under current Good Manufacturing Practice (cGMP) standards and located within the United States.
5.3. Service Providers
We engage third-party service providers to perform functions on our behalf, including:
- Payment processors and gateways
- Shipping carriers (e.g., USPS, UPS, FedEx)
- Cloud hosting and data storage providers
- Email and SMS communication platforms
- Analytics providers (e.g., Google Analytics)
- Customer support platforms
- Identity verification and fraud-prevention services
- Website hosting platform providers
- Invisible reCAPTCHA and security services (operated by Google)
These service providers are contractually obligated to use your information only for the specific services they perform on our behalf and to maintain appropriate safeguards to protect your information.
5.4. Legal and Regulatory Disclosures
We may disclose your information when required or permitted by law, including in response to:
- Court orders, subpoenas, or other legal processes
- Requests from law enforcement or governmental authorities
- Public health reporting obligations
- Fraud investigations or security incident responses
- Protection of our legal rights, property, or safety
5.5. Business Transfers
If R3ta Peptide LLC is involved in a merger, acquisition, asset sale, corporate reorganization, or bankruptcy, your personal information may be transferred as part of that transaction. We will provide notice before your information becomes subject to a different privacy policy.
5.6. With Your Consent
We may share your information with third parties when you have provided express consent to do so.
6. Cookies and Tracking Technologies
We use cookies and similar tracking technologies (including web beacons, pixels, and scripts) to enhance your experience, analyze site traffic, and support our marketing efforts.
6.1. Types of Cookies We Use
- Essential/Necessary: Required for basic Website functionality, security, and fraud prevention. The Website cannot function properly without these cookies.
- Functional: Remember your preferences, login information, and language settings to provide a personalized experience.
- Analytics/Performance: Help us understand how visitors interact with the Website by collecting anonymized usage data (e.g., pages visited, time spent, traffic sources).
- Marketing/Advertising: Used to deliver relevant advertisements, measure campaign effectiveness, and track conversions.
6.2. Managing Cookies
You can manage your cookie preferences through your browser settings. Most browsers allow you to refuse all cookies or indicate when a cookie is being sent. However, disabling cookies may impact the functionality of the Website.
6.3. Third-Party Analytics
We may use third-party analytics services, including Google Analytics, to monitor and analyze Website usage. Google Analytics uses cookies to collect anonymized data about how visitors use the Website. You can opt out of Google Analytics by installing the Google Analytics Opt-Out Browser Add-on. For more information, please visit Google's Privacy & Terms page.
6.4. Do Not Track
Our Website does not currently respond to "Do Not Track" (DNT) signals from web browsers.
7. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes described in this Privacy Policy, including:
- For as long as your account is active or as needed to provide the Services
- To comply with applicable legal, accounting, and regulatory obligations (including medical record retention requirements under state law)
- To resolve disputes and enforce our agreements
- To support legitimate business operations
When personal information is no longer necessary for these purposes, we will securely delete or de-identify it in accordance with our data retention policies and applicable law.
8. Data Security
We implement appropriate administrative, technical, and organizational safeguards designed to protect your personal information from unauthorized access, use, alteration, disclosure, or destruction. These measures include:
- Encryption of sensitive data in transit using SSL/TLS technology
- Secure server infrastructure with access controls
- PCI-DSS-compliant payment processing (we do not store full payment card data)
- Restricted employee and contractor access to personal information on a need-to-know basis
- Regular security assessments and monitoring
- Audit logs and intrusion detection systems
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially reasonable means to protect your information, we cannot guarantee its absolute security. You are responsible for maintaining the confidentiality of your account credentials and for any activities that occur under your account.
9. Your Rights and Choices
Depending on your state of residence, you may have certain rights regarding your personal information. These may include:
9.1. Access and Portability
You may request a copy of the personal information we hold about you, including the categories and specific pieces of information collected, the sources of that information, and the business purposes for collecting it.
9.2. Correction
You may request that we correct inaccurate or incomplete personal information.
9.3. Deletion
You may request that we delete your personal information, subject to certain exceptions (e.g., where retention is required by law, for tax or regulatory compliance, or to complete a transaction).
9.4. Opt-Out of Marketing Communications
You may opt out of receiving marketing emails by following the unsubscribe link in any marketing email, adjusting your communication preferences in your account settings, or contacting us directly. You may opt out of SMS messages by replying "STOP."
9.5. Restrict or Object to Processing
Where applicable under law, you may request that we restrict or cease processing your personal information for certain purposes.
9.6. Non-Discrimination
We will not discriminate against you for exercising any of your privacy rights.
9.7. How to Exercise Your Rights
To exercise any of the rights described above, please contact us at:
Email: privacy@r3ta.com
We will verify your identity before processing any request to protect the security of your information. We will respond to verified requests within the timeframes required by applicable law (within 45 days for California residents).
10. California Privacy Rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, "CCPA/CPRA"), provides you with specific rights regarding your personal information:
Right to Know/Access: You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you in the preceding 12 months, the sources of that information, the business or commercial purposes for collecting it, and the categories of third parties with whom we share it.
Right to Delete: You have the right to request deletion of personal information we have collected, subject to certain legal exceptions.
Right to Correct: You have the right to request correction of inaccurate personal information.
Right to Opt-Out of Sale/Sharing: We do not sell your personal information for monetary consideration. However, certain uses of cookies or analytics tools may constitute "sharing" under the CCPA/CPRA. You may opt out of such sharing by managing your cookie preferences or contacting us.
Right to Limit Use of Sensitive Personal Information: Where we collect sensitive personal information (such as health information), we use it only for purposes authorized by law and as described in this Privacy Policy.
Right to Non-Discrimination: We will not deny you goods or services, charge different prices, or provide a different level of quality for exercising your CCPA/CPRA rights.
"Shine the Light" (Cal. Civ. Code § 1798.83): California residents may request information about disclosures of personal information to third parties for their direct marketing purposes during the preceding calendar year.
To submit a CCPA/CPRA request, please contact us at privacy@r3ta.com.
11. Consumer Health Data
If you are a resident of Washington State or another jurisdiction with consumer health data privacy laws (such as Washington's My Health My Data Act), additional protections may apply to "consumer health data" we collect. We collect and use consumer health data solely for the purposes of providing the Services, facilitating clinical review and prescription fulfillment, and as otherwise described in this Privacy Policy. We do not sell consumer health data. We will obtain your consent before collecting or sharing consumer health data where required by applicable law.
12. HIPAA Applicability
R3ta Peptide LLC is not a covered entity or business associate under the Health Insurance Portability and Accountability Act ("HIPAA"). However, Healthcare Providers and Pharmacy Partners with whom we collaborate may be subject to HIPAA. Their collection and use of your protected health information is governed by their own privacy practices and HIPAA Notice of Privacy Practices, not this Privacy Policy. We encourage you to review their privacy notices. For more information about HIPAA, please visit https://www.hhs.gov/hipaa/index.html.
Notwithstanding the foregoing, we implement reasonable administrative, technical, and organizational safeguards designed to protect the confidentiality and security of any health-related information you provide to us. We treat all health information collected through our Services with the same level of care that would be expected of a HIPAA-covered entity, even though we are not legally required to do so.
13. Third-Party Links and Services
The Website may contain links to third-party websites, services, or platforms that are not owned or controlled by R3ta Peptide LLC. This Privacy Policy does not apply to the practices of third parties. We are not responsible for the privacy practices or content of third-party websites. We encourage you to review the privacy policies of any third-party sites you visit.
If you access telehealth services through a third-party platform, your use of that platform is governed by its own terms and privacy policies.
14. Children's Privacy
Our Website and Services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18 years of age. If you are a parent or guardian and believe that your child has provided us with personal information, please contact us immediately. If we learn that we have collected personal information from a child under 18, we will take steps to delete that information as quickly as possible.
15. International Data Transfers
R3ta Peptide LLC is based in the United States. If you access the Website or Services from outside the United States, your information may be transferred to, stored, and processed in the United States or other countries where our service providers operate. By using the Website or Services, you consent to the transfer of your information to countries that may have different data protection laws than your country of residence. The Company will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy, and no transfer of your personal data will take place to an organization or a country unless there are adequate controls in place, including the security of your data and other personal information.
16. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, legal requirements, or for other operational reasons. When we make material changes, we will:
- Post the revised Privacy Policy on the Website with an updated "Last Updated" date
- Where practicable, notify you via email or prominent notice on the Website prior to the change becoming effective
We encourage you to review this Privacy Policy regularly. Your continued use of the Website or Services after changes are posted constitutes your acceptance of the updated Privacy Policy.
17. Governing Law
This Privacy Policy is governed by and construed in accordance with the laws of the State of Florida, without regard to its conflict of law principles. Any disputes arising under or in connection with this Privacy Policy shall be resolved in accordance with the dispute resolution provisions set forth in our Terms of Service.
18. Contact Information
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
R3ta Peptide LLC
Email: privacy@r3ta.com
For CCPA/CPRA requests, you may also contact us by email at the address listed above. We will verify your identity before processing any request to protect the security of your information. We will respond to verified requests within forty-five (45) days, as required by applicable law.