Privacy Policy for Mentionable Means Manageable Youth Advocacy (MMMYA)

Effective Date: September 8, 2024

Who We Are

Our website address is: https://mmmya.org. Mentionable Means Manageable Youth Advocacy (MMMYA) is a nonprofit 501(c)3 organization dedicated to working with schools, at-risk youth, and parents. We provide a variety of support services, including day camps, weekend engagements, and advocacy programs to empower and mentor adolescents.

What Data We Collect and Why We Collect It

Comments

When visitors leave comments on the site, we collect the data shown in the comments form, as well as the visitor’s IP address and browser user agent string to help with spam detection. Additionally, an anonymized string created from your email address (called a hash) may be provided to the Gravatar service to check if you are using it. After approval of your comment, your profile picture will be visible to the public.

Forms and HIPAA Compliance

If you submit personal information via forms on this website related to services involving youth advocacy and counseling, this information may include protected health information (PHI). We comply with the Health Insurance Portability and Accountability Act (HIPAA) to ensure that all sensitive data, particularly health information, is securely collected, transmitted, and stored.
  • We collect PHI such as health histories, mental health status, and parental consent forms only with explicit consent from users (or their legal guardians if under 18).
  • PHI is used strictly for the purposes outlined in the form and is not shared with third parties unless required by law or explicitly consented to.

Events and Donations

As part of our mission to provide ongoing support to adolescents, we will periodically post event updates, including information about upcoming programs, workshops, and fundraisers. If you choose to register for an event or make a donation, we will request personal information to process your registration or contribution. For donations, we may request information such as your name, email address, mailing address, and payment details to ensure proper processing and acknowledgment of your donation. Your personal information will be securely stored and not shared with third parties unless required by law. If you wish to sign up for events or donate, please [fill out this form].

Media

If you upload images to the website, avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website may be able to download and extract any location data from images.

Cookies

If you leave a comment on our site, you may opt-in to saving your name, email address, and website in cookies for your convenience. These cookies will last for one year. We also use temporary cookies to enhance user experience during login sessions.

Embedded Content from Other Websites

Articles or content on this site may include embedded media (e.g., videos, images, etc.). Embedded content from external websites behaves in the same way as if the visitor had visited the external site. These websites may collect data about you, use cookies, and monitor your interactions.

Data Sharing and HIPAA Compliance

MMMYA does not share any health-related personal data unless required by law or in accordance with HIPAA regulations. Any data shared with service providers (e.g., schools, healthcare professionals) will be done under strict confidentiality agreements and in compliance with all applicable laws.

How Long We Retain Your Data

We retain collected PHI for as long as necessary to provide services or as legally required. For comments and non-health-related user submissions, data is retained indefinitely unless requested otherwise.

Your Rights Over Your Data

If you have an account on this site, you may request an exported file of the personal data we hold, including any data provided to us. You may also request that we erase any personal data, except data we are legally obligated to retain.

How We Protect Your Data

We follow HIPAA guidelines and utilize encryption, secure servers, and access control measures to protect your personal health information. Only authorized staff and third-party service providers who are required to maintain confidentiality will have access to sensitive data.

Where We Send Your Data

Visitor comments may be checked through automated spam detection services. Additionally, any PHI or personally identifiable information (PII) shared with third-party service providers will follow strict security protocols to protect this information.