57 Total
16 High severity
30 Medium severity
11 Low severity
Stay ahead of the changes
Track Teladoc and get the diff the day its terms change.
Summary

This is Teladoc Health's General Privacy Policy covering data collected from visitors to its public websites, including Teladochealth.com and MyStrength.com, but not from logged-in members whose data is governed by HIPAA. The policy states that Teladoc may collect identifiers, browsing activity, device information, registration form data (including date of birth and health plan), and customer service communications, and may share this data with service providers and, with user consent, advertising partners. California residents and users in certain other states are granted rights to know, delete, correct, opt out of targeted advertising, and limit use of sensitive personal information, exercisable through a webform or by emailing PrivacyRights@teladochealth.com.

Analysis

This General Privacy Policy governs Teladoc Health's collection, use, and disclosure of Personal Information from visitors to its public websites (Teladochealth.com and MyStrength.com), effective March 9, 2026, and explicitly states it is not a contract. The policy states that Teladoc may collect visitor data (pages visited, device and browser type, IP address, email address, and external/internal identifiers), registration data (name, date of birth, health plan, contact information), and customer service communications, and may share this data with service providers, advertising partners (with consent), law enforcement, and successors in business transactions. The policy draws a material distinction between public website data governed by this policy and Protected Health Information (PHI) collected on secure platforms, which is governed by HIPAA and a separate HIPAA Notice of Privacy Practices; the policy also states that Teladoc does not sell PHI or use it for advertising or data mining, and that opt-in advertising cookies may constitute a 'sale' of personal information under state law definitions including CCPA/CPRA. The policy engages HIPAA via HHS OCR, the CCPA and CPRA via the California Attorney General and the California Privacy Protection Agency, and potentially state consumer health data laws through a supplemental Consumer Health Data Privacy Policy referenced but not reproduced in this document. Compliance teams should note the policy's acknowledgment that GPC signals are honored, that advertising cookie opt-in may trigger state-law 'sale' classification, and that the boundary between public-site personal data and PHI requires careful operational mapping, particularly where registration activity or health-adjacent data collected on public pages may fall under CMIA, HIPAA, or state consumer health data statutes depending on jurisdiction.

What this means for you

The agreement establishes that personal information collected on Teladoc's public websites, including identifiers, browsing activity, registration form data, and customer service communications, may be shared with service providers, advertising partners (where consent is given), law enforcement, and business successors. Under these terms, users in California and certain other states may request access, correction, deletion, and opt-out of targeted advertising through a webform or by email, and the policy states Teladoc honors Global Privacy Control signals to reject non-essential cookies automatically. You can manage cookie preferences at any time by clicking 'Your Privacy Choices' in the website footer, submit a privacy rights request via the webform linked in the policy, or email PrivacyRights@teladochealth.com.

Institutional Analysis
Stay ahead of the changes

Institutional analysis available with Insight

Which mapped governance frameworks each document engages, tied to the specific provisions that engage them.

Featured, High severity
Featured, Medium severity

Complete Provision Index

Every distinct legal provision identified in this document. Featured provisions appear above with analysis.

57 provisions
12 featured
13 clause types
16 high severity
General Contract Terms 1 1 high
AI / Automated Decision-Making 1
Stay ahead of the changes

Monitoring

Teladoc has updated this document before. Monitor includes same-day alerts, structured change summaries, and monitoring for up to 20 platforms.

Stay ahead of the changes

Governance Intelligence

Need provision-level monitoring and regulatory mapping? Insight includes governance timelines, drift analysis, and full provision tracking.

Cross-platform context

See how other platforms handle Activity disclosed to ad partners with consent and similar clauses.

Compare across platforms →

Mapped Governance Frameworks

CCPA/CPRA
California, USA
View official text ↗
Connecticut Data Privacy Act Amendments
US-CT
View official text ↗
CAN-SPAM
United States Federal
View official text ↗
FTC Act Section 5
United States Federal
View official text ↗
HIPAA
United States Federal
View official text ↗
Indiana Consumer Data Protection Act
US-IN
View official text ↗
Kentucky Consumer Data Protection Act
US-KY
View official text ↗
Universal Opt-Out Mechanism Expansion 2026
US
View official text ↗
Archival ProvenanceSource & Archival Record
Last Captured September 20, 2026 00:48 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000298
Version ID CA-V-007064
SHA-256 (extracted text, extractor v4) 6ef68cae385b38ed8f086ad446e2ab7ef53624bdf1dc92c8556e96fbafc041db
Archived bytes SHA-256 (anchor) 25f7b03cb78ec10c8a36cffec07686628c615ed9df8ea85d3d27dd8e79ad1411
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 352+ platforms.

Start monitoring → Compare plans