Privacy Policy
Last updated: June 13, 2026
1. Introduction
Mental Fortitude ("we", "us", or "our") provides a B2B workplace mental wellness platform to subscribing organizations and their employees. This Privacy Policy explains how we collect, use, disclose, and protect personal information when you use our services.
2. Information we collect
We collect the following categories of information:
- Account information: name, email address, date of birth, gender, organization affiliation, and profile details provided during registration or by your employer.
- Assessment responses: answers to mental health assessments, including sensitive health-adjacent topics such as trauma cognitions, addiction, suicidal ideation, sleep quality, close relationships, and sexual addiction screening.
- Partner feedback: responses submitted by invited partners through secure token-based links.
- Usage data: login activity, assessment completion progress, video views, and platform interaction logs.
- Billing information: organization subscription details processed through Stripe. We do not store full payment card numbers on our servers.
3. How we use information
- Delivering assessments, results, educational content, and therapist recommendations to employees.
- Operating and improving the Mental Fortitude platform.
- Providing aggregate wellness reporting to subscribing employers when reporting is enabled and permitted — individual assessment responses are not shared with employers by default.
- Processing subscriptions, invoicing, and customer support requests.
- Complying with legal obligations and enforcing our Terms of Service.
4. Data sharing
We do not sell personal information. We share data only in these circumstances:
- Subscribing employers: aggregate, de-identified reporting metrics (e.g., completion rates, team-level risk distributions) when the organization's reporting features are enabled. Individual responses remain confidential to the employee unless required by law.
- Service providers: trusted vendors such as Stripe (payments), email delivery providers, and hosting infrastructure — bound by contractual confidentiality obligations.
- Legal requirements: when required by law, court order, or to protect the rights and safety of users.
5. Data retention and deletion
We retain personal information for as long as your organization maintains an active subscription or as needed to provide services. Assessment data is retained to support continuity of care and progress tracking. Upon termination of a subscription or a verified deletion request, we will delete or anonymize personal data within a reasonable period, subject to legal retention requirements.
6. Your rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate information.
- Request deletion of your personal information.
- Object to or restrict certain processing activities.
To exercise these rights, contact us at support@mentalfortitude.com . Employees may also contact their organization's administrator for account-related requests.
7. Security
We implement administrative, technical, and organizational safeguards to protect personal information, including encrypted connections (HTTPS), access controls, and role-based permissions. No method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
8. Contact us
For privacy-related questions or requests, email support@mentalfortitude.com or write to us at 2 Selgar Avenue, Tonsely SA 5042.