The following terms and conditions govern your use of the fepblue.org website and the MyBlue Portal.
The MyBlue Portal (“Portal”) is hosted and operated by Blue Cross Blue Shield Association (“BCBSA”) as part of its contract with the Office of Personnel Management (“OPM”) to administer the Federal Employee Program (“FEP”). Some information collected through the Portal may be considered “protected health information” (“PHI”), as that term is defined in the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”) and its implementing regulations. To use all of the features of the Portal, you must have an active MyBlue account and sign in using that account information through the non-public section of the Website.
Your privacy is important to us. BCBSA maintains high standards for the protection of your privacy on the Website. Here is what you can expect when you visit the Website:
- Other than to fulfill a request from you or to provide you information or services as part of your contract for health benefits, we won’t sell, rent or share any individually identifiable personal information you provide without your consent or as allowed by applicable law.
- We won’t send you any unsolicited email (“spam”).
- No personal information collected at this Website will ever be used to affect your health insurance coverage by or premiums paid to a Blue Cross and Blue Shield company.
HIPAA Notice of Privacy Practices
This Policy is in addition to the HIPAA Notice of Privacy Practices issued to all Service Benefit Plan contract holders when they enroll and whenever there is a material change to the privacy practices provided in the notice. In situations where there are material changes, the revised HIPAA Notice of Privacy Practices will be distributed to all contract holders within 60 days of the change. To review our current privacy practices please download the following:
The information we collect
When accessing or using features of this Website, our web servers automatically capture your domain name; the IP address of the web page from which you enter our site; the browser name, full version (major and minor), and plugins; the resolution (width/height) and color depth; the operating system; the pages you visit on our site; and the amount of time you spend here.
When you access the non-public section of the Website, we may access or collect personal and non-personal information about You, including but not limited to: (i) information you voluntarily provide, which may include account info, name, email address, user credentials, age, address, and/or phone number; (ii) health, medical, or therapy information, including PHI; and (iii) Information provided by BCBSA, an affiliate, or a business partner.
To the extent voluntarily permitted, we may obtain your location information to provide location-related services, e.g., finding a provider near you. We do not store information about your location after the service is performed. Your location information may be shared with third-parties that we have hired to perform the location-based services, such as Provider Finder. You can withdraw consent to use precise, real-time or network location data at any time by turning off the location-based feature on your web browser or by opting out of using any location-based features, such as Provider Finder. If you withdraw consent, functionality associated with precise, real-time or network location, such as Provider Finder, may be limited.
If you use the features on this Website or on the websites of our business partners, you are “opting in” and agree to our collection of information as described above. You can “opt out” or prevent us from collecting PHI or personal information by not accessing this Website or using the interactive features of this Website or the websites of our business partners. You may “opt in” or “opt out” each time you access the Website. If you “opt out,” you cannot use the interactive features, such as the Provider Directory and Pharmacy Programs.
Information About Children Under 13
Any section of www.fepblue.org that is directed to children or teens is protected by a screening mechanism to help confirm parental consent is obtained before we collect or use personal information from children under 13. We do not knowingly collect or use personal information from children under 13 without the consent of a parent or guardian.
In the event that we become aware that we have collected Personal Information from any child, we will dispose of that information in accordance with the Children’s Online Privacy Protection Act and other applicable laws and regulations. If you are a parent or guardian and you believe that your child under the age of 13 has provided us with information without your consent, please contact us at firstname.lastname@example.org, and we will take reasonable steps to confirm that such information is deleted from our files.
We maintain administrative, technical, and physical safeguards designed to help us protect the personal information that you provide. Notwithstanding these efforts, we cannot guarantee the confidentiality and security of this Website. Please be advised that the confidentiality of any communication or material being transmitted using the public Internet or non-secure Internet electronic communications cannot be guaranteed. Notwithstanding our security safeguards, we cannot guarantee the confidentiality and security of electronic communications. If you wish to keep your communications to us private, you should not communicate to us using the Website.
In addition to the administrative, technical, and physical safeguards that we employ, the confidentiality and security of your information depend on you, as well. If you choose to use a persistent log-in, for example, having your user name or password be remembered, others may be able to access information through your web browser. Additionally, when you are no longer accessing features of the secured portion of the Website, you should log off of your Website session; rather than closing your web browser. If you are concerned about the unauthorized use or disclosure of information via your web browser, you should elect to not use the persistent log-in feature. Additionally, we recommend using a unique password for this Website and not one that is used for other websites. You are responsible for keeping all passwords used to access the secure section of the Website confidential. Under no circumstances should you share your password with or provide access to the Website for an unauthorized person or entity.
Use of the information this Website gathers/tracks
We gather and store information in the aggregate to maintain or improve our Website, and we may share that information with other areas in BCBSA, local Blue Cross and Blue Shield companies, our business partners, or with companies we hire to help us maintain or improve the Website.
Additionally, any individually identifiable personal information you voluntarily give us, including Protected Health Information, will be stored in a secure environment and used to provide the product, service, or information you have requested or for which you registered. Unless you specifically consent to let us do so, your personal information, including your email address, will not be sold, rented, licensed or otherwise shared with third parties, other than Blue Cross and Blue Shield companies or business partners as required to fulfill a request from you to provide you information or services as part of your contract for health benefits or to personalize products and services for you. Personal information you voluntarily provide and the information we collect will not affect your insurance coverage, eligibility, premiums or claims payment by any Blue Cross and Blue Shield company.
Cookies and Similar Technology Policy
What are cookies?
We use two broad categories of cookies: (1) first party cookies, served directly by us to your computer or mobile device, which we use to recognize your computer or mobile device when it revisits our Website; and (2) third party cookies, which are served by service providers on our Website, and can be used by such service providers to recognize your computer or mobile device when it visits other websites.
Cookies we use
The Website uses the following types of cookies for the purposes set out below:
Type of cookie
These cookies are essential to provide you with services available through our Website and to enable you to use some of its features. Without these cookies, the services that you have asked for cannot be provided, and we only use these cookies to provide you with those services.
These cookies allow our Website to remember choices you make when you use fepblue.org, such as remembering your language preferences, remembering your login details and remembering the changes you make on other parts of our Website which you can customize. The purpose of these cookies is to provide you with a more personal experience and to avoid you having to re-enter your preferences every time you visit fepblue.org.
Analytics and Performance Cookies
These cookies are used to collect information about traffic to our Website and how users use fepblue.org. The information gathered does not identify any individual visitor. The information is aggregated and anonymous. The information gathered may include the number of visitors to fepblue.org, the websites that referred them to our Website, the pages they visited on our Website, what time of day they visited our Website, whether they have visited our Website before, and other similar information.
We use Google Analytics for this purpose. Google Analytics uses its own cookies. You can find out more information about Google Analytics cookies here and about how Google protects your data here. You can prevent the use of Google Analytics relating to your use of our site by downloading and installing the browser plugin available here. In addition, you can restrict tracking by enabling privacy settings on your web browser.
Targeted and Advertising Cookies
These cookies track your browsing habits to enable us to show advertising that is more likely to be of interest to you. These cookies use information about your browsing history to group you with other users who have similar interests. Based on that information, third party advertisers can place cookies to enable them to show advertisements that we think will be relevant to your interests while you are on third party websites.
Social Media Cookies
These cookies are used when you visit any public fepblue.org page. A social networking website such as Facebook, Twitter or LinkedIn can record that you have visited this page and could use this information to serve you relevant ads that are in compliance with platform advertising policies.
If you decide at any time that you no longer wish to accept cookies from our services for any of the purposes described above, then you can typically instruct your browser, by changing its settings, to remove or stop accepting cookies or to prompt you before accepting a cookie from the websites you visit. In order to do this, consult your browser’s technical information (instructions are usually located within the “settings,” “help” “tools” or “edit” facility). Many browsers are set to accept cookies until you change your settings.
Further information about cookies, including how to see what cookies have been set on your computer or mobile device and how to manage and delete them, visit www.allaboutcookies.org.
If you do not accept our cookies, you may experience some inconvenience or not be able to use all portions of the services or all functionality of the services. For example, we may not be able to recognize your computer or mobile device and you may need to log in every time you visit Website.
In addition, we may use pixel tags (also referred to as clear GIFs, web beacons, or web bugs) on fepblue.org to track the actions of users on the Website. Pixel tags are tiny graphic images with a unique identifier, similar in function to cookies, which are used to track online movements of web users. In contrast to cookies, which are stored on a user’s computer hard drive, pixel tags are embedded invisibly in web pages. Pixel tags also allow us to send email messages in a format that users can read, and they tell us whether emails have been opened, for example, to help confirm that we are sending messages that are of interest to our users. We may use this information to reduce or eliminate messages sent to a user.
Do not track signals
Some internet browsers may be configured to send “Do Not Track” signals to the online services that you visit. We currently do not respond to do not track signals. To find out more about “Do Not Track,” please visit http://www.allaboutdnt.com.
Third party analytics providers and ad servers
We may work with certain third parties to provide us with information regarding traffic on Website, to serve advertisements elsewhere online, and to provide us with information regarding the use of our Website or services and the effectiveness of our advertisements. These third parties may automatically collect information about you using their own cookies or other technologies, or may otherwise collect or have access to, information about your visits to this and other websites, your IP address, your ISP, the browser you use to visit our Website and other usage information. Information collected may be used, among other things, to deliver advertising targeted to your health insurance coverage and services and to better understand the usage and visitation of our Website and the other sites tracked by these third parties. If you would like more information about this practice and to know your choices about not having this information used by these companies, you may visit: http://www.aboutads.info/choices (for website users), http://www.networkadvertising.org/managing/opt_out.asp (for website users), http://youronlinechoices.eu/ (for users in the EU), or http://youradchoices.com/appchoices (for mobile app users).
Sites we link to
We have business relationships with Blue Cross and Blue Shield member companies and other third party vendors and resources. These linking relationships are not a form of advertising or promotion, but part of the unique set of benefits available under the Blue Cross and Blue Shield Service Benefit Plan and the Blue Cross Blue Shield Association.
Our Online Communication Practices
Changes to this policy
We may update this policy from time to time. When we do, we will post the current version on this site and we will revise the version date shown on this page. We encourage you to periodically review this policy so you will be aware of our privacy practices.
Policy updated August 12, 2021
Make a privacy complaint
You may submit a complaint to us if you believe that we have violated your privacy rights. To make a complaint, please write or call the customer service number for your local Blue Cross and Blue Shield company and ask for the privacy contact.