Privacy Policy
Effective Date: [Insert Date]
Last Updated: [Insert Date]
1. Introduction
[Your Company Name] (“Company,” “we,” “us,” or “our”) respects your privacy and is committed to protecting personal information we collect through the use of our hospital-grade software (the “Software”) in the state of Georgia. This Privacy Policy explains what information we collect, how we use it, how we protect it, and your rights in relation to that information.
2. Information We Collect
a. Personal Health Information (PHI). We may collect PHI when users (such as healthcare providers or patients) interact with the Software, including but not limited to: names, dates of birth, medical diagnoses, treatment information, billing/payment data, and other individually identifiable health information. This collection is subject to the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and applicable state law.
Compliancy Group
+1
b. Other Personal Data. We may collect contact information (e.g., name, email, phone), account credentials, usage data, device information, log data, and any information that you voluntarily provide.
c. Aggregate/Anonymized Data. We may transform personal data into aggregated or de-identified data for internal analysis, product improvement, research and analytics.
3. How We Use Information
We use the information we collect for the following purposes:
- To provide, operate, maintain, and enhance the Software and related services.
- To fulfill contractual obligations and service requests, including provisioning, billing, support, and licensing.
- To improve our products, develop new features, and conduct internal analyses (using anonymized or aggregated data).
- To comply with legal obligations, enforce our rights, prevent fraud or misuse of the Software.
- With your explicit consent (where required) for marketing or other secondary uses.
4. Disclosure of Information
We may disclose personal data as follows:
- To our service providers, contractors and agents who assist in delivering the Software and who agree to contractual data protection obligations.
- To affiliated entities or subsidiaries for internal business purposes.
- If required by law, subpoena, court order, regulatory body, governmental request, or to protect the rights, property or safety of the Company or others.
- In the event of a merger, acquisition, reorganization, or sale of the Company (with appropriate data protection measures).
- De-identified or aggregated data may be shared publicly or with third parties for research or business intelligence purposes.
5. Data Security and Retention
We implement administrative, physical and technical safeguards consistent with HIPAA, applicable Georgia laws and best industry practices to protect PHI and other personal data from unauthorized access, alteration, disclosure or destruction. For example, encryption in transit and at rest, access controls, audit logs and regular security reviews.
We retain personal data only as long as necessary to fulfill the purposes described in this policy or as required by law. When no longer needed, we securely delete or anonymize the data.
6. Your Rights
Depending on applicable law, you may have the right to:
- Access or obtain a copy of certain personal or health information that we hold.
- Request correction or amendment of inaccurate or incomplete information.
- Request deletion of personal data (subject to legal obligations).
- Withdraw consent where our processing is based on consent.
- Receive information about disclosures of your PHI (as required under HIPAA).
To exercise these rights, please contact us at [contact email/address]. We may need to verify your identity before responding.
7. International Transfers
If you are located in Georgia, U.S., your data will be stored within the U.S. and not exported to jurisdictions that do not provide equivalent data protections without your consent. If we ever transfer data internationally, we will ensure appropriate safeguards are in place.
8. Cookies and Tracking Technologies
We may use cookies, web beacons, and similar tracking technologies to operate the Software (or our websites), analyze usage, and personalize user experiences. You can manage or disable cookies through your browser settings, though some features may not function properly if you do so.
9. Children’s Privacy
The Software is not directed at children under the age of 13 (or other applicable threshold); we do not knowingly collect personal data from such children. If we become aware that we have collected data from a child under 13 without parental consent, we will take steps to delete that information.
10. Changes to this Privacy Policy
We reserve the right to update this Privacy Policy at any time. We will notify you of material changes by posting the updated policy on our website or through the Software, and we will update the “Last Updated” date above. Your continued use of the Software after such changes indicates your acceptance of the updated policy.
11. Contact Information
If you have questions about this Privacy Policy, wish to exercise your rights, or have concerns about our data practices, please contact:
[Your Company Name]
[Address]
[Email]
[Phone]