Privacy Policy
Last Updated: January 2025
Introduction
[Your Practice Name] ("we," "our," or "us") is committed to protecting your privacy and maintaining the confidentiality of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.
Information We Collect
Personal Information
We may collect the following types of personal information:
- Name, email address, phone number, and mailing address
- Date of birth and demographic information
- Insurance information and billing details
- Health information and clinical records (Protected Health Information or PHI)
- Emergency contact information
Website Usage Information
When you visit our website, we automatically collect:
- IP address, browser type, and operating system
- Pages visited and time spent on pages
- Referring website addresses
- Date and time of visits
How We Use Your Information
We use your information for the following purposes:
- Treatment: To provide mental health counseling and related services
- Payment: To process billing and insurance claims
- Healthcare Operations: To improve our services and maintain quality care
- Communication: To respond to inquiries and send appointment reminders
- Legal Compliance: To comply with applicable laws and regulations
HIPAA Compliance
As a mental health provider, we are required to comply with the Health Insurance Portability and Accountability Act (HIPAA). Your Protected Health Information (PHI) is stored and managed through Ensora Mental Health, a HIPAA-compliant practice management system.
Important: This website does NOT store Protected Health Information. All client records, session notes, and sensitive health data are maintained exclusively in our secure, HIPAA-compliant system.
How We Protect Your Information
We implement various security measures including:
- Secure, encrypted data transmission (SSL/TLS)
- HIPAA-compliant practice management system (Ensora Mental Health)
- Limited access to personal information on a need-to-know basis
- Regular security audits and updates
- Secure disposal of records when no longer needed
Disclosure of Your Information
We do not sell, trade, or rent your personal information. We may disclose your information only in the following circumstances:
- With Your Consent: When you provide explicit authorization
- Treatment Coordination: To other healthcare providers involved in your care
- Legal Requirements: When required by law or court order
- Safety Concerns: To prevent serious harm to you or others
- Business Associates: To HIPAA-compliant service providers (e.g., Ensora, billing companies)
Third-Party Services
We use the following third-party services:
- Ensora Mental Health: HIPAA-compliant practice management and client portal
- Formspree: Contact form processing (does not collect PHI)
- Google Cloud Storage: Website hosting (does not store PHI)
Your Rights
Under HIPAA and applicable privacy laws, you have the right to:
- Access and obtain a copy of your health records
- Request corrections to your health information
- Receive an accounting of disclosures
- Request restrictions on certain uses and disclosures
- Request confidential communications
- File a complaint if you believe your privacy rights have been violated
Cookies and Tracking
Our website may use cookies to enhance your browsing experience. Cookies are small text files stored on your device. You can control cookie settings through your browser preferences.
Children's Privacy
Our website is not directed to children under 13. When we provide services to minors, we obtain appropriate consent from parents or legal guardians and comply with applicable laws regarding minors' privacy.
Changes to This Privacy Policy
We may update this Privacy Policy periodically. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
Contact Us
If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us:
[Your Practice Name]
123 Main Street, Suite 100
[City, State ZIP]
Phone: (XXX) XXX-XXXX
Email: contact@yourpractice.com
Note: This is a template privacy policy. Please consult with a legal professional to ensure it meets all applicable federal and state requirements for your practice.