Privacy Policy & Notice of Privacy Practices
Privacy Policy & Notice of Privacy Practices
This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you visit our website, book a session, or engage with our services. Additionally, this document serves as our official Notice of Privacy Practices regarding your Protected Health Information (PHI) under the Health Insurance Portability and Accountability Act (HIPAA).
1. Information We Collect
We collect information to provide high-quality care, process insurance claims, and maintain a seamless user experience.
Standard Website Data: This includes non-identifying information such as your IP address, browser type, and cookies used to optimize website performance. If you fill out a general contact or newsletter form, we collect your name and email address.
Protected Health Information (PHI): If you utilize our secure booking platform, digital intake forms, or submit insurance information for credentialed provider billing, we collect highly confidential data. This includes your date of birth, medical history, physical symptoms, physician prescriptions, insurance member ID numbers, and clinical chart notes.
2. How We Safeguard Your Data
We implement strict administrative, physical, and technical safeguards to keep your personal and medical data completely safe:
HIPAA-Compliant Storage: All digital intake forms, clinical charting notes, and billing records are managed exclusively through secure health platforms operating under an official Business Associate Agreement (BAA). We do not store sensitive medical or insurance data on standard website servers.
Encrypted Communication: Any health or insurance data transmitted through our website's integrated booking portals utilizes industry-standard secure socket layer (SSL) encryption.
3. Uses and Disclosures of Your Information
For General Website Use: We use your email or phone number strictly to send booking confirmations, appointment reminders, invoice updates, or requested business communications. We will never sell, rent, or trade your contact information.
For Treatment (Clinical Massage): We use your PHI to design safe, trauma-informed treatment plans and document functional tracking for your insurance-reimbursable care.
For Healthcare Operations & Billing: As a credentialed healthcare provider in Washington State, we disclose your PHI (including diagnosis CPT codes and session details) to your health insurance carrier to process claims, verify benefits, or handle authorized billing audits.
For Coaching & Holistic Services: Notes and files regarding your lifestyle coaching goals or standalone holistic services are kept strictly confidential under the same high-security guidelines, though they are stored distinctly from clinical insurance charting records.
4. Your Rights Under HIPAA
As a patient and client, you hold specific legal rights regarding your protected records:
Access & Restrictions: You have the right to inspect and obtain a digital copy of your medical massage records or billing invoices. You may also request that we restrict disclosures to your insurance provider if you choose to pay out-of-pocket in full for a specific session.
Accounting of Disclosures: You have the right to request a list of the times your health data was shared for purposes other than treatment, payment, or standard healthcare operations.
5. Updates to This Policy
We reserve the right to amend this policy to remain compliant with evolving state insurance mandates and federal privacy laws. Any modifications will be posted directly to this web page with an updated effective date.