Back to Home

HIPAA Policy

Last updated: January 2026

HIPAA Compliance Statement

HealthDoc is committed to protecting the privacy and security of your Protected Health Information (PHI) in compliance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA). This policy outlines our practices and your rights regarding your health information.

Data Protection Measures

  • End-to-End Encryption: All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption.
  • Secure Infrastructure: Our systems are hosted on HIPAA-compliant cloud infrastructure with regular security audits.
  • Access Controls: Strict role-based access controls ensure only authorized personnel can access PHI.
  • Audit Logging: All access to PHI is logged and monitored for suspicious activity.

Your Rights Under HIPAA

Right to Access

You have the right to access, view, and obtain copies of your health records stored in our system.

Right to Amend

You may request amendments to your health information if you believe it is inaccurate or incomplete.

Right to Restrict

You can request restrictions on how we use or disclose your health information.

Right to Accounting

You may request a list of disclosures we have made of your health information.

Data Storage & Processing

Your medical reports and health data are:

  • • Stored securely on Supabase infrastructure with encryption
  • • Processed by AI systems solely for analysis and insights
  • • Never sold, shared, or used for advertising purposes
  • • Retained only as long as you maintain an active account
  • • Completely deleted upon account closure request

Contact Us

If you have questions about our HIPAA compliance or wish to exercise your rights, please contact us:

creativesimulation1@gmail.com