Privacy & Security

Privacy Policy

Your practice's data security is important to us. We're committed to protecting your information with appropriate security measures and transparent privacy practices.

Last updated: December 28, 2024

Overview

DenialFlip is a healthcare technology platform designed to help medical practices efficiently manage insurance denials and appeals. We understand that healthcare data is sensitive, and we've built our platform with privacy and security as foundational principles.

Our Commitment

We never sell your data, we encrypt everything, and we implement appropriate security measures. Your practice's information stays secure and private.

What Information We Collect

Account & Practice Information

  • Practice name, address, and contact information
  • Provider names and credentials
  • Practice size and specialty information
  • Billing contact information

Denial & Appeal Data

  • Denial letters and reasons (anonymized)
  • CPT codes and procedure information
  • Insurance payer information
  • Appeal outcomes and success rates

Technical Information

  • IP addresses and device information
  • Usage patterns and feature interactions
  • Browser type and version

How We Use Your Information

Core Services

  • 1

    Denial Analysis

    Process and analyze denial reasons to generate appeal recommendations

  • 2

    Appeal Generation

    Create customized appeal letters based on payer policies

  • 3

    Success Tracking

    Monitor appeal outcomes and optimize strategies

Platform Improvement

  • 4

    AI Training

    Improve our algorithms using anonymized data patterns

  • 5

    Feature Development

    Build new tools based on user needs and feedback

  • 6

    Support Services

    Provide customer support and technical assistance

Important Note

We never use your data for marketing purposes or sell it to third parties. All data usage is strictly limited to providing and improving our denial management services.

Data Security & Protection

Encryption & Storage

  • AES-256 encryption at rest
  • TLS 1.3 encryption in transit
  • Secure cloud infrastructure
  • Regular security audits

Access Controls

  • Role-based access controls
  • Multi-factor authentication
  • Regular access reviews
  • Audit logging

Security Incident Response

In the unlikely event of a security breach, we have a comprehensive incident response plan that includes immediate containment, investigation, notification to affected users, and regulatory reporting as required by HIPAA.

HIPAA Compliance

HIPAA-Conscious Design

DenialFlip is designed with HIPAA requirements in mind, implementing appropriate administrative, physical, and technical safeguards to help protect healthcare information.

Data Minimization

We only collect and process the minimum necessary information

Safeguards Implementation

All required administrative, physical, and technical safeguards are in place

Your Rights & Choices

Data Access & Control

  • Access Your Data

    Request a copy of all data we have about your practice

  • Data Correction

    Update or correct inaccurate information

  • Data Deletion

    Request deletion of your data (subject to legal requirements)

Communication Preferences

  • Email Preferences

    Control what emails you receive from us

  • Account Settings

    Manage your account preferences and notifications

  • Data Processing

    Opt out of certain data processing activities

Exercise Your Rights

To exercise any of these rights, contact us at privacy@denialflip.com. We'll respond to your request within 30 days as required by HIPAA.

Questions or Concerns?

We're committed to transparency and addressing any questions or concerns you may have about our privacy practices. Our privacy team is here to help.

Contact Information

Privacy Officer

privacy@denialflip.com

General Support

support@denialflip.com

Security Concerns

security@denialflip.com

Response Times

General inquiries: 24 hours
Privacy requests: 30 days
Security incidents: Immediate

Note: This privacy policy may be updated from time to time. We'll notify you of any material changes via email or through our platform. Your continued use of our services after such changes constitutes acceptance of the updated policy.