Privacy Policy
Effective Date: April 6, 2026
This notice describes how medical information about you may be used and disclosed and how you can get access to this information. Please review it carefully.
1. Our Commitment to Your Privacy
Eastern Medical is committed to protecting the privacy and security of Protected Health Information (PHI) in accordance with the Health Insurance Portability and Accountability Act (HIPAA) and its implementing regulations. This policy applies to all PHI managed by our Practice Fusion middleware and related services.
2. Purpose of Information Collection
We synchronize clinical data from Practice Fusion to provide advanced reporting, clinical decision support, and administrative efficiency for Eastern Medical. We collect:
- Demographic information (Name, DOB, Gender, Address).
- Clinical records (Encounters, Conditions, Medications, Allergies).
- Laboratory results and diagnostic reports.
- Insurance and coverage details.
3. How We Use and Disclose PHI
We may use and disclose your PHI for the following purposes:
- Treatment: To provide, coordinate, or manage your health care and related services.
- Healthcare Operations: For internal analysis to improve care quality and administrative performance.
- Compliance: When required by federal, state, or local law.
4. Data Security & Protection
We implement rigorous administrative, physical, and technical safeguards, including:
- End-to-end encryption in transit (TLS 1.2+).
- AES-256 encryption at rest for database and cloud storage.
- Strict access controls and audit logging of all data interactions.
- Regular vulnerability scanning and security assessments.
5. Your Rights Under HIPAA
You have the right to:
- Request access to or a copy of your PHI.
- Request an amendment to your records if you believe they are incorrect.
- Request a restriction on certain uses or disclosures.
- Receive an accounting of disclosures we have made of your PHI.
Contact Us
If you have questions about this policy or wish to exercise your rights, please contact our HIPAA Privacy Officer at:
Eastern Medical Compliance Dept.
Email: compliance@eastern-medical.com
Address: [Clinic Physical Address]