HIPAA-Compliant Privacy Policy for Focus Health and Wellness
Effective Date: December 18, 2024
Focus Health and Wellness (“we,” “our,” or “us”) is committed to protecting the privacy and confidentiality of your health information. As a covered entity under the Health Insurance Portability and Accountability Act of 1996 (HIPAA), we are required to maintain the privacy of your health information and ensure it is handled in accordance with HIPAA guidelines. This policy outlines how we collect, use, protect, and disclose your health information to provide quality care while complying with HIPAA regulations.
By using our services, you acknowledge and agree to the collection, use, and disclosure of your health information as described in this Privacy Policy.
1. What Information We Collect
We collect and maintain various types of health information, which may include:
- Protected Health Information (PHI): This includes demographic details such as your name, address, date of birth, phone number, and email address, as well as health information like medical history, treatment plans, diagnoses, prescriptions, lab results, and other health-related information.
- Medical Records and Treatment Information: Information about your health conditions, treatments, medications, appointments, and other healthcare-related services provided by Focus Health and Wellness.
- Billing Information: We may collect and maintain financial information necessary to process payments for our services, including insurance details, billing address, and payment.
2. How We Use and Disclose Your Health Information
We use your PHI to provide healthcare services and related administrative functions. The primary purposes for which we use and disclose your PHI include:
- Treatment: We may use your health information to provide you with medical care, services, and treatment plans. This includes sharing information with your healthcare providers, specialists, or other professionals involved in your care.
- Payment: We use and disclose your PHI to process payments for our services, including billing and insurance claims. Your information may be shared with insurers or other payers as necessary to receive payment for services rendered.
- Healthcare Operations: We may use your health information for healthcare operations, such as improving the quality of care, training staff, auditing our services, and managing our healthcare operations.
- Legal and Regulatory Compliance: We may disclose your health information when required to do so by law, including compliance with court orders, subpoenas, or regulatory investigations.
- Appointment Reminders and Health-Related Communications: We may use your contact information to remind you of appointments, follow-up care, and to provide you with health-related information and wellness tips related to your treatment plan.
3. Your Rights Regarding Your Health Information
Under HIPAA, you have certain rights regarding your health information. These rights include:
- Right to Access: You have the right to request access to your health information in the form of a copy or summary, within a reasonable time frame. Requests must be made in writing, and we will provide this information in accordance with HIPAA guidelines.
- Right to Request Corrections: If you believe that any information we hold about you is incorrect or incomplete, you may request that we correct or update the information. This request must be made in writing.
- Right to Request Restrictions: You have the right to request restrictions on how we use or disclose your health information. While we are not required to agree to all requests, we will carefully consider them and inform you of our decision.
- Right to Confidential Communications: You have the right to request that we communicate with you about your health information in a specific manner or at a specific location (e.g., by phone instead of email).
- Right to a Copy of This Privacy Policy: You have the right to request a copy of this Privacy Policy at any time, either in paper or electronic format.
- Right to File a Complaint: If you believe that your privacy rights have been violated, you have the right to file a complaint with us or with the U.S. Department of Health and Human Services (HHS) Office for Civil Rights.
4. How We Protect Your Health Information
We take the security of your health information seriously. To ensure the confidentiality and integrity of your PHI, we employ a variety of physical, administrative, and technical safeguards, including:
- Encryption: Sensitive information, such as electronic health records and payment data, is encrypted to prevent unauthorized access during transmission.
- Access Control: We restrict access to PHI to only those employees or contractors who need it to perform their job duties, ensuring that unauthorized individuals cannot access your information.
- Secure Storage: Your health information is stored securely, whether in physical or electronic formats. All files and records are stored in accordance with HIPAA standards for safeguarding health information.
- Training: All of our employees are trained on HIPAA compliance and the importance of maintaining the confidentiality of your health information.
5. When We May Disclose Your Health Information Without Your Authorization
In addition to the uses and disclosures described above, there are certain situations in which we may disclose your health information without your consent or authorization, including:
- Required by Law: We may disclose your health information as required by law, including to comply with court orders, subpoenas, or investigations by regulatory agencies.
- Public Health Activities: We may disclose health information for public health purposes, such as reporting certain diseases or conditions to public health authorities.
- Health Oversight Activities: We may disclose your health information to health oversight agencies for activities such as audits, investigations, or licensure actions.
- Abuse, Neglect, or Domestic Violence: We may disclose your health information to authorities if we believe that you have been a victim of abuse, neglect, or domestic violence.
- Law Enforcement: We may disclose your health information to law enforcement if necessary to comply with legal requirements or for purposes related to criminal investigations.
6. Our Commitment to Your Privacy
We understand the importance of maintaining the privacy and security of your health information. Focus Health and Wellness is dedicated to ensuring that we comply with all applicable federal, state, and local laws regarding your health information. If you have any concerns or questions about how we handle your health data, please don’t hesitate to contact us.
7. Changes to This Privacy Policy
We reserve the right to update this Privacy Policy at any time to reflect changes in our practices or legal requirements. Any changes will be posted on our website, and the updated version will include the new effective date.
8. Telemedicine
For our telehealth visits, we can prescribe new medications, but only after we have seen the patient in person first. For example, if you are our patient, we would see you in office for the initial visit, in order to do a comprehensive physical exam and history taking. If the next visit is a telehealth visit, we can and will prescribe NEW medications at that time, since we have met you previously in person.
Telehealth is provided by Elation Health and our electronic medical record. The patient is sent an invitation through Elation to join Dr. Hoying's waiting room where she joins the Telehealth visit. Patients are able to contact Dr. Hoying on the platform. Dr. Hoying can only see patients via telemedicine in the state of Ohio. Patients must be physically in Ohio to speak to Dr. Hoying via telehealth.
8. Contact Us
If you have any questions or concerns about this Privacy Policy, our privacy practices, or wish to exercise any of your rights as described above, please contact us at:
Focus Health and Wellness
5160 Socialville-Fosters Rd., Mason, OH 45040
Email:vwest@focushealthwell.com
Phone:513-880-9845
By using our services, you acknowledge that you have read and understand this Privacy Policy and agree to its terms.