Privacy & HIPAA Policy for SageMedic
Effective Date: January 1, 2025
- Introduction
This Privacy & HIPAA Policy explains how SageMedic (“we”, “our”, or “us”) collects, uses, discloses, and protects your information, including protected health information (PHI), in accordance with HIPAA, California law, and other applicable regulations. SageMedic is a CLIA-certified clinical laboratory in California.
- Information We Collect
We may collect:
- Personal Information: Name, contact details (including email), date of birth.
- Health Information (PHI): Lab test orders, diagnostic results, sample identifiers, and related medical data.
- Technical Information: IP address, browser type, and basic website usage data.
- How We Use Your Information
- Perform and deliver laboratory testing.
- Report test results to ordering providers or directly to patients.
- Facilitate test ordering and payment via secure platforms (e.g., DocuSign, under a HIPAA BAA).
- Send instructions, confirmations, and results via email, with patient consent.
- Comply with CLIA, HIPAA, and California law.
- DocuSign and Email Communication
- Patients receive secure DocuSign forms for test consent and payment.
- Patient email addresses are required for identity confirmation and communication.
- Email may be used to send PHI (e.g., lab reports) with patient consent. While precautions are taken, email transmission carries some risk.
- How We Share Your Information
- With ordering providers and public health authorities as required.
- With HIPAA-compliant business associates.
- As otherwise authorized or required by law.
We do not sell, rent, or use PHI for marketing or advertising purposes.
- Your Rights
- Access and request a copy of your lab results.
- Request corrections to your health information.
- Request restrictions on use or sharing.
- Receive breach notifications if applicable.
- Data Security
We use administrative, technical, and physical safeguards to protect your PHI, including secure servers, encryption, and access controls.
- Website Privacy
Our website uses basic analytics tools to monitor performance and improve functionality. We do not collect PHI unless you voluntarily submit it. Please avoid sending sensitive health information through unsecured forms or email.
- Changes to This Policy
We may update this policy as regulations or our practices change. Updates will be posted with a new effective date.
- Contact
SageMedic Laboratory
Address: [Insert Mailing Address]
Email: [Insert Secure Email]
Phone: [Insert Phone Number]