Privacy Policy
Last updated: January 1, 2026
Draft — pending legal review
This page uses placeholder language and is maintained by White Collar Billing to describe our general privacy practices. It must be reviewed and finalized by qualified legal counsel before it is relied upon by users or customers.
This Privacy Policy describes how White Collar Billing ("we," "us," or "our") collects, uses, and protects information when you visit our website or engage our medical billing and revenue cycle services. By using our website or services, you agree to the practices described here.
Section 01
Information We Collect
We collect information that you provide directly to us and information that is generated as you interact with our website and services. This may include:
- Contact information — your name, practice name, email address, phone number, and mailing address when you request a consultation, submit a contact form, or engage our services.
- Practice and billing information — information about your practice, specialties, patient volumes, and existing billing workflows, provided so we can scope and deliver services.
- Protected health information (PHI) — when we provide billing, coding, or revenue cycle services, we may receive PHI on behalf of covered entities under a Business Associate Agreement. PHI is handled in accordance with HIPAA (see below).
- Usage information — technical details such as IP address, browser type, pages visited, and referring URLs, collected automatically when you use our website.
Section 02
HIPAA Compliance
When we act as a Business Associate to a covered entity, we handle Protected Health Information (PHI) in accordance with the Health Insurance Portability and Accountability Act (HIPAA), the HITECH Act, and applicable implementing regulations. Our practices include:
- Executing a Business Associate Agreement (BAA) with each covered entity before receiving or processing PHI.
- Administrative, physical, and technical safeguards designed to protect the confidentiality, integrity, and availability of PHI.
- Role-based access controls that limit PHI access to workforce members with a legitimate need to know.
- Encryption of PHI in transit and at rest using industry-standard protocols.
- Workforce training, audit logging, and incident-response procedures aligned with HIPAA Security Rule requirements.
This page is not a certification of compliance. Specific obligations, permitted uses, and disclosures are governed by the applicable BAA between us and the covered entity.
Section 03
How We Use Data
We use the information we collect to:
- Provide, operate, and improve our billing, coding, and revenue cycle services.
- Respond to inquiries, schedule consultations, and communicate about your account or engagement.
- Send service updates, reports, and, where you have opted in, educational or marketing content.
- Comply with legal obligations, including tax, accounting, and regulatory requirements.
- Detect, investigate, and prevent security incidents, fraud, and other prohibited activity.
We do not sell personal information or PHI. PHI is only used or disclosed as permitted by the applicable BAA and HIPAA.
Section 05
Contact for Privacy Questions
If you have questions about this Privacy Policy, want to exercise a privacy right, or need to reach us about how your information is handled, please contact us:
- Email: privacy@whitecollarbilling.example
- Mail: Privacy Team, White Collar Billing, [Street Address], [City, State ZIP]
You can also reach us through our contact page. We aim to respond to privacy inquiries within a reasonable timeframe, and always within any period required by applicable law.
