Back to Home

Privacy Policy

Effective Date: June 10, 2026

VeritaMed.ai, LLC (“Verita”) respects your privacy. This policy governs how we collect, use, and safeguard your data, particularly Protected Health Information (PHI), in compliance with HIPAA and applicable Virginia state laws.

1. Information We Collect

We collect only the data necessary to perform clinical transcription and practice management. This includes, but is not limited to: user credentials (name, email, role), clinical metadata (patient IDs, visit notes), appointment identifiers, and billing information. We do not sell or rent any PHI.

2. How We Use Data

  • To provide transcription, diagnostic, and prescription services.
  • To generate clinical reports and analytics.
  • To audit access and ensure security compliance.
  • We do not use PHI for model training unless it has been de-identified in accordance with HIPAA §164.514.

3. Data Security

We employ AES‑256 encryption for data at rest and TLS 1.3 for data in transit. Access is strictly controlled via Role‑Based Access Control (RBAC). All access attempts are logged in an immutable audit trail.

4. Data Sharing

We do not share PHI with third parties except as required to provide the services (e.g., cloud hosting) or as required by law. All subcontractors sign a Business Associate Agreement (BAA).

5. Your Rights

You have the right to request access, amendment, or an accounting of disclosures of your PHI. To exercise these rights, contact privacy@veritamed.ai.

VeritaMed.ai, LLC – Virginia, USA

Last updated: June 10, 2026