Effective Date: June 10, 2026
VeritaMed.ai, LLC (“Verita”) respects your privacy. This policy governs how we collect, use, and safeguard your data, particularly Protected Health Information (PHI), in compliance with HIPAA and applicable Virginia state laws.
We collect only the data necessary to perform clinical transcription and practice management. This includes, but is not limited to: user credentials (name, email, role), clinical metadata (patient IDs, visit notes), appointment identifiers, and billing information. We do not sell or rent any PHI.
We employ AES‑256 encryption for data at rest and TLS 1.3 for data in transit. Access is strictly controlled via Role‑Based Access Control (RBAC). All access attempts are logged in an immutable audit trail.
We do not share PHI with third parties except as required to provide the services (e.g., cloud hosting) or as required by law. All subcontractors sign a Business Associate Agreement (BAA).
You have the right to request access, amendment, or an accounting of disclosures of your PHI. To exercise these rights, contact privacy@veritamed.ai.
VeritaMed.ai, LLC – Virginia, USA
Last updated: June 10, 2026