Effective Date: 08/07/2024 Welcome to Catherine Yu DNP, LLC (“we,” “us,” or “our”). We provide telehealth and virtual care services through our website and mobile applications (collectively, the “Platform”). We are committed to protecting your privacy and the confidentiality of your health information in accordance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA), the Health Information Technology for Economic and Clinical Health Act (HITECH), and all applicable state and federal privacy laws. This Privacy Policy explains how we collect, use, share, and protect your information when you use our telehealth services. We collect information necessary to provide safe and effective telehealth services, including Protected Health Information (PHI), Personal Information, and Technical Information. B. Personal Information C. Technical Information We use your information only as permitted by HIPAA and applicable law, including to: We do not sell, rent, or market your health information to third parties. We may share your PHI only as allowed under HIPAA, including: All video, audio, and chat communications conducted through our Platform are encrypted end-to-end using HIPAA-compliant technology. We maintain strong administrative, physical, and technical safeguards to protect your PHI, including encryption, secure storage, multi-factor authentication, and regular security audits. You have the right to: We retain your PHI as long as required by federal and state medical record retention laws or as necessary to provide care. When no longer needed, data is securely deleted or de-identified. Our website and mobile app may use limited cookies or analytics tools to improve performance and user experience. These do not access or store PHI. If you have questions, requests, or complaints regarding your privacy, please contact: Catherine Yu DNP, LLC You may also file a complaint with the U.S. Department of Health and Human Services Office for Civil Rights (OCR) at: We may update this Privacy Policy periodically. Updates will be posted on our website and app with the “Last Updated” date. Continued use of the Platform after updates constitutes acceptance of the revised policy.
HIPAA-Compliant Privacy Policy for Telehealth Platform
Last Updated: 10/10/20251. Introduction
2. Information We Collect
A. Protected Health Information (PHI)
– Medical records, diagnoses, treatment plans, prescriptions, and clinical notes
– Photos, images, or documents uploaded for consultation
– Information you provide during virtual visits, chats, or video sessions
– Name, date of birth, contact details, address
– Login credentials and profile information
– Payment and billing information
– IP address, browser type, operating system
– Device identifiers and usage analytics
– Session logs for telehealth calls (excluding audio/video content)3. How We Use Your Information
– Provide and coordinate telehealth services and care
– Schedule and conduct video consultations
– Verify your identity and manage your account
– Process billing and insurance claims
– Communicate with you regarding appointments, follow-ups, or support
– Improve security, usability, and performance of our Platform
– Comply with legal, regulatory, and reporting obligations4. How We Share Your Information
– With your healthcare providers for treatment and care coordination
– With your consent when you authorize release of information
– For payment and healthcare operations
– With Business Associates under HIPAA-compliant agreements
– As required by law5. Video and Communication Privacy
We do not record or store telehealth sessions unless you have provided explicit written consent.6. Data Security
7. Your Rights Under HIPAA
– Access and request a copy of your health information
– Request corrections to your records
– Request restrictions on certain uses or disclosures
– Receive an accounting of disclosures
– Request confidential communications by alternative means or addresses
– File a complaint without retaliation8. Data Retention and Deletion
9. Cookies and Tracking Technologies
10. Contact Us
Privacy Officer: Catherine Yu
Email: help@catherineyu.com
Phone: 978-709-2373
Mailing Address: 4411 Bee Ridge Rd, suite 591, Sarasota, FL 34233
https://www.hhs.gov/ocr/privacy/hipaa/complaints/11. Changes to This Policy