๐Ÿ”’ Privacy

Privacy Policy

Last updated: April 7, 2026  ยท  Effective date: April 7, 2026

Table of Contents

  1. Overview
  2. Information We Collect
  3. How We Use Your Information
  4. Protected Health Information (PHI)
  5. Information Sharing
  6. Data Security
  7. Data Retention
  8. Your Rights
  9. Cookies & Tracking
  10. Children's Privacy
  11. Changes to This Policy
  12. Contact Us

๐Ÿ›ก๏ธ At a Glance: Medical Legal Connect is built for healthcare and legal professionals. We collect only what we need, encrypt everything, and never sell your data. PHI is processed only under a signed Business Associate Agreement (BAA).

1. Overview

Medical Legal Connect ("we," "us," or "our") is committed to protecting the privacy and security of information entrusted to us by our users ("you," "your"). This Privacy Policy describes how we collect, use, disclose, and safeguard information when you use our platform at medicallegalconnect.com.

This Policy is designed to comply with the Health Insurance Portability and Accountability Act (HIPAA), the Texas Medical Records Privacy Act, the California Consumer Privacy Act (CCPA) where applicable, and other applicable privacy laws.

2. Information We Collect

CategoryExamplesPurpose
Account InformationName, email, password (hashed), organization name, roleAuthentication & account management
Professional InformationBar number, medical license, specialty, practice stateProfessional verification & compliance
Usage DataPages visited, features used, login timestamps, IP addressSecurity, audit logging, product improvement
CommunicationsMessages sent within the platform, support ticketsService delivery & HIPAA audit trail
Payment InformationBilling name, last 4 digits of card (processed by Stripe)Subscription billing (we never store full card numbers)
PHI (when applicable)Patient names, DOBs, medical records, case documentsPlatform services โ€” subject to BAA

2.1 Information You Provide

We collect information you directly provide, including during registration, case creation, document upload, and secure messaging.

2.2 Automatically Collected Information

We automatically collect certain technical information when you use the Platform, including your IP address, browser type, device identifiers, and access timestamps. This data is used for security monitoring and HIPAA audit logging.

3. How We Use Your Information

We use the information we collect to:

We do not use your data for advertising or sell your data to third parties โ€” ever.

4. Protected Health Information (PHI)

PHI is treated with the highest level of protection on our Platform. Key commitments:

5. Information Sharing

We do not sell, trade, or rent your personal information. We may share information only in these limited circumstances:

5.1 With Your Authorization

When you explicitly share a case or document with another organization on the Platform (cross-org access grants), the receiving organization can view only the data you specifically authorized.

5.2 Service Providers (Sub-processors)

We work with a limited number of trusted sub-processors who assist in delivering our services, each subject to strict data processing agreements:

5.3 Legal Requirements

We may disclose information if required to do so by law, court order, or governmental authority, or to protect the rights, property, or safety of Medical Legal Connect, our users, or the public.

6. Data Security

We implement administrative, technical, and physical safeguards to protect your information, including:

7. Data Retention

We retain your data for as long as your account is active or as needed to provide services. Specific retention periods:

8. Your Rights

Depending on your location and applicable law, you may have the right to:

For HIPAA-related rights regarding PHI (including the right to access, amend, or request an accounting of disclosures), please contact us at compliance@medicallegalconnect.com.

To exercise any privacy right, email privacy@medicallegalconnect.com. We will respond within 30 days.

9. Cookies & Local Storage

The Platform uses browser localStorage (not third-party cookies) to maintain your authenticated session token and user preferences. We do not use advertising cookies or cross-site tracking technologies.

Session data is automatically cleared when you log out or when your session expires.

10. Children's Privacy

The Platform is designed for use by licensed professionals and is not directed to children under 18 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us immediately at privacy@medicallegalconnect.com.

11. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or applicable law. We will notify you of material changes via email or a prominent Platform notice at least 30 days before the changes take effect. Your continued use of the Platform after the effective date constitutes acceptance of the revised Policy.

12. Contact & Data Requests

For privacy, compliance, or data requests, please contact us:

๐Ÿ”’ Privacy: privacy@medicallegalconnect.com
โš•๏ธ HIPAA/Compliance: compliance@medicallegalconnect.com
๐Ÿ›ก๏ธ Security incidents: security@medicallegalconnect.com

Medical Legal Connect ยท Dallas, TX ยท medicallegalconnect.com