Concierge Pediatrics (“we,” “our,” or “us”) is committed to protecting the privacy and security of your personal information, including Protected Health Information (PHI). This Privacy Policy outlines how we collect, use, and safeguard your information when you visit https://myconciergepediatrics.com or engage with our services. Our practices comply with applicable privacy laws, including the Health Insurance Portability and Accountability Act (HIPAA).
1. Information We Collect
We may collect the following types of information:
- Personal Information: Name, address, phone number, email, child’s name and birth date, etc.
- Protected Health Information (PHI): Medical histories, treatment notes, lab results, appointment records, or any information related to past, present, or future physical/mental health and healthcare services.
- Technical Data: IP addresses, device/browser type, site usage data collected through cookies or analytics tools.
2. Cookies, Tracking Technologies, and Third-Party Services
Our website uses cookies, pixels, tags, and similar technologies to operate the site, understand how visitors use it, and support our marketing efforts. The specific third-party services we use are:
- Google Analytics (provided by Google LLC): Collects information about how visitors interact with our website, including pages visited, time on site, traffic sources, and device information. Used for website performance measurement and improvement. Learn more at policies.google.com/privacy. You may opt out by installing the Google Analytics Opt-Out Browser Add-on at tools.google.com/dlpage/gaoptout.
- Google Tag Manager (provided by Google LLC): A tag management system that loads other scripts on our website.
- Meta Pixel (provided by Meta Platforms, Inc.): Collects information about your visit to our website, including pages viewed and actions taken, and transmits this information to Meta for the purposes of measuring the effectiveness of our advertising, building audiences for future advertising, and providing analytics. Learn more at facebook.com/privacy/policy. You may adjust your ad preferences at facebook.com/adpreferences.
- GoHighLevel (provided by HighLevel, Inc.): Powers our website forms, contact management, and patient communication workflows. Information you submit through website forms is transmitted to and stored within GoHighLevel.
We do not use website tracking technologies to transmit Protected Health Information to third-party advertising or analytics providers.
Your Choices Regarding Tracking: When you first visit our website, you will be presented with a cookie consent banner allowing you to accept or decline non-essential tracking technologies. You may change your preferences at any time by clicking the “Cookie Preferences” link in our website footer. Most web browsers also allow you to control cookies through their settings. Disabling cookies may affect the functionality of certain parts of the website.
3. California Privacy Rights
If you are a California resident, the California Invasion of Privacy Act (CIPA), the California Consumer Privacy Act (CCPA), and the California Privacy Rights Act (CPRA) provide you with specific rights regarding your personal information.
We do not sell your personal information. Certain disclosures of personal information to third-party advertising or analytics providers, including those described above, may be considered “sharing” or “sale” under California law. You have the right to opt out of such sharing by adjusting your preferences through our cookie consent banner or by contacting us at the address listed in this policy.
California residents also have the right to request access to, deletion of, or correction of personal information we hold about them, subject to applicable exceptions. To exercise these rights, contact us using the information in Section 11.
4. How We Use Your Information
We use your information, including PHI, for:
- Providing medical treatment and care.
- Scheduling and managing appointments.
- Billing and payment processing.
- Communicating health-related information.
- Improving our services and patient experience.
- Complying with legal and regulatory obligations.
5. How We Share Your Information
We do not sell your personal or health information.
We may disclose your PHI under the following circumstances:
- Treatment, Payment, and Operations (TPO): To healthcare professionals involved in your care, billing providers, and internal administrative purposes.
- Authorized Individuals: Only with your explicit written consent.
- Business Associates: Vendors performing services (e.g., billing, EHR, IT). All business associates are bound by HIPAA-compliant contracts.
- Legal Obligations: If required by law, court order, public health reporting, or law enforcement.
6. Your HIPAA Rights
You have the right to:
- Access your medical records.
- Request an amendment to your records if you believe they are incorrect.
- Receive a copy of this Privacy Policy.
- Request restrictions on how your PHI is used or disclosed.
- Request confidential communications, such as using an alternate address or phone number.
- Receive an accounting of disclosures for certain types of disclosures made without your authorization.
- File a complaint with us or the U.S. Department of Health & Human Services if you believe your rights have been violated.
7. Safeguards to Protect Your Information
We implement physical, administrative, and technical safeguards to ensure the confidentiality, integrity, and availability of your information. This includes:
- Secure servers and encrypted data transmission.
- Role-based access control to patient data.
- HIPAA-compliant third-party tools and software.
8. SMS/Text Messaging
You opt in to SMS by checking the SMS consent checkbox when you submit our membership inquiry form on this website; the checkbox is unchecked by default and is not required to submit the form. Once opted in, you may receive messages related to inquiry responses, membership details, program information, appointment details, patient care, and service updates. Message frequency varies. Message and data rates may apply. You may opt out at any time by replying STOP, or reply HELP for assistance. SMS opt-in consent and phone numbers collected for SMS purposes are not shared with any third parties or affiliates for marketing purposes.
9. Third-Party Websites
Our website may contain links to third-party sites. We are not responsible for their content or privacy practices. Please review their privacy policies separately.
10. Changes to This Policy
We may update this policy periodically. Changes will be posted on our website with the effective date updated accordingly.
11. Contact Us
If you have questions about this Privacy Policy or would like to exercise your rights, please contact us at:
Concierge Pediatrics
1520 Old Northern Blvd, Roslyn, NY 11576
Phone: (516) 514-7337
10. Notice of Privacy Practices
We also maintain a separate HIPAA Notice of Privacy Practices that more specifically outlines your rights under HIPAA and our legal duties. You may request a copy at any time by contacting our office.