How DiRevNexus Technologies LLC collects, uses, and protects information — including Protected Health Information (PHI) — across our medical billing, revenue cycle management, and digital services.
DiRevNexus Technologies LLC ("DiRevNexus," "we," "us," or "our") provides medical billing, revenue cycle management (RCM), and digital services (website development, app development, and SEO) to healthcare practices across the United States. This Privacy Policy explains what information we collect, how we use it, and the choices you have — whether you're a client, a website visitor, or a patient whose data we process on behalf of a client practice.
This policy applies to information collected through our website, our client portals and dashboards, and in the course of delivering medical billing and digital services to our clients. By using our website or engaging our services, you acknowledge the practices described in this policy.
Where DiRevNexus processes Protected Health Information (PHI) on behalf of a healthcare provider client, we act as a Business Associate under HIPAA, and a signed Business Associate Agreement (BAA) governs that specific relationship — see Section 4 below.
We collect information in a few different ways, depending on how you interact with us:
When a client engages our RCM services, we may process patient demographic, insurance, and claims data strictly on their behalf, under the terms of a signed BAA and applicable HIPAA regulations.
We use the information we collect to:
DiRevNexus takes its obligations under the Health Insurance Portability and Accountability Act (HIPAA) seriously. When we act as a Business Associate for a healthcare provider client:
Our website uses cookies and similar technologies to remember preferences, understand site usage, and improve performance. These generally fall into the following categories:
Most browsers let you control cookies through their settings. Disabling cookies may affect some site functionality, including forms and client portal access.
We do not sell personal information or PHI. We may share information with:
We maintain administrative, technical, and physical safeguards designed to protect information against unauthorized access, alteration, disclosure, or destruction, including:
No system is completely secure, and we cannot guarantee absolute security. If we become aware of a security incident affecting your information, we will notify affected parties as required by applicable law.
We retain information for as long as necessary to provide our services, comply with legal and regulatory obligations (including HIPAA recordkeeping requirements), resolve disputes, and enforce our agreements. Retention periods for PHI processed on behalf of clients are governed by the applicable BAA and the client's own retention policies.
Depending on your relationship with us and your location, you may have the right to:
To exercise any of these rights, please contact us. Patients seeking access to their health records should contact their healthcare provider directly.
Our website and services are directed at healthcare businesses and professionals, not children. We do not knowingly collect personal information directly from children under 13. Any patient information we process on behalf of a client, including that of minors, is handled solely under the client's instruction and applicable law.
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. Material changes will be reflected by an updated "Last Updated" date at the top of this page. We encourage you to review this policy periodically.
If you have questions about this Privacy Policy or how we handle information, reach out to our team:
Our team can walk you through how your data is handled, start to finish.