How Caryfy, LLC collects, uses, discloses, and protects information in connection with the CareBravo™ platform and related services.
This Privacy Policy explains how Caryfy collects, uses, discloses, and protects information in connection with the CareBravo™ platform and related services (the "Services").
By accessing or using the Services, you acknowledge that you have read and understand this Policy. This Policy is incorporated into and forms part of the CareBravo™ Terms of Use.
This Policy applies to:
This Policy does not apply to third-party products or services linked through the platform.
When our Customers use the Product, we collect and process Protected Health Information ("PHI") on their behalf, including names, contact information, dates, medical record identifiers, health insurance information, clinical data, and other information related to an individual's healthcare.
We collect information about how the Product is accessed and used, including IP addresses, device information, browser type, and usage patterns.
We collect Customer account details, billing addresses, payment information, and transaction history. Caryfy does not sell Personal Data and does not use PHI for marketing.
Depending on the jurisdiction and data type, Caryfy acts as:
Customers act as the HIPAA Covered Entity / GDPR Controller and remain responsible for obtaining all necessary notices and consents.
We use data to deliver, maintain, and enhance the Product and its features.
We may de-identify and aggregate Customer Data in accordance with HIPAA standards to improve our services, develop new features, train AI and machine learning models, and conduct analytics. De-identified data cannot be used to identify specific individuals.
We use data to comply with applicable laws, regulations, and legal processes.
We use data to maintain the security of the Product and prevent fraud or misuse.
We may disclose information:
Caryfy never discloses PHI for marketing or other uses prohibited by HIPAA.
Caryfy implements administrative, technical, and physical safeguards meeting 45 C.F.R. §§ 164.308–312 and industry standards.
Breach Notification: Caryfy will notify affected Customers within 60 days of discovery of any Breach of Unsecured PHI, or within such shorter period as required by applicable state law, including details required by 45 C.F.R. § 164.410(c).
If Customer is a Covered Entity or Business Associate, Caryfy's creation, receipt, maintenance, or transmission of PHI is governed by the Business Associate Agreement (BAA) attached as Exhibit A to the CareBravo™ Terms of Use.
In any conflict between this Policy, the Terms, and the BAA, the BAA controls with respect to PHI.
Depending on jurisdiction, you may have the right to:
To submit requests, contact us at privacy@carebravo.com. We verify identity before fulfilling requests.
Data may be stored or processed in the United States or other jurisdictions where Caryfy or its affiliates operate. When transferring Personal Data from the EU, we rely on Standard Contractual Clauses or other lawful transfer mechanisms.
The Services are not directed to children under 13 and should not be used for pediatric data entry except by authorized healthcare providers under a HIPAA-covered relationship.
We may revise this Policy from time to time. Material changes will be posted with a new "Effective Date." Continued use of the Services after notice constitutes acceptance.
Caryfy, LLC
Attn: Privacy Officer
Email: support@caryfy.ai
Address: One Midtown Plaza, 1360 Peachtree Street NE, Suite 800, Atlanta, Georgia 30309 USA
A 30-minute walkthrough tailored to your agency size and payer mix. No pitch deck — just what the system does and what the numbers look like for an agency like yours.