Temple of Herbs is committed to protecting your health information. This notice describes how medical information about you may be used and disclosed and how you can access this information.
Our Legal Duties:
We are required by law to:
- Maintain the privacy of your protected health information (PHI)
- Give you this notice of our legal duties and privacy practices
- Follow the terms of this notice currently in effect
- Notify you if we are unable to agree to a requested restriction
- Accommodate reasonable requests for communication of PHI by alternative means
What is Protected Health Information (PHI)?
PHI includes information about you that could identify you and relates to:
- Your past, present, or future physical or mental health condition
- Health care services provided to you
- Payment for your health care services
Examples of your PHI we collect:
- Personal information (name, address, phone, email, age)
- Health symptoms and concerns you report
- Medical history and family history
- Current medications and supplements
- AI analysis results and recommendations
How We Use and Disclose Your PHI:
For Treatment:
- To provide herbal recommendations
- To analyze your health information using AI
- To track your progress and adjust recommendations
For Payment:
- To process orders and billing
- To verify payment information
- For customer service related to orders
For Health Care Operations:
- To improve our AI analysis system
- For quality assurance and training
- To conduct business operations
Other Permitted Uses:
- As Required by Law: When required by federal, state, or local law
- Public Health Activities: To prevent or control disease, injury, or disability
- Health Oversight: To health agencies for oversight activities
- Legal Proceedings: In response to court orders or subpoenas
- Emergency Situations: To prevent serious threat to health or safety
Uses That Require Your Authorization:
We will obtain your written authorization before using or disclosing your PHI for:
- Marketing purposes
- Sale of PHI
- Psychotherapy notes (if applicable)
- Any other purpose not described in this notice
Your Rights Regarding Your PHI:
Right to Access:
- You have the right to inspect and copy your PHI
- We may charge a reasonable fee for copying costs
- We must respond within 30 days of your request
Right to Amend:
- You may request amendments to your PHI if you believe it's incorrect
- We may deny your request if the information is accurate and complete
- You may submit a written statement of disagreement
Right to Request Restrictions:
- You may request restrictions on how we use or disclose your PHI
- We are not required to agree to restrictions
- If we agree, we must follow the restriction unless information is needed for emergency treatment
Right to Request Confidential Communications:
- You may request that we communicate with you about your PHI in a specific way
- We will accommodate reasonable requests
Right to an Accounting of Disclosures:
- You may request a list of disclosures we made of your PHI
- This includes disclosures for purposes other than treatment, payment, or operations
- Does not include disclosures made with your authorization
Right to Receive a Copy of This Notice:
- You may request a paper copy of this notice at any time
How to Exercise Your Rights:
To exercise any of these rights, contact us at:
Complaints:
If you believe your privacy rights have been violated, you may:
1. File a complaint with us:
2. File a complaint with the U.S. Department of Health and Human Services:
You will not be penalized or retaliated against for filing a complaint.
Security Measures:
We implement appropriate physical, technical, and administrative safeguards to protect your PHI:
- Encrypted data transmission and storage
- Access controls and user authentication
- Regular security assessments
- Employee training on privacy practices
- Secure disposal of PHI when no longer needed
Data Retention:
We retain your PHI for:
- Minimum of 7 years as required by law
- Longer if required for ongoing treatment or legal purposes
- You may request earlier deletion in some circumstances
Changes to This Notice:
We reserve the right to change this notice and make the new provisions effective for all PHI we maintain.
If we make material changes:
- We will post the revised notice on our website
- We will provide you with a copy upon request
- The effective date will be noted at the top of the notice
Business Associates:
We may disclose your PHI to business associates who perform services for us (e.g., payment processors, IT support). These associates are required by contract to protect your PHI.