Last updated: November 11, 2025
Psync Health ("we," "our," or "us") is committed to protecting the privacy and security of your health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mental health practice management platform.
As a healthcare technology platform, we comply with the Health Insurance Portability and Accountability Act (HIPAA) and implement industry-leading security practices to protect your Protected Health Information (PHI).
Psync Health complies with the Health Insurance Portability and Accountability Act (HIPAA) Privacy and Security Rules. We maintain appropriate administrative, physical, and technical safeguards to protect the confidentiality, integrity, and availability of your PHI.
Business Associate Agreements
We have signed Business Associate Agreements (BAAs) with all third-party service providers who may access or process PHI, including:
These agreements ensure that all vendors handling PHI maintain HIPAA-compliant security standards and protect your information with the same level of care that we do.
Protected Health Information (PHI)
Account and Billing Information
Technical Information
How We Use AI
Psync Health uses advanced AI technology to assist therapists with clinical documentation, session analysis, and therapeutic insights. Our AI features are designed to augment—not replace— the clinical judgment of licensed mental health professionals.
AI Capabilities
AI Data Protection
Accuracy and Limitations
While our AI technology provides valuable assistance, it is not a substitute for professional clinical judgment. Therapists maintain full responsibility for all clinical decisions, diagnoses, and treatment plans. AI-generated insights are provided as tools to support—not replace— licensed mental health professionals.
We implement comprehensive security measures to protect your health information from unauthorized access, disclosure, alteration, or destruction.
Technical Safeguards
Administrative Safeguards
Physical Safeguards
Consent Requirements
We never record therapy sessions without explicit, informed consent from all participants. Before any recording begins, patients must:
Storage and Retention
Audio recordings containing PHI are:
Deletion and Disposal
When audio recordings are deleted (either by user request or at the end of the retention period), we ensure secure destruction using certified data deletion methods that prevent recovery of the data.
Under HIPAA, you have the following rights regarding your Protected Health Information:
Right to Access
You have the right to view, download, or request copies of your health records. We will provide access within 30 days of your request.
Right to Amendment
You have the right to request corrections to inaccurate or incomplete health information. We will respond to amendment requests within 60 days.
Right to Accounting of Disclosures
You have the right to receive a list of certain disclosures of your PHI that we have made.
Right to Request Restrictions
You have the right to request restrictions on certain uses and disclosures of your PHI. While we are not required to agree to all restrictions, we will accommodate reasonable requests.
Right to Confidential Communications
You have the right to request that we communicate with you about your health information through alternative means or at alternative locations.
Right to Request Deletion
Subject to legal retention requirements, you may request deletion of your account and associated data. We will securely delete your information in accordance with our data retention policies and applicable laws.
Right to File a Complaint
If you believe your privacy rights have been violated, you have the right to file a complaint with us or with the U.S. Department of Health and Human Services Office for Civil Rights. You will not be retaliated against for filing a complaint.
We share PHI only as permitted or required by HIPAA regulations:
Permitted Disclosures
Required Disclosures
We Do NOT Share PHI With
In the unlikely event of a data breach affecting your PHI, we will:
We maintain comprehensive incident response procedures and conduct regular security drills to ensure rapid, effective response to any potential security incidents.
We retain PHI in accordance with applicable federal and state regulations:
After the retention period expires, or upon valid deletion request (subject to legal requirements), we securely destroy all PHI using certified deletion methods that prevent data recovery.
For questions about this Privacy Policy, to exercise your privacy rights, or to report privacy concerns, please contact:
Psync Health Privacy Officer
Email: privacy@psynchealth.com
File a Complaint with HHS
If you believe your privacy rights have been violated, you may file a complaint with:
U.S. Department of Health and Human Services
Office for Civil Rights
Phone: 1-800-368-1019
Website: hhs.gov/ocr/privacy
Updates to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by posting the updated policy on our website and updating the "Last Updated" date. Your continued use of our services after such changes constitutes acceptance of the updated policy.