Legal & Compliance

HIPAA Notice of Privacy Practices

Effective Date: [Client to Confirm] | Revive Medical Solutions

Required Notice

This notice describes how medical information about you may be used and disclosed and how you can get access to this information. Please review it carefully.

Our Commitment to Your Privacy

Revive Medical Solutions (RMS) is a healthcare technology company providing patient record aggregation, HIPAA-compliant web hosting, and custom portal development for healthcare organizations and medical distributors. As part of delivering these services, RMS handles protected health information (PHI) on behalf of our clients and the individuals they serve.

This HIPAA Notice of Privacy Practices describes our legal duties and healthcare privacy practices with respect to PHI. RMS is required by law to maintain the privacy and security of your health information, to provide this notice, and to abide by its current terms. We will notify you of any material changes to our privacy practices as required by law. This notice also applies to our Privacy Policy, which covers our broader data handling practices.

How We May Use and Disclose Your Health Information

RMS uses and discloses PHI only as permitted or required by law. The following categories describe the ways we may use or disclose health information without your written authorization.

For Treatment

RMS may use or disclose PHI to support the coordination and continuity of clinical care. Our patient record aggregation services are designed to help care teams access accurate patient information across provider organizations — enabling the kind of informed, coordinated treatment that leads to better patient outcomes. This means PHI may be shared with treating providers, specialists, and other members of a patient's care team as necessary to support treatment.

For Payment

PHI may be used or disclosed to support billing, claims processing, and reimbursement activities within RMS technology platforms. For example, information about services provided to a patient may be shared with their health plan or payer to obtain payment for those services.

For Healthcare Operations

RMS may use PHI for internal quality assurance, compliance monitoring, staff training, and operational improvement activities related to our healthcare technology services. These uses are limited to what is necessary to maintain the integrity and quality of our platforms and services.

As Required by Law

RMS will disclose PHI when required to do so by applicable federal, state, or local law. We will make legally compelled disclosures only to the extent required and consistent with applicable legal standards.

Public Health Activities

RMS may disclose PHI to public health authorities authorized to receive such information for purposes including disease surveillance, reporting of adverse events, and other public health activities as permitted or required by law.

Health Oversight Activities

PHI may be disclosed to the U.S. Department of Health and Human Services (HHS), state health agencies, or other authorized oversight bodies for audits, inspections, investigations, licensure activities, and other oversight functions as permitted by law.

Business Associates

RMS may share PHI with third-party business associates who perform services on our behalf — such as technology infrastructure providers, data processors, or support vendors. All business associates are required by contract to protect PHI in a manner consistent with HIPAA requirements, through executed Business Associate Agreements (BAAs). [Client note: Confirm BAA practices with Erin and Chance before legal review.]

Other Legally Permitted Disclosures

HIPAA permits disclosure of PHI in additional, specifically defined circumstances — including judicial and administrative proceedings, law enforcement purposes, and specialized government functions such as national security activities. RMS makes such disclosures only when legally required or permitted and only to the extent necessary.

Uses Requiring Your Written Authorization

All uses and disclosures of PHI not described in this notice require your prior written authorization. This includes the use of PHI for marketing purposes, the sale of PHI, and disclosures of psychotherapy notes. You may revoke any authorization you have provided to RMS in writing at any time. Revocation does not affect actions RMS has already taken in reliance on your authorization before it was revoked.

Your Rights Regarding Your Health Information

You have specific, enforceable rights under HIPAA with respect to your health information. RMS is committed to honoring each of these rights. To exercise any of the rights described below, please contact our Privacy Officer using the information provided at the end of this notice.

Right to Access Your Information

You have the right to inspect and receive a copy of PHI that RMS holds about you in its designated record set. To submit an access request, contact our Privacy Officer in writing. RMS will respond within the timeframe required by law. A reasonable, cost-based fee may apply for copies.

Right to Request Amendment

You have the right to request that RMS correct or amend PHI that you believe is inaccurate or incomplete. Submit your request in writing to our Privacy Officer, including the reason you are requesting the amendment. RMS may deny your request under certain legally defined circumstances; if so, we will provide the denial in writing, along with your right to submit a statement of disagreement.

Right to an Accounting of Disclosures

You have the right to request a written accounting of certain disclosures RMS has made of your PHI during the six years prior to your request date. This accounting does not include disclosures made for treatment, payment, or healthcare operations, disclosures made directly to you, or certain other categories excluded under HIPAA. Contact our Privacy Officer to submit this request.

Right to Request Restrictions

You have the right to request that RMS limit how it uses or discloses your PHI for treatment, payment, or healthcare operations purposes. RMS is not always required to agree to a requested restriction. However, if you have paid out-of-pocket in full for a specific service and request that RMS not disclose information about that service to your health plan, RMS is required by law to honor that restriction.

Right to Confidential Communications

You have the right to request that RMS communicate with you about your health information through alternative means or at an alternative location — for example, by mail rather than email, or to a different address. RMS will accommodate reasonable requests without requiring you to explain your reason.

Right to a Paper Copy of This Notice

You have the right to receive a paper copy of this HIPAA Notice of Privacy Practices at any time upon request, even if you previously agreed to receive it electronically. Contact our Privacy Officer to request a paper copy.

Right to Be Notified of a Breach

You have the right to receive timely notification if a breach of your unsecured PHI occurs. If RMS determines that a breach has affected your information, we will notify you in accordance with the HIPAA Breach Notification Rule, including the nature of the breach, the information involved, and steps you can take to protect yourself.

Our Legal Duties

RMS is required by law to maintain the privacy and security of your protected health information. We are required to provide this notice of our privacy practices and to abide by its terms for as long as it is in effect.

RMS reserves the right to change its privacy practices and to apply any revised practices to all PHI already on file. If our practices change, the updated notice will be posted to this page — revivemedical.com/hipaa-notice — with a new effective date. This URL is where the current, authoritative version of this notice will always be found. We will notify affected individuals of material changes as required by law.

If you have questions about this notice or how RMS handles your health information, please contact our Privacy Officer using the information in the section below.

How to File a Complaint

If you believe your HIPAA privacy rights have been violated, you have the right to file a complaint — with RMS directly, or with the U.S. Department of Health and Human Services Office for Civil Rights (OCR).

To file a complaint with RMS: Contact our Privacy Officer directly using the information provided in the next section. We take all privacy concerns seriously and will respond promptly.

To file a complaint with HHS OCR:
Website: hhs.gov/ocr/privacy
Phone: 1-800-368-1019

RMS will not retaliate against any individual for filing a complaint. We mean that plainly and without qualification. Raising a concern about privacy is your right, and we will never penalize you for exercising it.

We genuinely prefer to hear from you directly first. Most concerns can be resolved quickly when we can have a straightforward conversation about what happened and what you need.

Contact Our Privacy Officer

For questions about this notice, to exercise any of your rights described above, or to file a complaint with RMS directly, please contact our Privacy Officer:

  • Name: [Privacy Officer Name — Client to Confirm]
  • Title: Privacy Officer, Revive Medical Solutions
  • Address: [Full Mailing Address — Milwaukee, WI — Client to Provide]
  • Email: privacy@revivemedical.com [Client to Confirm]
  • Phone: [Privacy Inquiry Phone Number — Client to Confirm]

For any questions about this notice or your rights under HIPAA, we're here to help. Don't hesitate to reach out.

Supplementary Context — Not Part of the Official Legal Disclosure

HIPAA Compliance in Everything We Build

This notice is one visible, verifiable expression of a compliance posture that runs through every service RMS provides. HIPAA compliance is not a policy document we filed once and forgot — it is a foundational principle built into every portal, hosting environment, and patient record system we develop and maintain on behalf of our clients. With 10+ years of healthcare technology experience, RMS's compliance expertise is genuine — not a vendor claim to take on faith. When you partner with RMS, you're working with a team that has navigated HIPAA requirements across complex healthcare environments and built its technology infrastructure accordingly from the ground up.

Explore Our Technology Services
Healthcare IT professional reviewing secure data dashboards in a professional network operations environment.

Questions About Your Data? We're Here.

Reach out to our Privacy Officer directly — or explore how RMS builds HIPAA compliance into every technology service we offer.