Cherry Medical Solutions (“Company,” “we,” “our,” or “us”) respects the privacy of our clients, their patients, and visitors to our website. This Privacy Policy explains how we collect, use, disclose, and protect personal information obtained through our medical billing and revenue cycle management services, as well as our website and related communications. Because we work in the healthcare sector, we are committed to complying with applicable privacy laws, including the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”), state privacy regulations, and industry best practices.
By using our services or visiting our website, you agree to the terms of this Privacy Policy.
This Privacy Policy applies to:
This policy does not supersede any Business Associate Agreements (BAAs) we may sign with healthcare providers under HIPAA. In the event of a conflict, the BAA controls.
We may collect the following types of information:
As a Business Associate under HIPAA, we may receive or create Protected Health Information (“PHI”) on behalf of our clients. Examples include:
We only collect the minimum necessary PHI required to perform our billing and revenue cycle services.
When you visit our website, we may automatically collect:
We use this information for website analytics, security, and user experience improvements.
We use the collected information for the following purposes:
We do not sell, rent, or trade personal or health information to third parties.
While we primarily operate in the United States, international visitors may be subject to other privacy regimes such as the EU/UK GDPR. Where applicable, we rely on the following legal bases:
We may disclose personal information in the following limited circumstances:
We share information only with the healthcare providers or authorized personnel who engaged our services.
We may use trusted third-party vendors (e.g., secure data hosting, clearinghouses, payment processors). These vendors are contractually required to protect PHI and personal data.
We may disclose information if required by law, regulation, court order, or governmental request.
If our business undergoes a merger, acquisition, or sale, personal data may be transferred as part of that transaction, but it will remain protected under this policy.
We take extensive measures to safeguard personal and health information, including:
While no system is completely secure, we continually monitor and improve our security measures.
We retain personal and health information only as long as necessary to fulfill the purposes described in this policy or as required by law or contract. After retention periods expire, data is securely deleted or de-identified.
Because we act as a Business Associate to healthcare providers, requests to exercise HIPAA rights (such as access, amendment, or restriction of PHI) should generally be directed to the healthcare provider. However, we will assist providers in fulfilling such requests as required under HIPAA.
If you reside in a jurisdiction that grants you specific privacy rights—such as the California Consumer Privacy Act (CCPA) or GDPR—you may have rights to:
To exercise these rights, contact us at the information provided below. We will respond in accordance with applicable law.
Our website may use cookies or similar technologies to:
You can control or disable cookies through your browser settings. Please note that disabling cookies may affect website functionality.
If you provide us with your email address, we may use it to send:
You can opt out of non-essential communications at any time by following the unsubscribe link in the email or contacting us directly.
Our services are directed to healthcare providers and adult patients. We do not knowingly collect personal information from children under 13 without parental or guardian consent, except as permitted under HIPAA through our provider clients.
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of those websites. We encourage users to review the privacy policies of any third-party sites they visit.
If you are accessing our website from outside the United States, note that your information may be transferred to, stored, and processed in the U.S., where data protection laws may differ from those in your country. By using our services, you consent to such transfers.
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or industry standards. The “Effective Date” at the top indicates when the policy was last revised. Significant changes will be communicated through our website or directly to clients where required.
If you have any questions, concerns, or complaints about this Privacy Policy or our data practices, please contact us at:
Cherry Medical Solutions
Phone: 1-888-731-7615
Email: support@cherrymedicalsolutions.com
Address:13325 Wolf Rd, Grass Valley, CA 95949, USA
We will respond promptly and work to resolve your concerns in accordance with applicable laws.
By using our services, providing us with personal or health information, or accessing our website, you acknowledge that you have read and understood this Privacy Policy and agree to its terms. If you do not agree, please refrain from using our services.
Cherry Medical Solutions remains committed to protecting the confidentiality, integrity, and availability of the information entrusted to us. Our privacy practices are a core part of our mission to simplify medical billing, maximize revenue, and maintain trust with providers and patients alike.