Privacy Policy

Effective Date: April 13, 2026

E&Y Medical Clinic (“we,” “our,” or “us”) is committed to protecting your privacy and safeguarding your medical information. This Privacy Policy explains how we collect, use, disclose, and protect your information when you visit our website https://eyrehabclinic.com/, use our services, or engage with us.

1. Scope and Consent

This Policy applies to information collected through our website, mobile applications, and other digital or offline channels (such as phone, in-person visits, or email).

Important: This Privacy Policy applies to general data practices. Your medical information (Protected Health Information or “PHI”) is also governed by our Notice of Privacy Practices (NPP), as required by the Health Insurance Portability and Accountability Act (HIPAA).

By using our services, you consent to the collection and use of your information as described in this Policy.

2. Information We Collect

We collect both Personal Data and Protected Health Information (PHI) where applicable.

A. Information You Provide

  • Name, email address, phone number, and physical address
  • Insurance details and billing/payment information
  • Health-related information provided during appointments, forms, or communications

B. Browser and Device Data

  • IP address
  • Browser type and operating system
  • Pages visited and usage behavior

C. Cookies and Tracking

We use cookies to improve website functionality and user experience. Cookies do not store medical records or PHI. You may disable cookies through your browser settings.

3. How We Use Your Information

A. General Use

We use your information to:

  • Provide and manage healthcare services
  • Process payments and insurance claims
  • Communicate with you regarding appointments and services
  • Improve our website and operations
  • Prevent fraud and ensure security

B. Use of Protected Health Information (PHI)

We use and disclose PHI in accordance with HIPAA regulations, including for:

  • Treatment: Providing and coordinating your care
  • Payment: Billing and insurance processing
  • Healthcare Operations: Quality improvement, compliance, and administrative activities

We may also use PHI when required by law or for public health and safety purposes.

4. HIPAA Compliance and Patient Rights

We comply with the Health Insurance Portability and Accountability Act (HIPAA) and applicable state laws.

You have the right to:

  • Access and obtain a copy of your medical records
  • Request corrections to your records
  • Request restrictions on certain uses or disclosures
  • Receive a record of disclosures of your PHI
  • Request confidential communications
  • File a complaint if you believe your privacy rights have been violated

For full details, please refer to our Notice of Privacy Practices (NPP).

5. SMS and Text Messaging

Your consent to receive SMS messages is strictly for communication with E&Y Medical Clinic.

  • No Third-Party Sharing: SMS consent and phone numbers are not shared for third-party marketing
  • HIPAA Consideration: SMS messaging may not be fully secure. Avoid sharing sensitive medical information via text unless explicitly advised
  • Opt-Out: Reply STOP to unsubscribe; HELP for assistance
  • Costs: Message and data rates may apply

6. Sharing Your Information

A. Service Providers (Business Associates)

We may share information with third-party service providers who assist in operations such as billing, data storage, or IT services. These providers are required to comply with HIPAA and sign Business Associate Agreements (BAAs) where applicable.

B. Legal Requirements

We may disclose information:

  • When required by law
  • For public health reporting
  • To prevent serious threats to health or safety

C. Business Transfers

In the event of a merger or acquisition, your information may be transferred in accordance with applicable privacy laws.

7. Data Security and Retention

We implement administrative, technical, and physical safeguards to protect your Personal Data and PHI, including:

  • Secure data storage systems
  • Access controls and authentication protocols
  • Encryption where appropriate

We retain information only as long as necessary to comply with legal, medical, and operational requirements.

8. Your Rights and Choices

Depending on applicable laws, you may:

  • Access, update, or delete your personal data
  • Opt out of marketing communications
  • Limit certain data uses

Note: Rights related to medical records are governed by HIPAA and detailed in our Notice of Privacy Practices.

9. Children’s Privacy

Our services are not intended for children under 13 without parental or guardian consent. We comply with applicable laws regarding minors’ medical information.

10. Changes to This Policy

We may update this Policy at any time. Updates will be posted on this page with a revised Effective Date.

11. Contact Us

If you have questions about this Policy or your privacy rights, please contact us: