Legal

Privacy

ScribeCo is built to handle protected health information responsibly. This summary describes, in plain terms, how data moves through the platform.

What we process

ScribeCo processes the audio, transcripts, and clinical notes a practice captures through the platform, along with the account information of the clinicians and staff who use it. Patient information is processed on behalf of the practice as a business associate.

How data is protected

Data is encrypted in transit and at rest. Recordings, transcripts, and notes are access-controlled, and every view, edit, and signature is written to a tamper-evident audit trail.

Business Associate Agreement

A Business Associate Agreement is available for every customer. Protected health information is used only to provide the service and is never sold.

Messaging (SMS)

When a practice uses ScribeCo to send text messages (such as appointment reminders), mobile numbers and message content are processed solely to deliver those messages on the practice's behalf. We do not sell this information, and mobile opt-in information and consent are never shared with third parties or affiliates for marketing or promotional purposes. Recipients can reply STOP to opt out or HELP for assistance at any time. Message frequency varies; message and data rates may apply.

Your controls

Practices control retention, export, and deletion of their data. Contact your administrator to exercise these controls or to request a copy of the current policy.

Privacy — ScribeCo · ScribeCo