Privacy Policy
- Home
- Privacy Policy
1. Introduction
This Privacy Policy outlines the practices of Meditechlab Diagnostic Laboratories (“Meditechlab,” “we,” “us,” or “our”) regarding the collection, use, and protection of information. Meditechlab is committed to protecting the privacy and security of the personal and health information we receive and process. This policy applies to information collected through our website, physician portals, and as part of providing our clinical diagnostic testing services.
Our practices are designed to comply with all applicable laws, including the U.S. Health Insurance Portability and Accountability Act (HIPAA), the General Data Protection Regulation (GDPR) where applicable, and other relevant state and federal regulations.
Contact Information:
Company: Meditechlab LLC
Attention: Henderson Collier, Privacy Officer
Address: 1536 Charter Cir Anchorage, Alaska 99508 US
Phone: +1 4843548617Email: privacy@meditechlab.in
2. Information We Collect
We collect information that is essential for providing our diagnostic services and maintaining our business relationship with our clients. This information is categorized as follows:
Client Information: When a healthcare provider, clinic, or hospital (our “Client”) registers for our services, we collect professional information, including:
Names, titles, and credentials of physicians and staff.
Clinic or hospital name, address, and phone number.
Professional email addresses for communication and portal access.
National Provider Identifier (NPI) numbers and state medical license information for verification.
Payment and billing information.
Protected Health Information (PHI): In the course of providing diagnostic services, we receive PHI from our Clients as a Business Associate under HIPAA. This includes, but is not limited to:
Patient demographics (name, date of birth, gender, address).
Patient medical record numbers.
Information on the test requisition form, including clinical history.
Biological specimens for testing.
The resulting diagnostic data and reports.
Website and Portal Usage Data: When you interact with our website or physician portal, we may automatically collect technical information, such as:
IP address, browser type, and operating system.
Usage patterns, page views, and session duration (as detailed in our Cookie Policy).
3. How We Use and Disclose Information
Meditechlab uses and discloses the information we collect only for the purposes for which it was intended: Treatment, Payment, and Healthcare Operations, as permitted by HIPAA.
For Treatment: We use PHI to perform the diagnostic tests ordered by our Clients. We disclose the results (test reports) directly to the ordering physician or other authorized healthcare providers involved in the patient’s care.
For Payment: We use Client and Patient information to bill for our services, either to the Client, the patient, or a third-party payor (e.g., an insurance company).
For Healthcare Operations: We use information for our internal operations, including quality control, assurance programs, laboratory validation studies, compliance audits, and staff training. Anonymized or de-identified data may be used for statistical analysis to improve our services.
As Required by Law: We may be required to disclose PHI to public health authorities for disease reporting, or to law enforcement agencies in response to a court order or subpoena, as mandated by law.
We do not sell, rent, or lease any personal information or PHI to third parties for marketing purposes. Disclosure to our service providers (e.g., billing services, IT support) is governed by formal Business Associate Agreements (BAAs) that require them to protect the information with the same rigor we do.
4. Data Security
We have implemented comprehensive administrative, physical, and technical safeguards to protect all information from unauthorized access, use, or disclosure. These measures include:
Encryption: All electronic PHI is encrypted at rest and in transit.
Access Controls: Role-based access controls ensure that personnel only have access to the minimum information necessary to perform their job functions.
Auditing and Monitoring: Our systems are regularly monitored and audited for security threats and vulnerabilities.
Employee Training: All employees undergo mandatory, recurring training on privacy, security, and HIPAA compliance.
5. Your Rights
Under HIPAA and other regulations, individuals have rights regarding their PHI. Patients wishing to exercise these rights should contact their healthcare provider (our Client) who ordered the testing. These rights include:
The right to access and receive a copy of their health information.
The right to request an amendment to their health information.
The right to an accounting of disclosures.
We will work directly with our Clients to facilitate these requests in a timely manner.
6. Changes to This Policy
We may update this Privacy Policy from time to time. The effective date will be updated accordingly, and we encourage you to review it periodically.