Who we are
Our website address is: https://thecureclaim.com.
Privacy Policy for The Cure Claim
Effective Date: November 4, 2025
Introduction
The Cure Claim is committed to protecting the privacy and confidentiality of our clients and their patients. This Privacy Policy outlines how we collect, use, disclose, and safeguard information in connection with our medical billing services. By engaging our services, you consent to the data practices described in this policy.
Scope of This Policy
This Privacy Policy applies to information collected through our website, during office visits, at events, through SMS communications, and through any other interaction where this policy is made available. We process protected health information (PHI) on behalf of healthcare providers in accordance with the Health Insurance Portability and Accountability Act (HIPAA) and applicable Business Associate Agreements.
SMS Privacy Policy
SMS Privacy Policy Disclaimer: “SMS opt-in or phone numbers for the purpose of SMS are not being shared with any third party and affiliate company for marketing purposes.”
SMS Opt-In and Consent
By providing your mobile phone number and opting into our SMS messaging service, you expressly consent to receive text messages from The Cure Claim. These messages may include appointment reminders, billing notifications, claim status updates, service alerts, and other work-related communications necessary for providing our medical billing services.
How You Opt-In: You can opt into SMS communications through:
-
Web forms on our website with opt-in checkboxes
-
Written consent forms during onboarding
-
Reply confirmation to an initial SMS message
-
Sign-up forms at our office or events
Standard Messaging Rates: Standard message and data rates may apply based on your carrier’s plan.
SMS Opt-Out Instructions
You have the right to opt out of SMS communications at any time. To unsubscribe from our SMS list:
-
Reply STOP to any SMS message from us
-
Contact us directly via email or phone with your opt-out request
-
We will process your opt-out request within 24 hours and discontinue all SMS communications to your number
After opting out, you will receive one final confirmation message acknowledging your request.
Types of Personal Information Collected
We collect the following categories of personal information from consumers:
Contact Information:
-
Full legal names
-
Email addresses
-
Mobile phone numbers and landline numbers
-
Mailing addresses (residential and business)
-
Emergency contact details
Protected Health Information (PHI):
-
Patient names and demographic information
-
Dates of birth and Social Security Numbers (when required)
-
Insurance policy numbers and subscriber information
-
Medical record numbers and account identifiers
-
Diagnosis codes, procedure codes, and treatment information
-
Healthcare provider information and facility details
-
Billing information including amounts owed and payment history
Website and Digital Data:
-
IP addresses and device identifiers
-
Browser type, version, and operating system
-
Pages visited, time spent on pages, and navigation paths
-
Referring/exit pages and URLs
-
Click-stream data and browsing history on our website
-
Cookies and similar tracking technologies
-
Date and time stamps of website visits
SMS Communication Data:
-
Mobile phone numbers enrolled in SMS services
-
SMS opt-in and opt-out timestamps
-
Message delivery status and timestamps
-
SMS conversation logs and message content (for compliance and auditing purposes)
Transaction and Payment Information:
-
Credit card numbers and payment method details (processed through secure third-party payment processors)
-
Bank account information for ACH transactions
-
Billing addresses and invoicing details
-
Payment history and transaction records
Authentication and Security Data:
-
Login credentials and user IDs
-
Security questions and answers
-
Multi-factor authentication details
-
Access logs and audit trails
Utilization of Collected Information
We use the collected personal information for the following specific purposes:
Primary Service Delivery
Medical Billing Operations: We process PHI and personal information to submit insurance claims, verify patient eligibility, obtain prior authorizations, appeal denied claims, and manage the complete revenue cycle on behalf of healthcare providers.
Client Communication: We use contact information to communicate with healthcare providers about billing matters, claim status updates, account reconciliations, payment postings, and service-related inquiries via phone, email, and SMS.
Patient Communication (on behalf of providers): When authorized, we may contact patients via SMS or email regarding billing statements, payment arrangements, insurance verification, outstanding balances, and appointment-related billing questions.
Operational Purposes
Service Improvement: We analyze website usage data and user feedback to enhance our billing platform, improve service efficiency, identify system errors, and optimize user experience.
Account Management: We use personal information to create and maintain client accounts, authenticate users, process payments, manage subscriptions, and provide customer support.
Security and Fraud Prevention: We monitor access logs, authentication attempts, and transaction patterns to detect unauthorized access, prevent fraud, protect against security threats, and maintain data integrity.
SMS-Specific Usage
Work-Related SMS Only:
We use mobile phone numbers exclusively for work-related purposes including:
-
Appointment reminders and confirmations
-
Billing notifications and payment due dates
-
Claim status updates and insurance verification alerts
-
Service announcements and system maintenance notifications
-
Secure communication for time-sensitive billing matters
No Marketing Messages: We do not use SMS for promotional campaigns, marketing offers, or unsolicited advertisements.
Compliance and Legal Obligations
Regulatory Compliance: We use information to comply with HIPAA regulations, maintain Business Associate Agreement requirements, fulfill legal reporting obligations, respond to government inquiries, and meet audit requirements.
Record Keeping: We maintain accurate records of all communications, transactions, claim submissions, and patient interactions as required by healthcare regulations and retention laws.
Practices for Sharing Information
No Sale or Marketing Sharing
Absolute Non-Sharing for Marketing: We do not sell, rent, lease, or trade your personal information or PHI to any third parties for marketing purposes. Your SMS opt-in information and phone numbers are never shared with third-party affiliates or marketing companies.
Operational Data Sharing
We may share personal information under the following strictly limited circumstances:
SMS Service Providers:
We share mobile phone numbers with our HIPAA-compliant SMS service provider solely to enable secure message delivery. This provider is bound by strict confidentiality agreements and Business Associate Agreements that prohibit any use of data beyond facilitating our messaging services.
Technology and Infrastructure Partners:
We share limited data with the following service providers who assist in delivering our services:
-
Secure cloud hosting providers for data storage
-
Payment processors for handling transactions (they never receive PHI)
-
Email service providers for secure communication
-
IT security vendors for encryption and threat monitoring
-
Software vendors for billing platform functionality
All vendors are carefully vetted, HIPAA-compliant (where applicable), bound by confidentiality agreements, and contractually prohibited from using data for any purpose other than providing services to us.
Healthcare Providers and Payers: We share PHI with insurance companies, government payers (Medicare/Medicaid), and clearinghouses solely for the purpose of claim submission, payment processing, and coordination of benefits as required for medical billing operations.
Legal Requirements: We may disclose personal information when required by law, including:
-
In response to valid court orders, subpoenas, or legal processes
-
To comply with government investigations or regulatory requests
-
When necessary to protect our legal rights or defend against litigation
-
To prevent imminent harm or protect public safety
-
As mandated by HIPAA reporting requirements
With Your Explicit Consent
Beyond the operational sharing described above, we will only share your personal information with third parties when we have obtained your explicit written consent.
Data Security Measures
Encryption: All data, including emails, SMS communications, and stored information, is encrypted both in transit (using TLS/SSL protocols) and at rest using industry-standard AES-256 encryption.
Access Controls: PHI and personal information are accessible only to authorized personnel who require access to perform their job duties. We implement multi-factor authentication, role-based access controls, unique user IDs, and automatic session timeouts.
Secure Storage: We use restricted access controls, secure server environments, and HIPAA-compliant data centers to protect your information from unauthorized access, misuse, alteration, or destruction.
Security Audits and Training: We conduct regular security audits, vulnerability assessments, and penetration testing. All staff members receive annual HIPAA compliance training and data protection education.
Data Retention and Deletion
Retention Period: We retain personal information and PHI only as long as legally required for billing purposes, typically 7 years in accordance with healthcare regulations and HIPAA requirements. SMS message logs and opt-in/opt-out records are retained as required by TCPA and HIPAA compliance.
Secure Deletion: When the retention period expires or when a client relationship ends, all information is securely archived or destroyed through secure deletion methods, data wiping protocols, or physical destruction of storage media.
User-Requested Deletion: You may request deletion of your personal information at any time, subject to legal retention requirements and regulatory obligations. Contact us to submit a deletion request.
Your Privacy Rights
You have the right to:
-
Access your personal information we hold
-
Request correction of inaccurate information
-
Request deletion of your information, subject to legal retention requirements
-
Opt out of SMS communications by replying STOP
-
Opt out of email communications via unsubscribe links
-
File a complaint with the U.S. Department of Health and Human Services if you believe your HIPAA rights have been violated
-
Receive a copy of this Privacy Policy upon request
Cookies and Website Technology
Our website uses cookies to enhance user experience, remember preferences, and collect usage statistics. Cookies are small data files stored on your device that may include an anonymous unique identifier. You can adjust your browser settings to refuse cookies, but this may affect website functionality and prevent access to certain features.
Third-Party Websites
This Privacy Policy does not apply to third-party websites that we may link to. We are not responsible for the privacy practices of external websites and encourage you to review their privacy policies independently before providing any personal information.
Children’s Privacy
Our services are not directed to individuals under the age of 18, and we do not knowingly collect personal information from minors without parental or guardian consent.
Changes to This Privacy Policy
We reserve the right to update this Privacy Policy at any time to reflect changes in our practices, technology, or legal requirements. The effective date at the top of this policy indicates when it was last revised. We encourage you to review this policy regularly for any updates. Material changes will be communicated via email or SMS to active clients.
Contact Information
If you have questions or concerns about this Privacy Policy, our privacy practices, or wish to exercise your privacy rights, please contact us at:
The Cure Claim
Email: info@thecureclaim.com
Phone: +1 (571) 382-6572
Address: Don Valley, Toronto, CA
For SMS-specific inquiries or to opt out via alternative methods, you may also contact our SMS support team at the above contact details.
Commitment to Privacy
At The Cure Claim, protecting your privacy and maintaining the confidentiality of sensitive health information is our highest priority. We are committed to transparency, security, and full compliance with HIPAA, TCPA, CTIA guidelines, and all applicable privacy laws and regulations. Your trust is essential to our business, and we take every measure to safeguard your information.