Privacy Policy

Effective Date: September 2025
Last Updated: September 2025

1. Introduction

MedRecords AI ("we," "our," or "us") respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website expressmedrecords.com and use our services.

By using our website and submitting your information through our forms, you consent to the practices described in this Privacy Policy.

2. Information We Collect

Information You Provide:

  • Full name
  • Email address
  • Phone number
  • Law firm name
  • Monthly case volume
  • Service needs and preferences
  • Any other information you provide in forms or communications

Information Collected Automatically:

  • IP address
  • Browser type and version
  • Device information
  • Pages visited and time spent
  • Referring website
  • UTM parameters and campaign tracking data
  • Cookies and similar tracking technologies

3. Tracking Technologies

We use the following tracking technologies to improve your experience and measure our marketing effectiveness:

Third-Party Analytics and Advertising:

  • Google Ads: For conversion tracking and remarketing
  • Meta Pixel (Facebook/Instagram): For ad optimization and remarketing
  • LinkedIn Insight Tag: For professional audience insights and remarketing

These services may collect information about your online activities over time and across different websites. You can opt-out of targeted advertising through:

4. How We Use Your Information

We use the collected information for the following purposes:

  • Respond to your inquiries and demo requests
  • Provide information about our medical records retrieval services
  • Send marketing communications (with your consent)
  • Improve our website and services
  • Analyze website traffic and user behavior
  • Measure advertising campaign effectiveness
  • Comply with legal obligations
  • Protect against fraud and abuse

5. Information Sharing

We do not sell, trade, or rent your personal information. We may share your information with:

  • Service Providers: Companies that help us operate our business (e.g., Netlify for form processing, email providers)
  • Analytics Partners: To understand website usage and improve our services
  • Legal Requirements: When required by law or to protect our rights
  • Business Transfers: In case of merger, acquisition, or sale of assets

6. Data Security

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • SSL encryption for data transmission
  • Secure form submissions through Netlify
  • Regular security assessments
  • Limited access to personal information

However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

7. HIPAA Compliance Notice

Important: This Privacy Policy covers information collected through our marketing website and lead generation forms. It does NOT cover Protected Health Information (PHI) that may be handled through our medical records retrieval services.

Our medical records retrieval services maintain separate, HIPAA-compliant policies and procedures for handling PHI. Business Associate Agreements (BAAs) are established with clients before any PHI is accessed or processed.

8. Your Rights and Choices

You have the following rights regarding your personal information:

  • Access: Request a copy of your personal information
  • Correction: Request corrections to inaccurate information
  • Deletion: Request deletion of your personal information
  • Opt-out: Unsubscribe from marketing communications
  • Do Not Track: We currently do not respond to Do Not Track signals

To exercise these rights, please use our contact form

9. California Privacy Rights

California residents have additional rights under the California Consumer Privacy Act (CCPA), including:

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to opt-out of the sale of personal information
  • Right to non-discrimination for exercising privacy rights

10. Children's Privacy

Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If we discover that we have collected information from a child under 18, we will delete that information immediately.

11. International Data Transfers

Your information may be transferred to and processed in the United States, where our servers are located. By using our services, you consent to such transfer and processing.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. Your continued use of our services after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions or concerns about this Privacy Policy or our privacy practices, please contact us at:

MedRecords AI

Contact: Please use our contact form

Website: expressmedrecords.com

This privacy policy was last reviewed and updated in September 2025. We are committed to protecting your privacy and ensuring transparency in how we handle your information.