PangeaEmr

PangeaEMR Privacy Policy

Introduction

PangeaEMR, Inc. (“PangeaEMR,” “we,” “our,” or “us”) respects the privacy of every individual who visits our website, uses our software, or interacts with our services. Our mission is to deliver secure, efficient, and affordable healthcare technology solutions, including our electronic health record (EHR), practice management, billing, patient portal, care coordination, and clinical data services (collectively, the “Services”).

This Privacy Policy (the “Policy”) explains how we and our partners collect, use, and share information when you use our Services, including through our website www.pangeaemr.com, our cloud-based platform, and communications sent in connection with the Services.

This Policy does not apply to third-party websites, apps, or services not operated by PangeaEMR.

Some of our users are healthcare providers who are subject to U.S. privacy and security laws, including the Health Insurance Portability and Accountability Act of 1996 (“HIPAA”). When PangeaEMR stores, processes, or transmits Protected Health Information (“PHI”) on behalf of a healthcare provider under a Business Associate Agreement (BAA), we act as a “business associate” under HIPAA and apply administrative, technical, and physical safeguards to protect PHI as required by law.


Information We Collect

1. Information You Provide

We collect information when you:

  • Register for an account or complete forms within our Services

  • Upload documents, prescriptions, or health data

  • Submit billing or payment information

  • Contact support or request customer service

This information may include your name, contact details, demographic information, medical information, and payment details.

2. Payment Information

If you pay for Services, we may collect billing details (e.g., credit/debit card information). We rely on third-party PCI-DSS compliant processors. PangeaEMR does not store full card details.

3. Automatically Collected Information

We only collect minimal information automatically:

  • Login timestamps – date and time of when you log in and log out of the system.

  • This is used only for security, audit, and compliance purposes.

  • We do not track your browsing activity, location, or other device details.

4. Cookies & Similar Technologies

We use:

  • Strictly necessary cookies to operate our platform

  • Performance/analytics cookies to improve functionality

  • Preference cookies to remember your settings

  • Marketing cookies (limited) to provide relevant content

You may manage cookie preferences in your browser or via our site banner.

5. Information from Other Sources

We may receive information about you from integrated third parties such as pharmacies, labs, clearinghouses, or payers, as authorized by you or required for Services.


How We Use Information

We may use your information to:

  • Provide and operate the Services

  • Process billing and payments

  • Enable secure communications (e.g., provider–patient messages, e-prescriptions, lab results)

  • Improve our products and develop new features

  • Send administrative, service-related, or promotional communications

  • Comply with legal, regulatory, and contractual obligations

  • Detect, investigate, and prevent fraud or misuse


How We Share Information

We may share your information:

  • With your consent or at your direction

  • With healthcare providers, payers, or labs involved in your care

  • With service providers (IT, hosting, billing, analytics) under confidentiality agreements

  • As required by law (e.g., subpoenas, regulatory requests)

  • In corporate transactions (e.g., mergers), subject to this Policy

  • As otherwise permitted or required under HIPAA and applicable privacy laws


Security

We implement administrative, technical, and physical safeguards to protect personal data and PHI, including encryption, access controls, and monitoring. While no system is 100% secure, PangeaEMR maintains policies and procedures aligned with HIPAA, GDPR (where applicable), and industry best practices.


Your Choices & Rights

  • Access and Update: You may access or update your account information through your profile settings.

  • Data Portability: Patients may request a copy of their records from their healthcare provider.

  • Account Deletion: You may request deletion of your account by emailing info@pangeaemr.com. Some data may be retained as required by law.

  • Marketing Preferences: You may opt-out of promotional emails via the unsubscribe link.

If you are a resident of California, Colorado, or other states with specific privacy rights, you may have additional rights under state law. Contact us for more details.


Children’s Privacy

Our Services are not directed at children under 13. We do not knowingly collect personal information from minors except as authorized by a healthcare provider or parent/guardian.


Third-Party Services

This Policy does not cover third-party sites linked within our Services. Review their privacy policies separately.


Changes to this Policy

We may update this Policy periodically. Updates will be posted on our website with a revised “Last Updated” date. Significant changes will be communicated via email or Service notices.


Health Declaration Compliance

PangeaEMR is a healthcare management and administrative platform, not a clinical decision support or medical device application. The platform does not provide medical advice, diagnosis, or treatment recommendations. Any health-related information processed within PangeaEMR is used solely for administrative purposes such as scheduling, billing, claim submission, secure messaging, and record management.


Contact Us

If you have any questions or privacy requests, please contact:

Privacy Officer – PangeaEMR
📧 Email: info@pangeaemr.com
🌐 Website: www.pangeaemr.com