Privacy Policy

Educational Notice of Privacy Practices
This Privacy Policy explains how we collect, use, and protect your information when you engage with our educational services, including online consultations, workshops, resources, and communications that are not medical diagnosis or treatment.
By accessing our services, you agree to the terms of this Privacy Policy.
1. Scope of Services
This policy applies only to educational consultations provided by ELM Endocrinology & Lifestyle Medicine, PLLC (“ELM,” “we,” “our,” or “us”) that:
-
Are intended for informational and wellness education purposes
-
Do not establish a provider-patient relationship
-
Are not governed by HIPAA, but still prioritize your privacy
If you receive clinical medical care from our licensed providers, a separate HIPAA Privacy Notice will apply.
2. Information We Collect
We may collect the following types of information when you engage with our educational content or book a consultation:
-
Contact Information (name, email, phone)
-
General Health Topics of Interest (e.g., thyroid health, insulin resistance, lifestyle habits)
-
Consultation Notes (summaries of discussions, goals, and resources provided)
-
Payment Information (if applicable, processed through third-party platforms)
-
Technical Information (IP address, browser type, device data for analytics)
We do not request, store, or manage sensitive medical information or protected health information (PHI) under HIPAA for education-only services.
3. How We Use Your Information
We use the information you provide to:
-
Schedule and deliver educational consultations
-
Share relevant wellness resources
-
Improve our content and user experience
-
Send updates, educational emails, or newsletters (you may opt out anytime)
4. How We Protect Your Information
Although education-only services are not subject to HIPAA, we still implement reasonable safeguards to protect your personal information, including:
-
Secure scheduling and video platforms
-
Encrypted email when available
-
Password-protected devices and records
We will never sell or rent your personal information.
5. Third-Party Services
We may use third-party services (e.g., Stripe, Calendly, Zoom, Google Analytics) to operate and improve our platform. These services have their own privacy policies, which we encourage you to review.
6. Your Choices
You can:
-
Request to access or delete your personal information
-
Opt out of emails or marketing communication at any time
-
Decline to provide information, although it may limit your access to certain services
To request changes or removal, email at info.myelmheath@gmail.com
7. Children’s Privacy
Our educational content is intended for adults (18+). We do not knowingly collect information from children under 13.
8. Changes to This Policy
We may update this Privacy Policy periodically. Updates will be posted on our website with a revised effective date. Continued use of our services constitutes acceptance of the updated policy.
9. Contact Us
If you have questions or concerns about this policy:
ELM Endocrinology & Lifestyle Medicine, PLLC
📧 myelmhealth@gmail.com
📞 602-556-3434
Download a copy of the ELM Educational Privacy Policy here:
Medical HIPAA Notice of Privacy Practices
This Notice describes how ELM Endocrinology & Lifestyle Medicine, PLLC may use and disclose your medical information and how you can get access to this information. Please review it carefully.
Our Legal Duty
We are required by law to:
-
Maintain the privacy of your protected health information (PHI)
-
Provide you with this Notice of our legal duties and privacy practices
-
Follow the terms of the Notice currently in effect
Your Rights
You have the right to:
-
Access your health records – You can request to view or receive a copy of your medical records in paper or electronic form.
-
Request corrections – If you believe your records are incorrect or incomplete, you can request a correction.
-
Request confidential communications – You can ask us to contact you in a specific way (e.g., via email or at a specific phone number).
-
Limit what we use or share – You may request restrictions on how your PHI is used or disclosed.
-
Get a list of disclosures – You can ask for a list of the times we've shared your PHI, for up to six years prior.
-
Choose someone to act for you – If you have a legal guardian or medical power of attorney, that person can exercise your rights.
-
File a complaint – You can file a complaint with us or with the U.S. Department of Health & Human Services if you believe your rights have been violated. We will not retaliate against you for filing a complaint.
Our Uses and Disclosures
We may use and share your health information to:
Treat You
We can use your PHI and share it with other professionals involved in your care.
Example: A PA discusses your treatment with a consulting cardiologist.
Run Our Organization
We use PHI to operate our practice and ensure quality care.
Example: We use PHI to manage scheduling, billing, and quality improvement.
Bill for Services
We can use and share your PHI to bill and receive payment from you, your insurance plan, or third-party payers.
Example: We submit information to your health insurer to receive payment.
Other Permitted or Required Disclosures
We may also share your information:
-
With public health authorities for disease reporting
-
For health oversight activities (e.g., audits, investigations)
-
In response to court orders or legal processes
-
To prevent or reduce a serious threat to your health or public safety
-
With law enforcement when required by law
-
To medical examiners for death investigations
-
For workers’ compensation claims
-
To business associates who help us deliver care, under a signed agreement to protect your PHI
We must obtain your written permission before:
-
Using your PHI for marketing or promotional communications
-
Selling your PHI
-
Sharing psychotherapy notes (if applicable)
You may revoke your authorization at any time in writing.
Our Responsibilities
We:
-
Are required by law to maintain the privacy and security of your PHI
-
Will inform you promptly if a breach occurs that may compromise the privacy or security of your information
-
Will not use or share your information except as described here unless you authorize it in writing
Telehealth and Electronic Communication
Because our services are delivered primarily through telehealth:
-
We use HIPAA-compliant platforms for video visits and messaging.
-
Electronic communication carries some risk (e.g., interception, misdelivery), but we take reasonable steps to protect your privacy.
-
You agree to assume limited risk when opting in to electronic communication.
Changes to This Notice
We reserve the right to change this Notice and the revised Notice will apply to all PHI we maintain. The current version will be posted on our website and available upon request.
Contact Us or File a Complaint
If you have questions, concerns, or wish to exercise your privacy rights:
Privacy Officer
ELM Endocrinology & Lifestyle Medicine, PLLC
📧 myelmhealth@gmail.com
📞 602-556-3434
You may also file a complaint with the:
Office for Civil Rights (OCR)
U.S. Department of Health & Human Services
Website: https://www.hhs.gov/hipaa/filing-a-complaint/
Phone: 1-877-696-6775
Download a copy of the ELM HIPAA Notice of Privacy Practices here:




